ExamHelpDesk

Complete list of current Q & A>>

Palo Alto Network Certified Network Security Consultant (PCNSC) – Quiz

1 / 15

Which prerequisite must be satisfied before creating an SSH proxy Decryption policy?

2 / 15

A Palo Alto Networks NGFW just submitted a file lo WildFire tor analysis Assume a 5-minute window for analysis. The firewall is configured to check for verdicts every 5 minutes.

How quickly will the firewall receive back a verdict?

 

3 / 15

What are two benefits of nested device groups in panorama? (Choose two )

4 / 15

 

An administrator using an enterprise PKI needs to establish a unique chain of trust to ensure mutual authentication between panorama and the managed firewall and Log Collectors. How would the

 

 

administrator establish the chain of trust?

5 / 15

Which three authentication faction factors does PAN-OS® software support for MFA? (Choose three.)

6 / 15

Which option would an administration choose to define the certificate and protect that Panorama and its managed devices uses for SSL/ITS services?

 

7 / 15

An administrator logs in to the Palo Alto Networks NGFW and reports and reports that the WebUI is missing the policies tab. Which profile is the cause of the missing policies tab?

 

8 / 15

Which DoS protection mechanism detects and prevents session exhaustion attacks?

9 / 15

Which CLI command enables an administrator to view detail about the firewall including uptime. PAN -OS® version, and serial number?

10 / 15

Which Captive Portal mode must be contoured to support MFA authentication?

11 / 15

 

Which version of Global Protect supports split tunneling based on destination domain, client process, and HTTP/HTTPs video streaming application?

 

12 / 15

A session in the Traffic log is reporting the application as “incomplete” What does “incomplete” mean?

13 / 15

Which three options are supposed in HA Lite? (Choose three.)

14 / 15

Which two subscriptions are available when configuring panorama to push dynamic updates to connected devices? (Choose two.)

 

15 / 15

When a malware-infected host attempts to resolve a known command-and-control server, the traffic matches a security policy with DNS sinhole enabled, generating a traffic log.

What will be the destination IP Address in that log entry?

 

Your score is

0%

Scroll to Top