nerdexam
Palo_Alto_Networks

ACE · Question #61

When configuring UserID on a Palo Alto Networks firewall, what is the proper procedure to limit User mappings to a particular DHCP scope?

The correct answer is A. In the zone in which User Identification is enabled, create a User Identification ACL Include List using the same IP ranges as those allocated in the DHCP scope. See the full explanation below for the reasoning.

Question

When configuring UserID on a Palo Alto Networks firewall, what is the proper procedure to limit User mappings to a particular DHCP scope?

Options

  • AIn the zone in which User Identification is enabled, create a User Identification ACL Include List using the same IP ranges as those allocated in the DHCP scope.
  • BUnder the User Identification settings, under the User Mapping tab, select the "Restrict Users to Allocated IPs" checkbox.
  • CIn the zone in which User Identification is enabled, select the "Restrict Allocated IP" checkbox.
  • DIn the DHCP settings on the Palo Alto Networks firewall, point the DHCP Relay to the IP address of the UserID agent.

How the community answered

(56 responses)
  • A
    77% (43)
  • B
    4% (2)
  • C
    13% (7)
  • D
    7% (4)

Community Discussion

No community discussion yet for this question.

Full ACE Practice