PCNSE · Question #519
A firewall administrator wants to avoid overflowing the company syslog server with traffic logs. What should the administrator do to prevent the forwarding of DNS traffic logs to syslog?
The correct answer is B. Go to the Log Forwarding profile used to forward traffic logs to syslog.. Create a new log forwarding profile which forwards logs only to Syslog device. Create a specific security policy for DNS traffic https://live.paloaltonetworks.com/t5/general-topics/how-to-stop-dns-traffic-logs-going-to-log- collector/td-p/290425
Question
A firewall administrator wants to avoid overflowing the company syslog server with traffic logs. What should the administrator do to prevent the forwarding of DNS traffic logs to syslog?
Options
- ADisable logging on security rules allowing DNS.
- BGo to the Log Forwarding profile used to forward traffic logs to syslog.
- CCreate a security rule to deny DNS traffic with the syslog server in the destination
- DGo to the Log Forwarding profile used to forward traffic logs to syslog.
How the community answered
(27 responses)- B89% (24)
- C4% (1)
- D7% (2)
Explanation
Create a new log forwarding profile which forwards logs only to Syslog device. Create a specific security policy for DNS traffic https://live.paloaltonetworks.com/t5/general-topics/how-to-stop-dns-traffic-logs-going-to-log- collector/td-p/290425
Topics
Community Discussion
No community discussion yet for this question.