nerdexam
Palo_Alto_NetworksPalo_Alto_Networks

PCNSE · Question #331

PCNSE Question #331: Real Exam Question with Answer & Explanation

The correct answer is B: Policy Optimizer. This new feature identifies port-based rules so you can convert them to application-based rules that allow the traffic or add applications to existing rules without compromising application https://docs.paloaltonetworks.com/pan-os/10-2/pan-os-admin/app-id/security-policy-rule-

Submitted by renata2k· Apr 18, 2026Operate

Question

An organization has recently migrated its infrastructure and configuration to NGFWs, for which Panorama manages the devices. The organization is coming from a L2-L4 firewall vendor, but wants to use App-ID while identifying policies that are no longer needed. Which Panorama tool can help this organization?

Options

  • AConfig Audit
  • BPolicy Optimizer
  • CApplication Groups
  • DTest Policy Match

Explanation

This new feature identifies port-based rules so you can convert them to application-based rules that allow the traffic or add applications to existing rules without compromising application https://docs.paloaltonetworks.com/pan-os/10-2/pan-os-admin/app-id/security-policy-rule-

Topics

#Policy Optimization#App-ID#Panorama Tools#Security Policy Management

Community Discussion

No community discussion yet for this question.

Full PCNSE PracticeBrowse All PCNSE Questions