nerdexam
Palo_Alto_Networks

PCNSA · Question #335

Which Security policy action will message a user's browser that their web session has been terminated?

The correct answer is A. Reset client. The 'Reset client' action sends a TCP RST (reset) packet to the client (the user's browser), which causes the browser to display a connection-reset error message, effectively notifying the user that their session has been terminated. In contrast, 'Drop' silently discards packets

Submitted by luis.pe· Apr 18, 2026Securing Traffic

Question

Which Security policy action will message a user's browser that their web session has been terminated?

Options

  • AReset client
  • BDeny
  • CDrop
  • DReset server

How the community answered

(22 responses)
  • A
    91% (20)
  • B
    5% (1)
  • C
    5% (1)

Explanation

The 'Reset client' action sends a TCP RST (reset) packet to the client (the user's browser), which causes the browser to display a connection-reset error message, effectively notifying the user that their session has been terminated. In contrast, 'Drop' silently discards packets without notification, 'Reset server' sends a TCP RST to the server-side of the connection (not the client), and 'Deny' is not a standard Palo Alto Networks Security policy action - the correct term for blocking without notification is 'Drop'.

Topics

#Security Policy Actions#TCP Reset#Session Termination#Palo Alto Firewall Policies

Community Discussion

No community discussion yet for this question.

Full PCNSA Practice