Palo_Alto_Networks
NGFW-ENGINEER · Question #1
In a Palo Alto Networks environment, GlobalProtect has been enabled using certificate-based authentication for both users and devices. To ensure proper validation of certificates, one or more certific
Sign in or unlock NGFW-ENGINEER to reveal the answer and full explanation for question #1. The question stem and answer options stay visible for context.
GlobalProtect Configuration
Question
In a Palo Alto Networks environment, GlobalProtect has been enabled using certificate-based authentication for both users and devices. To ensure proper validation of certificates, one or more certificate profiles are configured. What function do certificate profiles serve in this context?
Options
- AThey store private keys for users and devices, effectively allowing the firewall to issue or reissue
- BThey define trust anchors (root / intermediate Certificate Authorities (CAs)), specify revocation
- CThey allow the firewall to bypass certificate validation entirely, focusing only on username /
- DThey provide a one-click mechanism to distribute certificates to all endpoints without relying on
Unlock NGFW-ENGINEER to see the answer
You've previewed enough free NGFW-ENGINEER questions. Unlock NGFW-ENGINEER for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.
Topics
#GlobalProtect#Certificate Authentication#Certificate Profiles#PKI Trust