NETSEC-ANALYST · Question #433
Which feature enables an administrator to review the Security policy rule base for unused rules?
The correct answer is D. Policy Optimizer. The Policy Optimizer feature enables an administrator to review the Security policy rule base for unused rules, unused applications, and shadowed rules. The Policy Optimizer provides information and recommendations to help optimize the Security policy rules and reduce the attack
Question
Which feature enables an administrator to review the Security policy rule base for unused rules?
Options
- ASecurity policy tags
- BTest Policy Match
- CView Rulebase as Groups
- DPolicy Optimizer
How the community answered
(33 responses)- A6% (2)
- B9% (3)
- C15% (5)
- D70% (23)
Explanation
The Policy Optimizer feature enables an administrator to review the Security policy rule base for unused rules, unused applications, and shadowed rules. The Policy Optimizer provides information and recommendations to help optimize the Security policy rules and reduce the attack surface. The Policy Optimizer can also identify rules that can be converted to use App-ID instead of port-based criteria.
Topics
Community Discussion
No community discussion yet for this question.