PCNSE · Question #282
For which two reasons would a firewall discard a packet as part of the packet flow sequence? (Choose two.)
The correct answer is A. ingress processing errors B. rule match with action "deny". Denying traffic will discard the packet. Packets can also be discarded due to malformed or incorrect frames, datagrams or packets. C and D are irrelevant as packets would never be discarded if allowed and ECMP simply allows the use of multiple routes or paths to a destination…
Question
For which two reasons would a firewall discard a packet as part of the packet flow sequence? (Choose two.)
Options
- Aingress processing errors
- Brule match with action "deny"
- Crule match with action "allow"
- Dequal-cost multipath
How the community answered
(17 responses)- A88% (15)
- C6% (1)
- D6% (1)
Explanation
Denying traffic will discard the packet. Packets can also be discarded due to malformed or incorrect frames, datagrams or packets. C and D are irrelevant as packets would never be discarded if allowed and ECMP simply allows the use of multiple routes or paths to a destination. Read up on "Packer Flow Sequence", it details where exactly it will discard packets (layer 2, layer https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClVHCA0
Topics
Community Discussion
No community discussion yet for this question.