Topic 1 Question 500 to 520

Topic 1 Question 500 to 520

Professional Development

20 Qs

quiz-placeholder

Similar activities

Quizz Segurança e conformidade AWS

Quizz Segurança e conformidade AWS

Professional Development

25 Qs

Topic 1 Question 101  to 120

Topic 1 Question 101 to 120

Professional Development

20 Qs

Topic 1 Question 540 to 560

Topic 1 Question 540 to 560

Professional Development

20 Qs

Fundamentos de Seguridad de la Información

Fundamentos de Seguridad de la Información

Professional Development

20 Qs

Network Security Quiz

Network Security Quiz

Professional Development

16 Qs

DIAGNOSTICO CIBERSEGURIDAD

DIAGNOSTICO CIBERSEGURIDAD

Professional Development

15 Qs

Sharing Session - Security Operation

Sharing Session - Security Operation

Professional Development

15 Qs

Topic 1 Question 521 to 540

Topic 1 Question 521 to 540

Professional Development

20 Qs

Topic 1 Question 500 to 520

Topic 1 Question 500 to 520

Assessment

Quiz

Information Technology (IT)

Professional Development

Hard

Created by

Juan Juan

FREE Resource

20 questions

Show all answers

1.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

Media Image

A firewall engineer creates a destination static NAT rule to allow traffic from the internet to a webserver hosted behind the edge firewall. The pre-NAT IP address of the server is 153.6.12.10, and the post-NAT IP address is 192.168.10.10. Refer to the routing and interfaces information below.

What should the NAT rule destination zone be set to?

None

Inside

DMZ

Outside

2.

MULTIPLE SELECT QUESTION

45 sec • 1 pt

A consultant deploys a PAN-OS 11.0 VM-Series firewall with the Web Proxy feature in Transparent Proxy mode.

Which three elements must be in place before a transparent web proxy can function? (Choose three.)

User-ID for the proxy zone

DNS Security license

Prisma Access explicit proxy license

Cortex Data Lake license

Authentication Policy Rule set to default-web-form

3.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

Which source is the most reliable for collecting User-ID user mapping?

Microsoft Active Directory

Microsoft Exchange

GlobalProtect

Syslog Listener

4.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

Which type of zone will allow different virtual systems to communicate with each other?

Tap

Tunnel

Virtual Wire

External

5.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

An organization is interested in migrating from their existing web proxy architecture to the Web Proxy feature of their PAN-OS 11.0 firewalls. Currently, HTTP and SSL requests contain the destination IP address of the web server and the client browser is redirected to the proxy.

Which PAN-OS proxy method should be configured to maintain this type of traffic flow?

SSL forward proxy

Explicit proxy

Transparent proxy

DNS proxy

6.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

An engineer discovers the management interface is not routable to the User-ID agent.

What configuration is needed to allow the firewall to communicate to the User-ID agent?

Add a Policy Based Forwarding (PBF) policy to the User-ID agent IP

Create a NAT policy for the User-ID agent server

Create a custom service route for the UID Agent

Add a static route to the virtual router

7.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

An engineer receives reports from users that applications are not working and that websites are only partially loading in an asymmetric environment. After investigating, the engineer observes the flow_tcp_non_syn_drop counter increasing in the show counters global output.

Which troubleshooting command should the engineer use to work around this issue?

set deviceconfig setting tcp asymmetric-path drop

set session tcp-reject-non-syn yes

set deviceconfig setting tcp asymmetric-path bypass

set deviceconfig setting session tcp-reject-non-syn no

Create a free account and access millions of resources

Create resources
Host any resource
Get auto-graded reports
or continue with
Microsoft
Apple
Others
By signing up, you agree to our Terms of Service & Privacy Policy
Already have an account?