nerdexam
Palo_Alto_Networks

NETSEC-ANALYST · Question #293

An administrator configured a Security policy rule where the matching condition includes a single application and the action is set to deny. What deny action will the firewall perform?

The correct answer is C. Perform the default deny action as defined in the App-ID database for the application. https://docs.paloaltonetworks.com/pan-os/10-1/pan-os-admin/policy/security-policy/security-

Security Policy Management

Question

An administrator configured a Security policy rule where the matching condition includes a single application and the action is set to deny. What deny action will the firewall perform?

Options

  • ADiscard the session's packets and send a TCP reset packet to let the client know the session has
  • BDrop the traffic silently
  • CPerform the default deny action as defined in the App-ID database for the application
  • DSend a TCP reset packet to the client- and server-side devices

How the community answered

(43 responses)
  • A
    5% (2)
  • B
    5% (2)
  • C
    77% (33)
  • D
    14% (6)

Explanation

https://docs.paloaltonetworks.com/pan-os/10-1/pan-os-admin/policy/security-policy/security-

Topics

#App-ID#deny action#application-default#Security policy

Community Discussion

No community discussion yet for this question.

Full NETSEC-ANALYST Practice