NETSEC-ANALYST Exam Questions
435 real NETSEC-ANALYST exam questions with expert-verified answers and explanations. Page 3 of 9.
- Question #101Network Security Architecture
Which data flow direction is protected in a zero trust firewall deployment that is not protected in a perimeter-only firewall deployment?
zero trusteast-west trafficfirewall architectureperimeter security - Question #102User Identification and Authentication
Which protocol is used to map usernames to user groups when User-ID is configured?
User-IDLDAPusername-to-group mappingdirectory services - Question #103Cloud Security
Which Palo Alto networks security operating platform service protects cloud-based application such as Dropbox and salesforce by monitoring permissions and shared and scanning files...
Prisma SaaSCASBcloud application securityDLP - Question #104Firewall Deployment and Configuration
Which three interface deployment methods can be used to block traffic flowing through the Palo Alto Networks firewall? (Choose three.)
interface deployment modesLayer 2Virtual WireLayer 3 - Question #105Security Policy and Profiles
Which three statements describe the operation of Security policy rules and Security Profiles? (Choose three.)
security policy rulessecurity profilestraffic inspectionpolicy enforcement - Question #106Application Identification and Control
What is an advantage for using application tags?
application tagsApp-IDpolicy automationcontent updates - Question #107Threat Prevention
What are two predefined AntiSpyware profiles? (Choose two.)
AntiSpyware profilespredefined profilesthreat preventionsecurity profiles - Question #108User Identification and Authentication
What are three methods of mapping usernames to IP addresses? (Choose three.)
User-IDIP-to-username mappingserver monitoringsyslog - Question #109Logging and Monitoring
Config logs display entries for which kind of firewall changes?
config logsloggingaudit trailfirewall management - Question #110Security Operations and Monitoring
A Heatmap provides an adoption rate for which three features? (Choose three.)
HeatmapWildFireFile BlockingUser-ID - Question #111Firewall Architecture
The data plane provides which two data processing features of the firewall? (Choose two.)
data planefirewall architecturesignature matchingnetwork processing - Question #112High Availability and Monitoring
In path monitoring, what is used to monitor remote network devices?
path monitoringpingHAremote device monitoring - Question #113Threat Prevention
How often are new and modified threat signatures and modified applications signatures published?
threat signaturescontent updatesupdate frequencydynamic updates - Question #114Network Segmentation and Zones
The External zone type is used to pass traffic between which type of objects?
external zonevirtual systemszone typestraffic segmentation - Question #115Routing and Network Configuration
What is the default metric value of static routes?
static routesroute metricrouting configurationnetwork configuration - Question #116User Identification and Authentication
The Port Mapping user mapping method can monitor which two types of environments? (Choose two.)
port mappingUser-IDCitrixterminal servers - Question #117Threat Prevention
Which Security profile can you apply to protect against malware such as worms and Trojans?
antivirus profilemalware protectionworms and Trojanssecurity profiles - Question #118Firewall Administration and Management
Which two settings allow you to restrict access to the management interface? (Choose two )
management interfaceaccess restrictionadministrative servicesApp-ID - Question #119Firewall Administration and Management
What is a prerequisite before enabling an administrative account which relies on a local firewall user database?
authentication profilelocal user databaseadministrative accountsauthentication configuration - Question #120Centralized Management and Panorama
What can be achieved by selecting a policy target prior to pushing policy rules from Panorama?
Panoramapolicy targetsdevice groupscentralized policy management - Question #121URL Filtering
What is the correct process tor creating a custom URL category?
custom URL categoryURL filtering objectsPAN-OS navigationObjects menu - Question #122Security Policy
An administrator would like to silently drop traffic from the internet to a ftp server. Which Security policy action should the administrator select?
security policy actionsDrop vs Denysilent droptraffic blocking - Question #123Monitoring and Reporting
What is the main function of the Test Policy Match function?
Test Policy Matchpolicy troubleshootingtraffic verificationpolicy diagnostics - Question #124Security Policy
Which objects would be useful for combining several services that are often defined together?
service groupspolicy objectsservice objectsobject grouping - Question #125Security Policy
Which type of address object is `10.5.1.1/0.127.248.2`?
