Free PCNSE Braindumps Download Updated on Dec 01, 2024 with 250 Questions [Q112-Q132]

Share

Free PCNSE Braindumps Download Updated on Dec 01, 2024 with 250 Questions

Palo Alto Networks PCNSE Exam Practice Test Questions

NEW QUESTION # 112
How can Panorama help with troubleshooting problems such as high CPU or resource exhaustion on a managed firewall?

  • A. Panorama provides information about system resources of the managed devices in the Managed Devices
    > Health menu
  • B. Panorama provides visibility into all the system and traffic logs received from firewalls it does not offer any ability to see or monitor resource utilization on managed firewalls
  • C. Firewalls send SNMP traps to Panorama when resource exhaustion is detected Panorama generates a system log and can send email alerts
  • D. Panorama monitors all firewalls using SNMP It generates a system log and can send email alerts when resource exhaustion is detected on a managed firewall

Answer: A


NEW QUESTION # 113
Which feature can provide NGFWs with User-ID mapping information?

  • A. GlobalProtect
  • B. Web Captcha
  • C. Native 802.1x authentication
  • D. Native 802.1q authentication

Answer: A

Explanation:
https://docs.paloaltonetworks.com/pan-os/10-2/pan-os-admin/user-id/user-id-concepts/user- mapping


NEW QUESTION # 114
An administrator wants to upgrade an NGFW from PAN-OS 8.0.2 to PAN-OS 9.0. The firewall is not a part of an HA pair. What needs to be updated first?

  • A. XML Agent
  • B. Applications and Threats
  • C. PAN-OS Upgrade Agent
  • D. WildFire

Answer: B

Explanation:
Explanation
https://www.paloaltonetworks.com/documentation/80/pan-os/newfeaturesguide/upgrade-to-pan-os-80/upgrade-th


NEW QUESTION # 115
Which URL Filtering Security Profile action logs the URL Filtering category to the URL Filtering log?

  • A. Allow
  • B. Log
  • C. Default
  • D. Alert

Answer: D

Explanation:
Explanation
https://www.paloaltonetworks.com/documentation/70/pan-os/pan-os/url-filtering/url-filtering-profile-actions


NEW QUESTION # 116
How can an administrator configure the NGFW to automatically quarantine a device using GlobalProtect?

  • A. There is no native auto-quarantine feature so a custom script would need to be leveraged.
  • B. by using security policies, log forwarding profiles, and log settings.
  • C. by exporting the list of quarantined devices to a pdf or csv file by selecting PDF/CSV at the bottom of the Device Quarantine page and leveraging the approbate XSOAR playbook
  • D. by adding the device's Host ID to a quarantine list and configure GlobalProtect to prevent users from connecting to the GlobalProtect gateway from a quarantined device

Answer: B

Explanation:
https://docs.paloaltonetworks.com/pan-os/10-0/pan-os-new-features/globalprotect-features/identification-and-quarantine-of-compromised-devices.html
https://docs.paloaltonetworks.com/globalprotect/10-1/globalprotect-admin/host-information/quarantine-devices-using-host-information/automatically-quarantine-a-device.html#idb42b2b82-b253-4be7-9840-1efa49dba3da


NEW QUESTION # 117
An administrator would like to determine which action the firewall will take for a specific CVE. Given the screenshot below, where should the administrator navigate to view this information?

  • A. The profile rule threat name
  • B. The profile rule action
  • C. Exceptions lab
  • D. CVE column

Answer: C

Explanation:
Explanation
The Exceptions settings allows you to change the response to a specific signature. For example, you can block all packets that match a signature, except for the selected one, which generates an alert. The Exception tab supports filtering functions.
If you not believed, then login the firewall go to Vulnerability > Exceptions and select "Show all signatures".
From there you will see all threat information including specific actions.
More detail: https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000Cm4yCAC


NEW QUESTION # 118
Given the following snippet of a WildFire submission log, did the end user successfully download a file?

