nerdexam
Palo_Alto_Networks

NETSEC-ANALYST · Question #159

Assume that traffic matches a Security policy rule but the attached Security Profiles is configured to block matching traffic. Which statement accurately describes how the firewall will apply an…

The correct answer is D. If it is an allowed rule, then the Security Profile action is applied last. Security Profiles are added to the end of Security policy rules. After a packet has been allowed by the Security policy.

Security Policy and Profiles

Question

Assume that traffic matches a Security policy rule but the attached Security Profiles is configured to block matching traffic. Which statement accurately describes how the firewall will apply an action to matching traffic?

Options

  • AIf it is a block rule, then Security Profile action is applied last.
  • BIf it is an allow rule, then the Security policy rule is applied last.
  • CIf it is a block rule, then the Security policy rule action is applied last.
  • DIf it is an allowed rule, then the Security Profile action is applied last.

How the community answered

(54 responses)
  • A
    7% (4)
  • B
    13% (7)
  • C
    4% (2)
  • D
    76% (41)

Explanation

Security Profiles are added to the end of Security policy rules. After a packet has been allowed by the Security policy.

Topics

#security profiles#action precedence#allow rule#profile block action

Community Discussion

No community discussion yet for this question.

Full NETSEC-ANALYST Practice