NETSEC-ANALYST Exam Questions
435 real NETSEC-ANALYST exam questions with expert-verified answers and explanations. Page 7 of 9.
- Question #302Security Policy Management
Where within the firewall GUI can all existing tags be viewed?
firewall GUI navigationtagsObjects menupolicy management - Question #303Threat Prevention
What is the Anti-Spyware Security profile default action?
Anti-Spywaresecurity profilesdefault actionthreat prevention - Question #304Threat Prevention
To enable DNS sinkholing, which two addresses should be reserved? (Choose two.)
DNS sinkholingIPv4IPv6Anti-Spyware - Question #305Device Administration
A NetSec manager was asked to create a new firewall administrator profile with customized privileges. The new firewall administrator must be able to download TSF File and Starts Du...
admin rolesrole-based access controldevice administrationWeb UI permissions - Question #306Network Configuration and Routing
What must exist in order for the firewall to route traffic between Layer 3 interfaces?
virtual routerLayer 3 interfacesroutingnetwork configuration - Question #307Panorama Management
Which path in PAN-OS 10.2 is used to schedule a content update to managed devices using Panorama?
Panoramadynamic updatesdevice deploymentcontent updates - Question #308Threat Prevention
In which threat profile object would you configure the DNS Security service?
DNS SecurityAnti-Spyware profilethreat profilessecurity profiles - Question #309Security Policy Management
Which rule type is appropriate for matching traffic occurring within a specified zone?
intrazone rulesecurity policyzone matchingrule types - Question #310NAT Configuration
Which two matching criteria are used when creating a Security policy involving NAT? (Choose two.)
NATsecurity policypre-NAT addresspost-NAT zone - Question #311Security Policy Management
If a universal security rule was created for source zones A & B and destination zones A & B, to which traffic would the rule apply?
universal rulesecurity policyzone trafficintrazone matching - Question #312Network Configuration and Routing
Which interface type requires no routing or switching but applies Security or NAT policy rules before passing allowed traffic?
virtual wireinterface typessecurity policyNAT policy - Question #313Network Configuration and Routing
What is a valid Security Zone type in PAN-OS?
security zoneszone typesTap zonePAN-OS - Question #314Security Policy Management
An administrator is creating a Security policy rule and sees that the destination zone is grayed out. While creating the rule, which option was selected to cause this?
intrazone ruledestination zonerule configurationsecurity policy - Question #315Panorama Management
How many levels can there be in a device-group hierarchy, below the shared level?
device groupsPanorama hierarchymanagementdevice-group levels - Question #316Panorama Management
Where in Panorama would Zone Protection profiles be configured?
Zone Protection profilesPanorama templatesnetwork securitytemplate configuration - Question #317Security Policy Management
Which parameter is used to view the Security policy rulebase as groups?
security policytagsrulebase organizationpolicy grouping - Question #318Security Policy Management
When a security rule is configured as Intrazone, which field cannot be changed?
intrazone ruledestination zonerule configurationsecurity policy - Question #319NAT Configuration
An administrator is trying to understand which NAT policy is being matched. In what order does the firewall evaluate NAT policies?
NAT policypolicy evaluation ordertop-to-bottom matchingrule matching - Question #320Panorama Management
Which policy set should be used to ensure that a policy is applied just before the default security rules?
Panoramapost-rulebaseshared policydefault security rules - Question #321Security Policy Management
Which rule type is appropriate for matching traffic occurring within a specified zone? How should the administrator configure the firewall to restrict users to specific email appli...
application groupsapplication filteremail applicationssecurity policy - Question #322Threat Prevention
Review the screenshot below. Based on the information it contains, which protocol decoder will detect a machine-learning match, create a Threat log entry, and permit the traffic?
protocol decodersWildFire MLThreat logstraffic inspection - Question #323Network Security Policy
An interface can belong to how many Security Zones?
Security Zonesinterface configuration - Question #324Device Management
What are the two types of Administrator accounts? (Choose two.)
administrator accountsrole-based admindynamic admin - Question #325Device Management
The Net Sec Manager asked to create a new Firewall Operator profile with customized privileges. In particular, the new firewall operator should be able to: Check the configuration...
admin rolesserver profilesLDAP RADIUS TACACScustom privileges - Question #326Threat Prevention
Within the WildFire Analysis profile, which three items are configurable? (Choose three.)
