nerdexam
Palo_Alto_Networks

PCNSA · Question #81

For the firewall to use Active Directory to authenticate users, which Server Profile is required in the Authentication Profile?

The correct answer is C. LDAP. Active Directory (AD) uses the LDAP (Lightweight Directory Access Protocol) to expose directory information including user accounts and group memberships. Palo Alto firewalls communicate with AD via an LDAP Server Profile configured in the Authentication Profile. RADIUS (B) is…

Submitted by kwame.gh· Apr 18, 2026Configure

Question

For the firewall to use Active Directory to authenticate users, which Server Profile is required in the Authentication Profile?

Options

  • ATACACS+
  • BRADIUS
  • CLDAP
  • DSAML

How the community answered

(29 responses)
  • A
    3% (1)
  • C
    93% (27)
  • D
    3% (1)

Explanation

Active Directory (AD) uses the LDAP (Lightweight Directory Access Protocol) to expose directory information including user accounts and group memberships. Palo Alto firewalls communicate with AD via an LDAP Server Profile configured in the Authentication Profile. RADIUS (B) is a generic AAA protocol and does not natively speak to AD's directory structure. TACACS+ (A) is used for device administration. SAML (D) is a federated identity standard, not a direct AD integration method.

Topics

#Active Directory Integration#User Authentication#LDAP#Authentication Profiles

Community Discussion

No community discussion yet for this question.

Full PCNSA Practice