Computer Networking > QUESTIONS & ANSWERS > PCNSA QUESTIONS AND ANSWERS ALREADY PASSED. RATED A (All)

PCNSA QUESTIONS AND ANSWERS ALREADY PASSED. RATED A

Document Content and Description Below

PCNSA QUESTIONS AND ANSWERS ALREADY PASSED Threat Intelligence Cloud ✔✔Identifies and inspects all traffic to block known threats. Next Generation Firewall ✔✔Gathers, analyzes, correlates, ... and disseminates threats to and from network endpoints Advanced Endpoint Detection ✔✔Inspects processes and files to prevent known and unknown exploits Which firewall plane provides configuration, logging, and reporting functions on a separate processor? A. control B. network processing C. data D. security processing ✔✔A. Control A security administrator has configured App-ID updates to be automatically downloaded and installed. The company is currently using an application identified by App-ID as SuperApp_base. On a content update notice, Palo Alto Networks is adding new app signatures labeled SuperApp_chat and SuperApp_download, which will be deployed in 30 days. Based on the information, how is the SuperApp traffic affected after the 30 days have passed? A. All traffic matching the SuperApp_chat, and SuperApp_download is denied because it no longer matches the SuperApp-base application B. No impact because the apps were automatically downloaded and installedC. No impact because the firewall automatically adds the rules to the App-ID interface D. All traffic matching the SuperApp_base, SuperApp_chat, and SuperApp_download is denied until the security administrator approves the applications ✔✔C. No impact because the firewall automatically adds the rules to the App-ID interface How many zones can an interface be assigned with a Palo Alto Networks firewall? A. two B. three C. four D. one ✔✔D. One Which two configuration settings shown are not the default? (Choose two.) A. Enable Security Log B. Server Log Monitor Frequency (sec) C. Enable Session D. Enable Probing ✔✔B,C Which data-plane processor layer of the graphic shown provides uniform matching for spyware and vulnerability exploits on a Palo Alto Networks Firewall? A. Signature Matching B. Network Processing C. Security Processing D. Security Matching ✔✔A Which option shows the attributes that are selectable when setting up application filters? A. Category, Subcategory, Technology, and CharacteristicB. Category, Subcategory, Technology, Risk, and Characteristic C. Name, Category, Technology, Risk, and Characteristic D. Category, Subcategory, Risk, Standard Ports, and Technology ✔✔B Actions can be set for which two items in a URL filtering security profile? (Choose two.) A. Block List B. Custom URL Categories C. PAN-DB URL Categories D. Allow List ✔✔AD Reconnaissance ✔✔Stage where the attacker has motivation for attacking a network Installation ✔✔Stage where the attacker scans for network vulnerabilities Command and Control ✔✔stage where the attacker will explore methods such as a root kit Act on the objective ✔✔Stage where the attacker has access to a specific server so they can communicate and pass data to and from devices. Which two statements are correct about App-ID content updates? (Choose two.) A. Updated application content may change how security policy rules are enforced B. After an application content update, new applications must be manually classified prior to use C. Existing security policy rules are not affected by application content updates D. After an application content update, new applications are automatically identified and classified ✔✔C,D Which User-ID mapping method should be used for an environment with clients that do not authenticate to Windows Active Directory?A. Windows session monitoring via a domain controller B. passive server monitoring using the Windows-based agent C. Captive Portal D. passive server monitoring using a PAN-OS integrated User-ID agent ✔✔C An administrator needs to allow users to use their own office applications. How should the administrator configure the firewall to allow multiple applications in a dynamic environment? A. Create an Application Filter and name it Office Programs, the filter it on the business-systems category, office-programs subcategory B. Create an Application Group and add business-systems to it C. Create an Application Filter and name it Office Programs, then filter it on the business-systems category D. Create an Application Group and add Office 365, Evernote, Google Docs, and Libre Office ✔✔B Which statement is true regarding a Best Practice Assessment? A. The BPA tool can be run only on firewalls B. It provides a percentage of adoption for each assessment data C. The assessment, guided by an experienced sales engineer, helps determine the areas of greatest risk where you should focus prevention activities D. It provides a set of questionnaires that help uncover security risk prevention gaps across all areas of network and security architecture ✔✔B Employees are shown an application block page when they try to access YouTube. Which security policy is blocking the YouTube application? A. intrazone-default B. Deny Google C. allowed-security servicesD. interzone-default ✔✔D Complete the statement. A security profile can block or allow traffic. A. on unknown-tcp or unknown-udp traffic B. after it is evaluated by a security policy that allows traffic C. before it is evaluated by a security policy D. after it is evaluated by a security policy that allows or blocks traffic ✔✔D When creating a Source NAT policy, which entry in the Translated Packet tab will display the options Dynamic IP and Port, Dynamic, Static IP, and None? A. Translation Type B. Interface C. Address Type D. IP Address ✔✔A Which interface does not require a MAC or IP address? A. Virtual Wire B. Layer3 C. Layer2 D. Loopback ✔✔A A company moved its old port-based firewall to a new Palo Alto Networks NGFW 60 days ago. Which utility should the company use to identify out-of-date or unused rules on the firewall? A. Rule Usage Filter > No App Specified B. Rule Usage Filter >Hit Count > Unused in 30 days C. Rule Usage Filter > Unused Apps D. Rule Usage Filter > Hit Count > Unused in 90 days ✔✔DWhat are two differences between an implicit dependency and an explicit dependency in AppID? (Choose two.) A. An implicit dependency does not require the dependent application to be added in the security policy B. An implicit dependency requires the dependent application to be added in the securi [Show More]

Last updated: 1 year ago

Preview 1 out of 14 pages

Add to cart

Instant download

document-preview

Buy this document to get the full access instantly

Instant Download Access after purchase

Add to cart

Instant download

Also available in bundle (1)

PCNSA BUNDLE. ALL QUESTIONS AND ANSWERS. DIFERENT VERSIONS OF EXAM QUESTIONS WITH ACCURATE ANSWERS. RATED A DOCS

ALL YOU NEED TO PASS THE PCNSA EXAMS. PCNSA BUNDLE. ALL QUESTIONS AND ANSWERS. DIFERENT VERSIONS OF EXAM QUESTIONS WITH ACCURATE ANSWERS. RATED A DOCS

By bundleHub Solution guider 1 year ago

$25

10  

Reviews( 0 )

$8.00

Add to cart

Instant download

Can't find what you want? Try our AI powered Search

OR

REQUEST DOCUMENT
80
0

Document information


Connected school, study & course


About the document


Uploaded On

Sep 30, 2022

Number of pages

14

Written in

Seller


seller-icon
bundleHub Solution guider

Member since 2 years

314 Documents Sold


Additional information

This document has been written for:

Uploaded

Sep 30, 2022

Downloads

 0

Views

 80

Document Keyword Tags

More From bundleHub Solution guider

View all bundleHub Solution guider's documents »
What is Browsegrades

In Browsegrades, a student can earn by offering help to other student. Students can help other students with materials by upploading their notes and earn money.

We are here to help

We're available through e-mail, Twitter, Facebook, and live chat.
 FAQ
 Questions? Leave a message!

Follow us on
 Twitter

Copyright © Browsegrades · High quality services·