Which statement regarding HA timer settings is true?

Which statement regarding HA timer settings is true?A . Use the Recommended profile for typical failover timer settingsB . Use the Moderate profile for typical failover timer settingsC . Use the Aggressive profile for slower failover timer settings.D . Use the Critical profile for faster failover timer settings.View AnswerAnswer: A

September 4, 2022 No Comments READ MORE +

How should you configure the firewall to allow access to any office-suite application?

You need to allow users to access the office-suite applications of their choice. How should you configure the firewall to allow access to any office-suite application?A . Create an Application Group and add Office 365, Evernote Google Docs and Libre OfficeB . Create an Application Group and add business-systems to...

September 3, 2022 No Comments READ MORE +

A company wants to install a PA-3060 firewall between two core switches on a VLAN trunk link. They need to assign each VLAN to its own zone and to assign untagged (native) traffic to its own zone which options differentiates multiple VLAN into separate zones?

A company wants to install a PA-3060 firewall between two core switches on a VLAN trunk link. They need to assign each VLAN to its own zone and to assign untagged (native) traffic to its own zone which options differentiates multiple VLAN into separate zones? A. Create V-Wire objects with...

September 3, 2022 No Comments READ MORE +

What are two common reasons to use a "No Decrypt" action to exclude traffic from SSL decryption? (Choose two.)

What are two common reasons to use a "No Decrypt" action to exclude traffic from SSL decryption? (Choose two.)A . the website matches a category that is not allowed for most usersB . the website matches a high-risk categoryC . the web server requires mutual authenticationD . the website matches...

September 2, 2022 No Comments READ MORE +

The end-user's browser will show that the certificate for www.example-website.com was issued by which of the following?

A firewall is configured with SSL Forward Proxy decryption and has the following four enterprise certificate authorities (Cas) i. Enterprise-Trusted-CA; which is verified as Forward Trust Certificate (The CA is also installed in the trusted store of the end-user browser and system) ii. Enterprise-Untrusted-CA, which is verified as Forward Untrust...

September 2, 2022 No Comments READ MORE +

How should those rules be configured to ensure that they are evaluated with a high priority?

An administrator is building Security rules within a device group to block traffic to and from malicious locations How should those rules be configured to ensure that they are evaluated with a high priority?A . Create the appropriate rules with a Block action and apply them at the top of...

September 2, 2022 No Comments READ MORE +

A firewall administrator is trying to identify active routes learned via BGP in the virtual router runtime stats within the GUI. Where can they find this information?

A firewall administrator is trying to identify active routes learned via BGP in the virtual router runtime stats within the GUI. Where can they find this information?A . routes listed in the routing table with flagsB . routes listed in the routing table with flags A?C . under the BGP...

September 1, 2022 No Comments READ MORE +

When you navigate to Network: > GlobalProtect > Portals > Method section, which three options are available? (Choose three)

When you navigate to Network: > GlobalProtect > Portals > Method section, which three options are available? (Choose three)A . user-logon (always on)B . pre-logon then on-demandC . on-demand (manual user initiated connection)D . post-logon (always on)E . certificate-logonView AnswerAnswer: A,B

September 1, 2022 No Comments READ MORE +

How should the administrator correct this issue?

An administrator device-group commit push is tailing due to a new URL category How should the administrator correct this issue?A . verify that the URL seed Tile has been downloaded and activated on the firewallB . change the new category action to alert" and push the configuration againC . update...

August 31, 2022 No Comments READ MORE +

Which GlobalProtect component must be configured to enable Clientless VPN?

Which GlobalProtect component must be configured to enable Clientless VPN?A . GlobalProtect satelliteB . GlobalProtect appC . GlobalProtect portalD . GlobalProtect gatewayView AnswerAnswer: C Explanation: Creating the GlobalProtect portal is as simple as letting it know if you have accessed it already. A new gateway for accessing the GlobalProtect portal...

August 31, 2022 No Comments READ MORE +