ExamGecko
Question list
Search
Search

Question 4 - PCSFE discussion

Report
Export

Which solution is best for securing an EKS environment?

A.
VM-Series single host
Answers
A.
VM-Series single host
B.
CN-Series high availability (HA) pair
Answers
B.
CN-Series high availability (HA) pair
C.
PA-Series using load sharing
Answers
C.
PA-Series using load sharing
D.
API orchestration
Answers
D.
API orchestration
Suggested answer: B

Explanation:

CN-Series high availability (HA) pair is the best solution for securing an EKS environment. EKS is a managed service that allows users to run Kubernetes clusters on AWS. CN-Series is a containerized firewall that integrates with Kubernetes and provides visibility and control over container traffic. CNSeries HA pair consists of two CN-Series firewalls deployed in active-passive mode to provide redundancy and failover protection. VM-Series single host, PA-Series using load sharing, and API orchestration are not optimal solutions for securing an EKS environment, as they do not offer the same level of integration, scalability, and automation as CN-Series. Reference: Palo Alto Networks Certified Software Firewall Engineer (PCSFE), [CN-Series Deployment Guide for AWS EKS], [CN-Series Datasheet]

asked 23/09/2024
Kurt Onal
43 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first