nerdexam
Palo_Alto_Networks

PCNSE · Question #570

A company is deploying User-ID in their network. The firewall team needs to have the ability to see and choose from a list of usernames and user groups directly inside the Panorama policies when…

The correct answer is B. by configuring Master Device in Panorama > Device Groups. For Panorama to use username or groups, its needs a master device set in the device group. https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000PMtpCAG

Submitted by ahmad_uae· Apr 18, 2026Deploy and Configure

Question

A company is deploying User-ID in their network. The firewall team needs to have the ability to see and choose from a list of usernames and user groups directly inside the Panorama policies when creating new security rules. How can this be achieved?

Options

  • Aby configuring User-ID group mapping in Panorama > User Identification
  • Bby configuring Master Device in Panorama > Device Groups
  • Cby configuring User-ID source device in Panorama > Managed Devices
  • Dby configuring Data Redistribution Client in Panorama > Data Redistribution

How the community answered

(27 responses)
  • A
    15% (4)
  • B
    74% (20)
  • C
    4% (1)
  • D
    7% (2)

Explanation

For Panorama to use username or groups, its needs a master device set in the device group. https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000PMtpCAG

Topics

#User-ID#Panorama#Policy Management#Master Device Configuration

Community Discussion

No community discussion yet for this question.

Full PCNSE Practice