in an HA failover scenario what occurs when sessions match an SSL Forward Proxy Decryption policy?
in an HA failover scenario what occurs when sessions match an SSL Forward Proxy Decryption policy?A . HA Sync does not occur the existing session is transferred to the active firewall.B . HA Sync does not occur the firewall drops the session.C . HA Sync occurs the session is sent...
Below are the steps in the workflow for creating a Best Practice Assessment in a firewall and Panorama configuration Place the steps in order
DRAG DROP Below are the steps in the workflow for creating a Best Practice Assessment in a firewall and Panorama configuration Place the steps in order. View AnswerAnswer: Explanation: Step 1. In either the NGFW or in Panorama, on the Operations/Support tab, download the technical support file. Step 2. Log...
An engineer is creating a security policy based on Dynamic User Groups (DUG) What benefit does this provide?
An engineer is creating a security policy based on Dynamic User Groups (DUG) What benefit does this provide?A . Automatically include users as members without having to manually create and commit policy or group changesB . DUGs are used to only allow administrators access to the management interface on the...
What are three tasks that cannot be configured from Panorama by using a template stack? (Choose three)
What are three tasks that cannot be configured from Panorama by using a template stack? (Choose three)A . configure a device block listB . rename a vsys on a multi-vsys firewallC . enable operational modes such as normal mode, multi-vsys mode, or FIPS-CC modeD . add administrator accountsE . change...
Place the steps to onboard a ZTP firewall into Panorama/CSP/ZTP-Service in the correct order
DRAG DROP Place the steps to onboard a ZTP firewall into Panorama/CSP/ZTP-Service in the correct order. View AnswerAnswer: Explanation: Graphical user interface, text, application, email Description automatically generated https://docs.paloaltonetworks.com/panorama/10-1/panorama-admin/manage-firewalls/set-up-zero-touch-provisioning/ztp-overview/ztp-configuration-elements.html
Which type of certificate should the administrator use?
A network administrator wants to use a certificate for the SSL/TLS Service Profile. Which type of certificate should the administrator use?A . certificate authority (CA) certificateB . client certificateC . machine certificateD . server certificateView AnswerAnswer: D Explanation: Use only signed certificates, not CA certificates, in SSL/TLS service profiles. https://docs.paloaltonetworks.com/pan-os/10-1/pan-os-admin/certificate-management/configure-an-ssltls-service-profile.html
Please match the terms to their corresponding definitions
DRAG DROP Please match the terms to their corresponding definitions. View AnswerAnswer: Explanation: Graphical user interface Description automatically generated with medium confidence
What procedure should you use so Panorama is fully managing the firewall?
A standalone firewall with local objects and policies needs to be migrated into Panorama . What procedure should you use so Panorama is fully managing the firewall?A . Use the "import Panorama configuration snapshot" operation, then perform a device-group commit push with "include device and network templates"B . Use the...
When you configure an active/active high availability pair which two links can you use? (Choose two)
When you configure an active/active high availability pair which two links can you use? (Choose two)A . HA2 backupB . HA3C . Console BackupD . HSCI-CView AnswerAnswer: A,B
What are two valid deployment options for Decryption Broker? (Choose two)
What are two valid deployment options for Decryption Broker? (Choose two)A . Transparent Bridge Security ChainB . Layer 3 Security ChainC . Layer 2 Security ChainD . Transparent Mirror Security ChainView AnswerAnswer: A,B Explanation: https://docs.paloaltonetworks.com/pan-os/9-1/pan-os-admin/decryption/decryption-broker