Palo_Alto_Networks
PCNSA · Question #159
Assume that traffic matches a Security policy rule but the attached Security Profiles is configured to block matching traffic. Which statement accurately describes how the firewall will apply an…
The correct answer is D. If it is an allowed rule, then the Security Profile action is applied last. Security Profiles are added to the end of Security policy rules. After a packet has been allowed by the Security policy.
Submitted by ahmad_uae· Apr 18, 2026Securing Traffic
Question
Assume that traffic matches a Security policy rule but the attached Security Profiles is configured to block matching traffic. Which statement accurately describes how the firewall will apply an action to matching traffic?
Options
- AIf it is a block rule, then Security Profile action is applied last.
- BIf it is an allow rule, then the Security policy rule is applied last.
- CIf it is a block rule, then the Security policy rule action is applied last.
- DIf it is an allowed rule, then the Security Profile action is applied last.
How the community answered
(18 responses)- A6% (1)
- C6% (1)
- D89% (16)
Explanation
Security Profiles are added to the end of Security policy rules. After a packet has been allowed by the Security policy.
Topics
#Security Policy#Security Profiles#Action Precedence#Traffic Flow
Community Discussion
No community discussion yet for this question.