nerdexam
Palo_Alto_Networks

PCNSC · Question #56

How does Panorama prompt VMWare NSX to quarantine an infected VM?

The correct answer is D. HTTP Server Profile. Panorama includes predefined payload formats for threat and traffic logs in the HTTP Server Profile. These payload formats correspond to predefined security tags in NSX-V. When a guest VM is found in the threat or traffic logs, Panorama makes an API call to NSX-V Manager…

Enterprise Security Architecture with Palo Alto Networks

Question

How does Panorama prompt VMWare NSX to quarantine an infected VM?

Options

  • ASyslog Server Profile
  • BEmail Server Profile
  • CSNMP Server Profile
  • DHTTP Server Profile

How the community answered

(43 responses)
  • B
    5% (2)
  • C
    2% (1)
  • D
    93% (40)

Explanation

Panorama includes predefined payload formats for threat and traffic logs in the HTTP Server Profile. These payload formats correspond to predefined security tags in NSX-V. When a guest VM is found in the threat or traffic logs, Panorama makes an API call to NSX-V Manager telling NSX-V Manager to tag the guest VM with the tag specified in the HTTP Server Profile. When the guest VM becomes tagged, NSX-V Manager dynamically moves the tagged guest VM into the quarantine security group, which places the guest VM into the quarantine dynamic address https://docs.paloaltonetworks.com/vm-series/10-0/vm-series-deployment/set-up-the-vm-series- firewall-on-nsx/set-up-the-vm-series-firewall-on-vmware-nsx/dynamically-quarantine-infected-

Topics

#Panorama#VMware NSX#quarantine#HTTP Server Profile

Community Discussion

No community discussion yet for this question.

Full PCNSC Practice