WildFire Analysis profilefile typedirectionapplication - Question #327Threat Prevention
Which Security profile can be used to configure sinkhole IPs m the DNS Sinkhole settings?
DNS sinkholeAnti-Spyware profilesecurity profiles - Question #328Device Management
Which three management interface settings must be configured for functional dynamic updates and administrative access on a Palo Alto Networks firewall? (Choose three.)
management interfacedynamic updatesDNS serverNTP - Question #329Security Policy
How does the Policy Optimizer policy view differ from the Security policy view?
Policy Optimizersecurity policy viewrule sorting - Question #330Security Policy
An administrator creates a new Security policy rule to allow DNS traffic from the LAN to the DMZ zones. The administrator does not change the rule type from its default value. What...
security policy rule typesuniversal ruledefault rule type - Question #331Application Identification
What do application filters help provide access to?
application filtersapplication controlsanctioned applications - Question #332Application Identification
What is the function of an application group object?
application groupspolicy objectsapplication treatment - Question #333Security Policy
How would a Security policy need to be written to allow outbound traffic using Secure Shell (SSH) to destination ports tcp/22 and tcp/4422?
custom service objectsSSH non-default portssecurity policyapplication-default - Question #334Threat Prevention
Which type of DNS signatures are used by the firewall to identify malicious and command-and- control domains?
DNS Security signaturesmalicious domainsC2 detection - Question #335Security Policy
Which Security policy action will message a user's browser that their web session has been terminated?
security policy actionsreset clientbrowser notificationsession termination - Question #336Threat Prevention
In order to protect users against exploit kits that exploit a vulnerability and then automatically download malicious payloads, which Security profile should be configured?
Vulnerability Protectionexploit kitsmalicious payload downloadsecurity profiles - Question #337Threat Prevention
Which verdict may be assigned to a WildFire sample?
WildFire verdictsphishingmalware analysis - Question #338Threat Prevention
To protect against illegal code execution, which Security profile should be applied?
Vulnerability Protectioncode execution preventionallowed trafficsecurity profiles - Question #339Security Policy
Which three types of entries can be excluded from an external dynamic list? (Choose three.)
external dynamic listsEDL exclusionsIP addressesdomains URLs - Question #340Device Management
The Administrator profile "PCNSA Admin" is configured with an Authentication profile "Authentication Sequence PCNSA". The Authentication Sequence PCNSA has a profile list with four...
authentication sequenceauthentication fallbackLDAP RADIUS localauth profile order - Question #341Security Policy
By default, which action is assigned to the intrazone-default rule?
intrazone-default ruledefault security policydefault allow action - Question #342Panorama Management
A Panorama administrator would like to create an address object for the DNS server located in the New York City office, but does not want this object added to the other Panorama ma...
Panoramaaddress objectsshared objectsdevice groups - Question #343Monitoring and Troubleshooting
An administrator is troubleshooting an issue with traffic that matches the interzone-default rule, which is set to default configuration. What should the administrator do?
interzone-default ruletraffic logspolicy loggingtroubleshooting - Question #344Threat Prevention
What is the default action for the SYN Flood option within the DoS Protection profile?
SYN floodDoS protection profileRandom Early Dropflood protection - Question #345Security Policy Management
Application groups enable access to what?
application groupsApp-IDsanctioned applicationspolicy management - Question #346Security Policy Management
Where does a user assign a tag group to a policy rule in the policy creation window?
tag groupspolicy rulesGeneral tabpolicy creation - Question #347Security Policy Management
What is used to monitor Security policy applications and usage?
Policy OptimizerApp-IDapplication usagesecurity policy - Question #348Device Configuration and Management
What is considered best practice with regards to committing configuration changes?
commit processconfiguration validationbest practicesconfiguration management - Question #349Threat Prevention
Which Security profile generates an alert based on a threshold when the action is set to Alert?
DoS protection profilethreshold alertssecurity profilesflood protection - Question #350Security Policy Management
Given the network diagram, which two statements are true about traffic between the User and Server networks? (Choose two.)
intrazone rulesinterzone rulessecurity zonestraffic flow - Question #351Device Configuration and Management
Which setting is available to edit when a tag is created on the local firewall?
tagscolorobject managementlocal firewall