  • A. No, because the action for the wildfire-virus is "reset-both."
  • B. Yes, because the final action is set to "allow.''
  • C. No, because the URL generated an alert.
  • D. Yes, because both the web-browsing application and the flash file have the 'alert" action.

Answer: D


NEW QUESTION # 119
Refer to exhibit.

An organization has Palo Alto Networks NGFWs that send logs to remote monitoring and security management platforms. The network team has reported excessive traffic on the corporate WAN.
How could the Palo Alto Networks NGFW administrator reduce WAN traffic while maintaining support for all existing monitoring/ security platforms?

  • A. Any configuration on an M-500 would address the insufficient bandwidth concerns.
  • B. Configure log compression and optimization features on all remote firewalls.
  • C. Forward logs from firewalls only to Panorama and have Panorama forward logs to other external services.
  • D. Forward logs from external sources to Panorama for correlation, and from Panorama send them to the NGFW.

Answer: C

Explanation:
https://docs.paloaltonetworks.com/panorama/8-1/panorama-admin/panorama-overview/centralized-logging-and-reporting
https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClKFCA0
"When this has to be done over a WAN link with bandwidth limitation, it is necessary to consider reducing the number of log streams that are sent over the link" "With this configuration, firewalls will forward logs to Panorama, assuming that log forwarding was configured correctly on the firewall. The logs are forwarded to the syslog server, thus reducing the number of log streams significantly."


NEW QUESTION # 120
Which tool provides an administrator the ability to see trends in traffic over periods of time, such as threats detected in the last 30 days?

  • A. Application Command Center
  • B. Packet Capture
  • C. Session Browser
  • D. TCP Dump

Answer: A

Explanation:
The Application Command Center (ACC) page visually depicts trends and a historic view of traffic on your network. It displays the overall risk level for all network traffic, the risk levels and number of threats detected for the most active and highest-risk applications on your network, and the number of threats detected from the busiest application categories and from all applications at each risk level. The ACC can be viewed for the past hour, day, week, month, or any custom- defined time frame.


NEW QUESTION # 121
A company wants to implement threat prevention to take action without redesigning the network routing.
What are two best practice deployment modes for the firewall? (Choose two.)

  • A. Layer 3
  • B. TAP
  • C. Virtual Wire
  • D. Layer 2

Answer: C,D


NEW QUESTION # 122
Which four NGFW multi-factor authentication factors are supported by PAN-OS? (Choose four.)

  • A. Push
  • B. User logon
  • C. One-Time Password
  • D. Short message service
  • E. SSH key
  • F. Voice

Answer: A,C,D,F

Explanation:
For example, the MFA service might prompt you to select the Voice, SMS, push, or PIN code (OTP) authentication method.
https://docs.paloaltonetworks.com/pan-os/10-2/pan-os-admin/authentication/authentication- types/multi-factor-authentication


NEW QUESTION # 123
Which CLI command is used to simulate traffic going through the firewall and determine which Security policy rule, NAT translation, static route, or PBF rule will be triggered by the traffic?

  • A. find
  • B. sim
  • C. check
  • D. test

Answer: D

Explanation:
Reference: http://www.shanekillen.com/2014/02/palo-alto-useful-cli-commands.html
https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClQSCA0


NEW QUESTION # 124
Which processing order will be enabled when a Panorama administrator selects the setting "Objects
defined in ancestors will take higher precedence?"

  • A. Descendant objects will take precedence over other descendant objects.
  • B. Ancestor objects will have precedence over other ancestor objects.
  • C. Ancestor objects will have precedence over descendant objects.
  • D. Descendant objects will take precedence over ancestor objects.

