ExamGecko
Question list
Search
Search

Related questions











Question 247 - PCNSE discussion

Report
Export

A company is deploying User-ID in their network. The firewall learn needs to have the ability to see and choose from a list of usernames and user groups directly inside the Panorama policies when creating new security rules How can this be achieved?

A.
By configuring Data Redistribution Client in Panorama > Data Redistribution
Answers
A.
By configuring Data Redistribution Client in Panorama > Data Redistribution
B.
By configuring User-ID source device in Panorama > Managed Devices
Answers
B.
By configuring User-ID source device in Panorama > Managed Devices
C.
By configuring User-ID group mapping in Panorama > User Identification
Answers
C.
By configuring User-ID group mapping in Panorama > User Identification
D.
By configuring Master Device in Panorama > Device Groups
Answers
D.
By configuring Master Device in Panorama > Device Groups
Suggested answer: C

Explanation:

User-ID group mapping is a feature that allows Panorama to retrieve user and group information from directory services such as LDAP or Active Directory1. This information can be used to enforce security policies based on user identity and group membership.

To configure User-ID group mapping on Panorama, you need to perform the following steps1:

Select Panorama > User Identification > Group Mapping Settings

Click Add and enter a name for the server profile

Select a Server Type (LDAP or Active Directory)

Click Add and enter the server details (IP address, port number, etc.)

Click OK

Select Group Include List and click Add

Select the groups that you want to include in the group mapping

Click OK

Commit your changes

By configuring User-ID group mapping on Panorama, you can see and choose from a list of usernames and user groups directly inside the Panorama policies when creating new security rules2.

asked 23/09/2024
Cristian Pernia
42 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first