PCNSE · Question #331
PCNSE Question #331: Real Exam Question with Answer & Explanation
The correct answer is B: Policy Optimizer. This new feature identifies port-based rules so you can convert them to application-based rules that allow the traffic or add applications to existing rules without compromising application https://docs.paloaltonetworks.com/pan-os/10-2/pan-os-admin/app-id/security-policy-rule-
Question
An organization has recently migrated its infrastructure and configuration to NGFWs, for which Panorama manages the devices. The organization is coming from a L2-L4 firewall vendor, but wants to use App-ID while identifying policies that are no longer needed. Which Panorama tool can help this organization?
Options
- AConfig Audit
- BPolicy Optimizer
- CApplication Groups
- DTest Policy Match
Explanation
This new feature identifies port-based rules so you can convert them to application-based rules that allow the traffic or add applications to existing rules without compromising application https://docs.paloaltonetworks.com/pan-os/10-2/pan-os-admin/app-id/security-policy-rule-
Topics
Community Discussion
No community discussion yet for this question.