NETSEC-ANALYST Exam Questions
435 real NETSEC-ANALYST exam questions with expert-verified answers and explanations. Page 2 of 9.
- Question #51Zone Protection and DoS Prevention
Which prevention technique will prevent attacks based on packet count?
zone protection profilepacket floodDoS preventionpacket count attacks - Question #52Network Interface Configuration
Which interface type can use virtual routers and routing protocols?
Layer3 interfacevirtual routersrouting protocolsinterface types - Question #53Security Profiles / URL Filtering
Which URL profiling action does not generate a log entry when a user attempts to access that URL?
URL filteringallow actionlogging behaviorURL profile actions - Question #54NAT and Network Configuration
An internal host wants to connect to servers of the internet through using source NAT. Which policy is required to enable source NAT on the firewall?
source NATNAT policyzone-based NATnetwork address translation - Question #55Zone Protection and DoS Prevention
Which security profile will provide the best protection against ICMP floods, based on individual combinations of a packet`s source and destination IP address?
DoS protectionICMP floodsource-destination IPzone protection - Question #56Security Policy Management
Which path in PAN-OS 10.0 displays the list of port-based security policy rules?
PAN-OS UIport-based rulesrule usagesecurity policy navigation - Question #57Firewall Architecture
Which two components are utilized within the Single-Pass Parallel Processing architecture on a Palo Alto Networks Firewall? (Choose two.)
Single-Pass architectureApp-IDUser-IDparallel processing - Question #58Firewall Administration
Which path is used to save and load a configuration with a Palo Alto Networks firewall?
configuration managementDevice setup operationssave configurationload configuration - Question #59App-ID Management
Which action related to App-ID updates will enable a security administrator to view the existing security policy rule that matches new application signatures?
App-ID updatesapplication signaturesreview policiespolicy matching - Question #60Security Policy Management
How do you reset the hit count on a Security policy rule?
hit countsecurity policypolicy statisticsreset procedure - Question #61Firewall Interface and Zone Configuration
Given the topology, which zone type should you configure for firewall interface E1/1?
Tap zonefirewall zonesinterface configurationzone types - Question #62Firewall Interface and Zone Configuration
Which interface type is part of a Layer 3 zone with a Palo Alto Networks firewall?
Layer 3 zoneAggregate interfaceinterface typesPalo Alto Networks - Question #63URL Filtering
Drag and Drop Question Arrange the correct order that the URL classifications are processed within the system. Answer:
URL filteringPAN-DBURL classification orderCustom URL categories - Question #64User-ID and Identity Management
Drag and Drop Question Match the network device with the correct User-ID technology. Answer:
User-IDserver monitoringsyslog monitoringTerminal Services agent - Question #65Firewall Architecture
Which firewall plane provides configuration, logging, and reporting functions on a separate processor?
control planedata planefirewall architecturemanagement plane - Question #66App-ID and Application Identification
A security administrator has configured App-ID updates to be automatically downloaded and installed. The company is currently using an application identified by App-ID as SuperApp_...
App-IDcontent updatesapplication signaturestraffic policy impact - Question #67Firewall Interface and Zone Configuration
How many zones can an interface be assigned with a Palo Alto Networks firewall?
firewall zonesinterface assignmentzone limitsPalo Alto Networks - Question #68User-ID and Identity Management
Which two configuration settings shown are not the default? (Choose two.)
User-ID configurationdefault settingsserver monitoringsession monitoring - Question #69Firewall Architecture and Threat Prevention
Which data-plane processor layer of the graphic shown provides uniform matching for spyware and vulnerability exploits on a Palo Alto Networks Firewall?
signature matchingdata planespyware detectionvulnerability protection - Question #70App-ID and Application Identification
Which option shows the attributes that are selectable when setting up application filters?
App-IDapplication filtersapplication attributesfilter criteria - Question #71URL Filtering
Four configuration choices are listed, and each could be used to block access to a specific URL. If you configured each choice to block the same URL then which choice would be the...
URL filteringURL processing orderPAN-DBCustom URL categories - Question #72Zero Trust Network Security
Which data flow direction is protected in a zero-trust firewall deployment that is not protected in a perimeter-only firewall deployment?
zero trusteast-west trafficperimeter securityfirewall deployment models - Question #73Zero Trust Network Security
Which definition describes the guiding principle of the zero-trust architecture?
zero trustsecurity principlesnever trust always verifyarchitecture - Question #74Security Policy Configuration
All users from the internal zone must be allowed only Telnet access to a server in the DMZ zone. Complete the two empty fields in the Security policy rules that permits only this t...
security policyapplication-defaultTelnetservice configuration - Question #75Threat Prevention and DNS Security
In which profile should you configure the DNS Security feature?
