PCNSE · Question #329
PCNSE Question #329: Real Exam Question with Answer & Explanation
The correct answer is D: unknown-udp. To safely enable applications you must classify all traffic, across all ports, all the time. With App- ID, the only applications that are typically classified as unknown traffic--tcp, udp or non-syn-tcp--in the ACC and the Traffic logs are commercially available applications that
Question
Which value in the Application column indicates UDP traffic that did not match an App-ID signature?
Options
- Anot-applicable
- Bincomplete
- Cunknown-ip
- Dunknown-udp
Explanation
To safely enable applications you must classify all traffic, across all ports, all the time. With App- ID, the only applications that are typically classified as unknown traffic--tcp, udp or non-syn-tcp--in the ACC and the Traffic logs are commercially available applications that have not yet been added to App-ID, internal or custom applications on your network, or potential threats. https://docs.paloaltonetworks.com/pan-os/10-2/pan-os-admin/app-id/manage-custom-or- unknown-applications
Topics
Community Discussion
No community discussion yet for this question.