Palo_Alto_Networks
ACE · Question #122
When creating a Security Policy to allow Facebook in PAN-OS 5.0, how can you be sure that no other web-browsing traffic is permitted?
The correct answer is D. No other configuration is required on the part of the administrator, since implicit application dependencies will be added automatically.. See the full explanation below for the reasoning.
Question
When creating a Security Policy to allow Facebook in PAN-OS 5.0, how can you be sure that no other web-browsing traffic is permitted?
Options
- AEnsure that the Service column is defined as "application-default" for this security rule. This will automatically include the implicit web-browsing application dependency.
- BCreate a subsequent rule which blocks all other traffic.
- CWhen creating the rule, ensure that web-browsing is added to the same rule. Both applications will be processed by the Security policy, allowing only Facebook to be accessed. Any other applications can be permitted in subsequent rules.
- DNo other configuration is required on the part of the administrator, since implicit application dependencies will be added automatically.
How the community answered
(47 responses)- A17% (8)
- B6% (3)
- C2% (1)
- D74% (35)
Community Discussion
No community discussion yet for this question.