IP wildcard maskaddress objectsnetwork addressingaddress object types - Question #126Content-ID
A Security Profile can block or allow traffic at which point?
security profilestraffic processing orderpolicy enforcementdata plane inspection - Question #127User-ID
Which three types of authentication services can be used to authenticate user traffic flowing through the firewalls data plane? (Choose three )
data plane authenticationSAML 2.0KerberosTACACS+ - Question #128Content-ID
Which dynamic update type includes updated anti-spyware signatures?
dynamic updatesanti-spyware signaturesApplications and Threatscontent updates - Question #129URL Filtering
Which URL Filtering Profile action does not generate a log entry when a user attempts to access a URL?
URL filtering actionsallow action loggingURL filtering profilelog generation - Question #130Monitoring and Reporting
An administrator is reviewing another administrator s Security policy log settings. Which log setting configuration is consistent with best practices tor normal traffic?
session loggingLog at Session Startlog best practicessecurity policy logging - Question #131Management and Operations
What is considered best practice with regards to committing configuration changes?
configuration commitvalidate configurationcommit best practicesfirewall administration - Question #132URL Filtering
An administrator wants to prevent users from submitting corporate credentials in a phishing attack. Which Security profile should be applied?
credential phishingURL filteringcredential theft preventionsecurity profiles - Question #133User-ID
Which type of administrator account cannot be used to authenticate user traffic flowing through the firewall's data plane?
data plane authenticationlocal user accountsauthentication limitationsUser-ID - Question #134User-ID
Starting with PAN-OS version 9.1, which new type of object is supported for use within the User field of a Security policy rule?
dynamic user groupsUser-IDsecurity policy user fieldPAN-OS 9.1 - Question #135Management and Operations
How does an administrator schedule an Applications and Threats dynamic update while delaying installation of the update for a certain amount of time?
dynamic update schedulingthreshold configurationApplications and Threatsupdate delay - Question #136Management and Operations
Which three configuration settings are required on a Palo Alto Network firewall management interface? (Choose three.)
management interfacefirewall initial configurationIP addressnetmask - Question #137App-ID
At which point in the App-ID update process can you determine if an existing policy rule is affected by an App-ID update?
App-ID updatespolicy impact assessmentdynamic updatesupdate download process - Question #138Content-ID
You receive notification about a new malware that infects hosts. An infection results in the infected host attempting to contact a command-and-control server. Which Security Profil...
anti-spyware profilecommand-and-controlmalware detectionoutbound security policy - Question #139Management and Operations
Which statement is true regarding a Best Practice Assessment?
Best Practice Assessmentsecurity configuration reviewPalo Alto recommendationspolicy compliance - Question #140URL Filtering
The PowerBall Lottery has reached an unusually high value this week. Your company has decided to raise morale by allowing employees to access the PowerBall Lottery website access a...
custom URL categoryURL filtering allow listcategory overridegranular URL control - Question #141Security Policy Management
In a Security policy, what is the quickest way to reset all policy rule hit counters to zero?
rule hit countersecurity policyfirewall management - Question #142Security Policy Management
Based on the Security policy rules shown, SSH will be allowed on which port?
SSHapplication defaultssecurity policyport behavior - Question #143Threat Prevention
You receive notification about new malware that is being used to attack hosts. The malware exploits a software bug in common application. Which Security Profile detects and blocks...
vulnerability protectionthreat signaturesmalwaresecurity profiles - Question #144Firewall Architecture and Design
Palo Alto Networks firewall architecture accelerates content inspection performance while minimizing latency using which two components? (Choose two.)
firewall architectureparallel processingsingle-passcontent inspection - Question #145Logging and Reporting
An administrator is reviewing another administrator's Security policy log settings. Which log setting configuration is consistent with best practices for normal traffic?
session logginglog at session endbest practicestraffic logging - Question #146Threat Prevention
Which Security profile would you apply to identify infected hosts on the protected network using DNS traffic?
anti-spywareDNS sinkholecommand and controlinfected host detection - Question #147Network Configuration and Zone Design
Given the topology, which zone type should zone A and zone B to be configured with?
zone typesLayer 3network zonesinterface configuration - Question #148URL Filtering
Assume a custom URL Category Object of "NO-FILES" has been created to identify a specific website? How can file uploading/downloading be restricted for the website while permitting...
URL filteringcustom URL categoryfile blockingsecurity policy - Question #149URL Filtering
Which URL Filtering profile action would you set to allow users the option to access a site only if they provide a URL admin password?
URL filteringoverride actionadmin passwordaccess control - Question #150Application-Based Policy
How are Application Filters or Application Groups used in firewall policy?
application filterapplication groupdynamic groupingapplication-based policy