PCNSE · Question #390
Before an administrator of a VM-500 can enable DoS and zone protection, what actions need to be taken?
The correct answer is D. Measure and monitor the CPU consumption of the firewall data plane to ensure that each firewall. Check and monitor firewall dataplane CPU consumption to ensure that each firewall is properly sized to support DoS and Zone Protection along with any other features that consume CPU cycles, such as decryption…
Question
Before an administrator of a VM-500 can enable DoS and zone protection, what actions need to be taken?
Options
- ACreate a zone protection profile with flood protection configured to defend an entire egress zone
- BAdd a WildFire subscription to activate DoS and zone protection features.
- CReplace the hardware firewall, because DoS and zone protection are not available with VM-
- DMeasure and monitor the CPU consumption of the firewall data plane to ensure that each firewall
How the community answered
(33 responses)- A12% (4)
- B6% (2)
- D82% (27)
Explanation
Check and monitor firewall dataplane CPU consumption to ensure that each firewall is properly sized to support DoS and Zone Protection along with any other features that consume CPU cycles, such as decryption. https://docs.paloaltonetworks.com/pan-os/10-2/pan-os-admin/zone-protection-and-dos-protection
Topics
Community Discussion
No community discussion yet for this question.