ExamGecko
Question list
Search
Search

Related questions











Question 252 - PCNSE discussion

Report
Export

An engineer discovers the management interface is not routable to the User-ID agent What configuration is needed to allow the firewall to communicate to the User-ID agent?

A.
Create a NAT policy for the User-ID agent server
Answers
A.
Create a NAT policy for the User-ID agent server
B.
Add a Policy Based Forwarding (PBF) policy to the User-ID agent IP
Answers
B.
Add a Policy Based Forwarding (PBF) policy to the User-ID agent IP
C.
Create a custom service route for the UID Agent
Answers
C.
Create a custom service route for the UID Agent
D.
Add a static route to the virtual router
Answers
D.
Add a static route to the virtual router
Suggested answer: C

Explanation:

To allow the firewall to communicate with the User-ID agent, you need to configure a custom service route for the UID Agent23. A custom service route allows you to specify which interface and source IP address the firewall uses to connect to a specific destination service. By default, the firewall uses its management interface for services such as User-ID, but you can override this behavior by creating a custom service route.

To configure a custom service route for the UID Agent, you need to do the following steps:

Go to Device > Setup > Services and click Service Route Configuration.

In the Service column, select User-ID Agent from the drop-down list.

In the Interface column, select an interface that can reach the User-ID agent server from the dropdown list.

In the Source Address column, select an IP address that belongs to that interface from the drop-down list.

Click OK and Commit your changes.

The correct answer is C. Create a custom service route for UID Agent

asked 23/09/2024
Joost Huggers
34 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first