Answer: C

Explanation:
Explanation/Reference:
Reference: https://www.paloaltonetworks.com/documentation/80/pan-os/web-interface-help/device/device-
setup-management


NEW QUESTION # 125
An administrator has configured a pair of firewalls using high availability in Active/Passive mode.
Link and Path Monitoring is enabled with the Failure Condition set to `any`.
There is one link group configured containing member interfaces ethernet1/1 and ethernet1/2 with a Group Failure Condition set to `all`.
Which HA state will the Active firewall go into if ethernet1/1 link goes down due to a failure?

  • A. Passive
  • B. Active-Secondary
  • C. Active
  • D. Non-functional

Answer: C


NEW QUESTION # 126
The company's Panorama server (IP 10.10.10.5) is not able to manage a firewall that was recently deployed. The firewall's dedicated management port is being used to connect to the management network.
Which two commands may be used to troubleshoot this issue from the CLI of the new firewall? (Choose two)

  • A. test panoramas-connect 10.10.10.5
  • B. show arp all I match 10.10.10.5
  • C. show panoramas-status
  • D. topdump filter "host 10.10.10.5
  • E. debug dataplane packet-diag set capture on

Answer: C,D


NEW QUESTION # 127
As a best practice, logging at session start should be used in which case?

  • A. Only when log at session end is enabled
  • B. On all Allow rules
  • C. Only on Deny rules
  • D. While troubleshooting

Answer: D


NEW QUESTION # 128
A network security engineer needs to configure a virtual router using IPv6 addresses.
Which two routing options support these addresses? (Choose two.)

  • A. BGP
  • B. OSPFv3
  • C. RIP
  • D. Static Route

Answer: B,D

Explanation:
C: OSPFv3 provides support for the OSPF routing protocol within an IPv6 network. As such, it provides support for IPv6 addresses and prefixes.
A: How to Set Default Route for IPv6 Traffic
Steps
1. Go to Network > Virtual Router
2. Add a Virtual Router and go to Static Routes > IPv6.
3. Add a Static Route:
E. Set destination (example, IPV4 0.0.0.0/0) as ::0/
F. Select the Interface
G. Set the Next Hop IP address
https://www.paloaltonetworks.com/documentation/60/pan-os/newfeaturesguide/networking- features/ospf-v3-support
https://live.paloaltonetworks.com/t5/Configuration-Articles/How-to-Set-Default-Route-for-IPv6- Traffic/ta-p/52731


NEW QUESTION # 129
What must be configured to apply tags automatically based on User-ID logs?

  • A. Group mapping
  • B. Device ID
  • C. Log Forwarding profile
  • D. Log settings

Answer: D

Explanation:
https://docs.paloaltonetworks.com/pan-os/9-1/pan-os-admin/policy/use-auto-tagging-to-automate- security-actions


NEW QUESTION # 130
Which CLI command can be used to export the tcpdump capture?

  • A. scp extract mgmt-pcap from mgmt.pcap to <username@host:path>
  • B. scp export tcpdump from mgmt.pcap to <username@host:path>
  • C. scp export mgmt-pcap from mgmt.pcap to <username@host:path>
  • D. download mgmt-pcap

Answer: C

Explanation:
Explanation/Reference:
Reference: https://live.paloaltonetworks.com/t5/Management-Articles/How-To-Packet-Capture-tcpdump-
On-Management-Interface/ta-p/55415


NEW QUESTION # 131
Which method does an administrator use to integrate all non-native MFA platforms in PAN-OS software?

  • A. PingID
  • B. Okta
  • C. DUO
  • D. RADIUS

Answer: D

Explanation:
https://docs.paloaltonetworks.com/pan-os/8-1/pan-os-admin/authentication/authentication-types/multi-factor-authentication For end-user authentication via Authentication Policy, the firewall directly integrates with several MFA platforms (Duo v2, Okta Adaptive, PingID, and RSA SecurID), as well as integrating through RADIUS or SAML for all other MFA platforms.


NEW QUESTION # 132
......

Updated Verified PCNSE dumps Q&As - Pass Guarantee or Full Refund: https://torrentvce.certkingdompdf.com/PCNSE-latest-certkingdom-dumps.html