PCNSE · Question #592
An engineer needs to configure a standardized template for all Panorama-managed firewalls. These settings will be configured on a template named "Global" and will be included in all template stacks…
The correct answer is B. SSL decryption exclusion D. Login banner E. Dynamic updates. This question asks to identify three common configuration settings that can be standardized across all Panorama-managed firewalls within a global template.
Question
An engineer needs to configure a standardized template for all Panorama-managed firewalls. These settings will be configured on a template named "Global" and will be included in all template stacks. Which three settings can be configured in this template? (Choose three.)
Options
- ALog Forwarding profile
- BSSL decryption exclusion
- CEmail scheduler
- DLogin banner
- EDynamic updates
How the community answered
(34 responses)- A3% (1)
- B88% (30)
- C9% (3)
Why each option
This question asks to identify three common configuration settings that can be standardized across all Panorama-managed firewalls within a global template.
While Log Forwarding profiles are objects defined within a template, they are applied within security policies or other logging contexts, and the question might be looking for more direct device-level settings rather than policy-dependent objects.
SSL decryption exclusion lists are defined in templates to uniformly specify traffic that should bypass decryption across all managed firewalls, ensuring compliance or avoiding issues with specific applications.
An email scheduler is typically used for specific reporting or alert functions, not a fundamental device configuration setting that would be broadly managed as a core part of a global template for firewall operational behavior.
A login banner is a device-specific system setting that can be configured in a Panorama template to enforce a consistent legal or security message across the login interfaces of all managed firewalls.
Dynamic update schedules for components like Antivirus, Threat, or WildFire can be configured in a template to ensure all managed firewalls receive and apply critical updates consistently and on a predetermined schedule.
Concept tested: Panorama template configuration elements
Source: https://docs.paloaltonetworks.com/panorama/10-2/panorama-admin/manage-firewalls/templates-and-template-stacks.html
Topics
Community Discussion
No community discussion yet for this question.