DNS SecurityAnti-Spyware Profilesecurity profilesprofile configuration - Question #76Threat Prevention and DNS Security
Which two statements are true for the DNS Security service introduced in PAN-OS version 10.0? (Choose two.)
DNS SecurityPAN-OS 10.0dynamic DNSDNS entry limits - Question #77User-ID and Identity Management
Which two features can be used to tag a username so that it is included in a dynamic user group? (Choose two.)
dynamic user groupsXML APIlog forwarding auto-tagginguser tagging - Question #78Threat Prevention and Anti-Spyware
The CFO found a malware infected USB drive in the parking lot, which when inserted infected their corporate laptop. The malware contacted a known command- and-control server, which...
DNS Sinkholeanti-spywarecommand-and-controlmalware exfiltration - Question #79Firewall Configuration and Routing
You must configure which firewall feature to enable a data-plane interface to submit DNS queries on behalf of the control plane?
service routeDNS proxydata planecontrol plane communication - Question #80Mobile Security and GlobalProtect
Which component provides network security for mobile endpoints by inspecting traffic routed through gateways?
GlobalProtectmobile endpointsVPN gatewaynetwork security - Question #81Authentication and User-ID
For the firewall to use Active Directory to authenticate users, which Server Profile is required in the Authentication Profile?
LDAPAuthentication ProfileActive DirectoryServer Profile - Question #82App-ID and Application Objects
Which operations are allowed when working with App-ID application tags?
App-IDapplication tagspredefined tagscustom tags - Question #83User-ID Configuration and Deployment
Your company occupies one floor in a single building. You have two Active Directory domain controllers on a single network. The firewall's management plane is only slightly utilize...
User-ID agentPAN-OS integrated agentActive Directorynetwork sizing - Question #84Device Management and Administration
Which type of administrative role must you assign to a firewall administrator account, if the account must include a custom set of firewall permissions?
role-based access controladmin rolescustom permissionsfirewall administration - Question #85Security Operations and Reporting
Which statement is true regarding a Heatmap report?
Heatmap reportsecurity assessmentBPArisk reporting - Question #86Monitoring and Reporting
Based on the screenshot presented, which column contains the link that when clicked, opens a window to display all applications matched to the policy rule?
App-IDApps Seenpolicy rule monitoringapplication visibility - Question #87Security Profiles and Licensing
Access to which feature requires the PAN-OS Filtering license?
URL FilteringPAN-DBlicensingURL categories - Question #88User-ID Configuration and Deployment
Based on the screenshot, what is the purpose of the Included Groups?
User-IDgroup mappingLDAP groupsuser-to-group mapping - Question #89User-ID Configuration and Deployment
Based on the graphic, which statement accurately describes the output shown in the Server Monitoring panel?
User-ID agentserver monitoringdomain controlleragent connectivity - Question #90Security Policy
Which action results in the firewall blocking network traffic without notifying the sender?
security policy actionsDrop actionsilent blocktraffic handling - Question #91User-ID and Dynamic Policy
What do Dynamic User Groups help you to do?
Dynamic User Groupsauto-remediationanomalous user behaviorpolicy automation - Question #92Security Policy
Which security policy rule would be needed to match traffic that passes between the Outside zone and Inside zone, but does not match traffic that passes within the zones?
security policyinterzone rulezone-based policytraffic matching - Question #93Threat Prevention and Network Segmentation
You notice that protection is needed for traffic within the network due to malicious lateral movement activity. Based on the image shown, which traffic would you need to monitor an...
east-west trafficlateral movementnetwork segmentationthreat mitigation - Question #94Security Policy
Based on the shown security policy, which Security policy rule would match all FTP traffic from the inside zone to the outside zone?
security policy matchingFTP trafficzone-based rulespolicy evaluation order - Question #95Firewall Architecture and Design
Which plane on a Palo Alto Networks Firewall provides configuration, logging, and reporting functions on a separate processor?
management planedata planefirewall architecturelogging and reporting - Question #96Centralized Management
Which Palo Alto network security operating platform component provides consolidated policy creation and centralized management?
Panoramacentralized managementpolicy managementPalo Alto ecosystem - Question #97Device Management and Administration
Which type of firewall configuration contains in-progress configuration changes?
candidate configurationrunning configurationconfiguration managementcommit process - Question #98App-ID and Policy Management
Which link in the web interface enables a security administrator to view the security policy rules that match new application signatures?
App-IDapplication signaturespolicy reviewdynamic updates - Question #99Threat Intelligence and Attack Lifecycle
At which stage of the cyber-attack lifecycle would the attacker attach an infected PDF file to an email?
cyber-attack lifecycledelivery stagephishingkill chain - Question #100Threat Prevention and WildFire
How frequently can wildfire updates be made available to firewalls?
WildFiredynamic updatesthreat intelligenceupdate frequency