nerdexam
Palo_Alto_Networks

NGFW-ENGINEER · Question #122

What is the primary use case for the CN-Series NGFW?

The correct answer is D. Enforcing Security policies between pods in a Kubernetes environment (east-west). The CN-Series (Container Next-Generation Firewall) is Palo Alto Networks' firewall purpose-built for Kubernetes environments. Its primary use case is enforcing Security policies between pods within a Kubernetes cluster - this is east-west traffic (D), meaning lateral traffic…

Deploying Containerized NGFW

Question

What is the primary use case for the CN-Series NGFW?

Options

  • AProtecting mobile users and remote branch offices (east-west)
  • BProviding security for physical data center perimeters (north-south)
  • CSecuring traffic in and out of a public cloud VPC or VNet (north-south)
  • DEnforcing Security policies between pods in a Kubernetes environment (east-west)

How the community answered

(18 responses)
  • A
    6% (1)
  • C
    6% (1)
  • D
    89% (16)

Explanation

The CN-Series (Container Next-Generation Firewall) is Palo Alto Networks' firewall purpose-built for Kubernetes environments. Its primary use case is enforcing Security policies between pods within a Kubernetes cluster - this is east-west traffic (D), meaning lateral traffic moving between workloads inside the same environment rather than in or out of the perimeter. The CN-Series integrates with Kubernetes networking (CNI) to inspect and control inter-pod traffic. Protecting mobile users and remote branch offices (A) is the role of GlobalProtect and Prisma Access. Securing physical data center perimeters with north-south traffic (B) is handled by PA-Series hardware firewalls. Securing north-south traffic in a public cloud VPC or VNet (C) is the role of the VM-Series firewall deployed in cloud environments.

Topics

#Palo Alto Networks CN-Series#Container Security#Kubernetes

Community Discussion

No community discussion yet for this question.

Full NGFW-ENGINEER Practice