nerdexam
Palo_Alto_NetworksPalo_Alto_Networks

NGFW-ENGINEER · Question #116

NGFW-ENGINEER Question #116: Real Exam Question with Answer & Explanation

The correct answer is A: It provides selective DNS resolution, with specified domains resolved through the tunnel,. Split DNS configuration enables selective DNS routing where only queries for specified internal domains are sent through the VPN tunnel to corporate DNS servers, while all other DNS requests continue to use the client’s local DNS, optimizing performance and preserving local inter

GlobalProtect Configuration

Question

An engineer is configuring a GlobalProtect portal and wants to enable split tunneling. The the DNS servers assigned by the VPN, while allowing all other DNS queries to be resolved by the client's locally configured DNS. What is the effect of configuring this split DNS policy?

Options

  • AIt provides selective DNS resolution, with specified domains resolved through the tunnel,
  • BIt blocks access to all domains that are not explicitly listed in the split tunnel configuration.
  • CIt forces all applications to use the corporate DNS servers, regardless of the split tunnel settings
  • DIt creates a DNS proxy on the client endpoint that forwards all queries to the firewall for inspection.

Explanation

Split DNS configuration enables selective DNS routing where only queries for specified internal domains are sent through the VPN tunnel to corporate DNS servers, while all other DNS requests continue to use the client’s local DNS, optimizing performance and preserving local internet

Topics

#GlobalProtect#Split DNS#VPN#Split Tunneling

Community Discussion

No community discussion yet for this question.

Full NGFW-ENGINEER PracticeBrowse All NGFW-ENGINEER Questions