nerdexam
Palo_Alto_Networks

PCNSE · Question #282

For which two reasons would a firewall discard a packet as part of the packet flow sequence? (Choose two.)

The correct answer is A. ingress processing errors B. rule match with action "deny". Denying traffic will discard the packet. Packets can also be discarded due to malformed or incorrect frames, datagrams or packets. C and D are irrelevant as packets would never be discarded if allowed and ECMP simply allows the use of multiple routes or paths to a destination…

Submitted by fatima_kr· Apr 18, 2026Core Concepts

Question

For which two reasons would a firewall discard a packet as part of the packet flow sequence? (Choose two.)

Options

  • Aingress processing errors
  • Brule match with action "deny"
  • Crule match with action "allow"
  • Dequal-cost multipath

How the community answered

(17 responses)
  • A
    88% (15)
  • C
    6% (1)
  • D
    6% (1)

Explanation

Denying traffic will discard the packet. Packets can also be discarded due to malformed or incorrect frames, datagrams or packets. C and D are irrelevant as packets would never be discarded if allowed and ECMP simply allows the use of multiple routes or paths to a destination. Read up on "Packer Flow Sequence", it details where exactly it will discard packets (layer 2, layer https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClVHCA0

Topics

#Packet Flow#Packet Discard Reasons#Security Policy#Firewall Operations

Community Discussion

No community discussion yet for this question.

Full PCNSE Practice