nerdexam
Palo_Alto_Networks

PCNSA · Question #71

Four configuration choices are listed, and each could be used to block access to a specific URL. If you configured each choice to block the same URL then which choice would be the last to block…

The correct answer is D. PAN-DB URL category in URL Filtering Profile. The precedence is from the top down; First Match Wins: 1) Block list: Manually entered blocked URLs Objects - 2) Allow list: Manually entered allowed URLs Objects - 3) Custom URL Categories - 4) Cached Cached: URLs learned from External Dynamic Lists (EDLs) - 5) Pre- Defined…

Submitted by klara.se· Apr 18, 2026Policy Evaluation and Management

Question

Four configuration choices are listed, and each could be used to block access to a specific URL. If you configured each choice to block the same URL then which choice would be the last to block access to the URL?

Options

  • AEDL in URL Filtering Profile
  • BCustom URL category in URL Filtering Profile
  • CCustom URL category in Security policy rule
  • DPAN-DB URL category in URL Filtering Profile

How the community answered

(47 responses)
  • B
    4% (2)
  • C
    2% (1)
  • D
    94% (44)

Explanation

The precedence is from the top down; First Match Wins: 1) Block list: Manually entered blocked URLs Objects - 2) Allow list: Manually entered allowed URLs Objects - 3) Custom URL Categories - 4) Cached Cached: URLs learned from External Dynamic Lists (EDLs) - 5) Pre- Defined Categories: PAN-DB or Brightcloud categories.

Topics

#URL Filtering#Policy Precedence#Security Profiles#External Dynamic Lists

Community Discussion

No community discussion yet for this question.

Full PCNSA Practice