nerdexam
Palo_Alto_Networks

NETSEC-PRO · Question #67

Which GlobalProtect configuration is recommended for granular security enforcement of remote user device posture?

The correct answer is A. Configuring host information profile (HIP) checks for all mobile users. Host Information Profile (HIP) checks are used in GlobalProtect to collect and evaluate endpoint posture (OS, patch level, AV status) to enforce granular security policies for remote users. The HIP feature collects information about the host and can be used in security policies t

GlobalProtect and Remote Access

Question

Which GlobalProtect configuration is recommended for granular security enforcement of remote user device posture?

Options

  • AConfiguring host information profile (HIP) checks for all mobile users
  • BConfiguring a rule that blocks the ability of users to disable GlobalProtect while accessing internal
  • CImplementing multi-factor authentication (MFA) for all users attempting to access internal
  • DApplying log at session end to all GlobalProtect Security policies

How the community answered

(27 responses)
  • A
    74% (20)
  • B
    15% (4)
  • C
    4% (1)
  • D
    7% (2)

Explanation

Host Information Profile (HIP) checks are used in GlobalProtect to collect and evaluate endpoint posture (OS, patch level, AV status) to enforce granular security policies for remote users. The HIP feature collects information about the host and can be used in security policies to enforce posture-based access control. This ensures only compliant endpoints can access sensitive resources. This enables fine-grained, context-aware access decisions beyond user identity alone.

Topics

#GlobalProtect#HIP checks#device posture#remote access security

Community Discussion

No community discussion yet for this question.

Full NETSEC-PRO Practice