NGFW-ENGINEER · Question #122
What is the primary use case for the CN-Series NGFW?
The correct answer is D. Enforcing Security policies between pods in a Kubernetes environment (east-west). The CN-Series (Container Next-Generation Firewall) is Palo Alto Networks' firewall purpose-built for Kubernetes environments. Its primary use case is enforcing Security policies between pods within a Kubernetes cluster - this is east-west traffic (D), meaning lateral traffic…
Question
What is the primary use case for the CN-Series NGFW?
Options
- AProtecting mobile users and remote branch offices (east-west)
- BProviding security for physical data center perimeters (north-south)
- CSecuring traffic in and out of a public cloud VPC or VNet (north-south)
- DEnforcing Security policies between pods in a Kubernetes environment (east-west)
How the community answered
(18 responses)- A6% (1)
- C6% (1)
- D89% (16)
Explanation
The CN-Series (Container Next-Generation Firewall) is Palo Alto Networks' firewall purpose-built for Kubernetes environments. Its primary use case is enforcing Security policies between pods within a Kubernetes cluster - this is east-west traffic (D), meaning lateral traffic moving between workloads inside the same environment rather than in or out of the perimeter. The CN-Series integrates with Kubernetes networking (CNI) to inspect and control inter-pod traffic. Protecting mobile users and remote branch offices (A) is the role of GlobalProtect and Prisma Access. Securing physical data center perimeters with north-south traffic (B) is handled by PA-Series hardware firewalls. Securing north-south traffic in a public cloud VPC or VNet (C) is the role of the VM-Series firewall deployed in cloud environments.
Topics
Community Discussion
No community discussion yet for this question.