nerdexam
Palo_Alto_NetworksPalo_Alto_Networks

NGFW-ENGINEER · Question #38

NGFW-ENGINEER Question #38: Real Exam Question with Answer & Explanation

The correct answer is A: Traffic is denied by default unless a security policy explicitly allows it. See the full explanation below for the reasoning.

Security Policy Configuration and Enforcement

Question

How does a Palo Alto firewall handle traffic between two different security zones?

Options

  • ATraffic is denied by default unless a security policy explicitly allows it
  • BTraffic is allowed automatically between zones
  • CTraffic is automatically encrypted between zones
  • DTraffic between zones is forwarded without inspection

Topics

#Security Zones#Security Policies#Default Deny#Traffic Flow

Community Discussion

No community discussion yet for this question.

Full NGFW-ENGINEER PracticeBrowse All NGFW-ENGINEER Questions