nerdexam
Palo_Alto_Networks

PCNSE · Question #514

A firewall administrator needs to be able to inspect inbound HTTPS traffic on servers hosted in their DMZ to prevent the hosted service from being exploited. Which combination of features can allow…

The correct answer is C. Vulnerability Protection profile and a Decryption policy. Decryption policy to inspect inbound HTTPS, and Vulnerability profile to stop attempts to exploit system flaws or gain unauthorized access to system.

Submitted by andreas_gr· Apr 18, 2026Deploy and Configure

Question

A firewall administrator needs to be able to inspect inbound HTTPS traffic on servers hosted in their DMZ to prevent the hosted service from being exploited. Which combination of features can allow PAN-OS to detect exploit traffic in a session with TLS encapsulation?

Options

  • ADecryption policy and a Data Filtering profile
  • Ba WildFire profile and a File Blocking profile
  • CVulnerability Protection profile and a Decryption policy
  • Da Vulnerability Protection profile and a QoS policy

How the community answered

(29 responses)
  • A
    17% (5)
  • B
    3% (1)
  • C
    72% (21)
  • D
    7% (2)

Explanation

Decryption policy to inspect inbound HTTPS, and Vulnerability profile to stop attempts to exploit system flaws or gain unauthorized access to system.

Topics

#Decryption#Vulnerability Protection#HTTPS Inspection#Threat Prevention

Community Discussion

No community discussion yet for this question.

Full PCNSE Practice