nerdexam
Palo_Alto_Networks

NETSEC-ANALYST · Question #240

An administrator is troubleshooting traffic that should match the interzone-default rule. However, the administrator doesn't see this traffic in the traffic logs on the firewall. The interzone-default

The correct answer is D. Logging on the interzone-default policy is disabled. The interzone-default rule is a default rule that denies traffic between data center zones that does not match any other security policy. By default, logging is disabled on this rule. This means that the administrator will not see any traffic logs for traffic that matches the int

Monitoring and Troubleshooting

Question

An administrator is troubleshooting traffic that should match the interzone-default rule. However, the administrator doesn't see this traffic in the traffic logs on the firewall. The interzone-default was never changed from its default configuration. Why doesn't the administrator see the traffic?

Options

  • ATraffic is being denied on the interzone-default policy.
  • BThe Log Forwarding profile is not configured on the policy.
  • CThe interzone-default policy is disabled by default
  • DLogging on the interzone-default policy is disabled

How the community answered

(25 responses)
  • A
    12% (3)
  • B
    4% (1)
  • C
    4% (1)
  • D
    80% (20)

Explanation

The interzone-default rule is a default rule that denies traffic between data center zones that does not match any other security policy. By default, logging is disabled on this rule. This means that the administrator will not see any traffic logs for traffic that matches the interzone-default rule.

Topics

#interzone-default policy#default logging disabled#traffic log troubleshooting#default policy behavior

Community Discussion

No community discussion yet for this question.

Full NETSEC-ANALYST Practice