PCNSE · Question #612
PCNSE Question #612: Real Exam Question with Answer & Explanation
The correct answer is A: the IP-address and corresponding server type (Microsoft Active Directory or Microsoft Exchange). To collect all of the required mappings, the User-ID agent must connect to all servers that your users log in to in order to monitor the security log files on all servers that contain login events. Auto-discovery locates domain controllers in the local domain only; you must manua
Question
An administrator wants to configure the Palo Alto Networks Windows User-ID agent to map IP addresses to usernames. The company uses four Microsoft Active Directory servers and two Microsoft Exchange servers, which can provide logs for login events. All six servers have IP addresses assigned from the following subnet: 192.168.28.32/27. The Microsoft Active Directory servers reside in 192.168.28.32/28, and the Microsoft Exchange servers reside in 192.168.28.48/28. What information does the administrator need to provide in the User Identification > Discovery section?
Options
- Athe IP-address and corresponding server type (Microsoft Active Directory or Microsoft Exchange)
- Bnetwork 192.168.28.32/28 with server type Microsoft Active Directory and network
- Cone IP address of a Microsoft Active Directory server and "Auto Discover" enabled to
- Dnetwork 192.168.28.32/27 with server type Microsoft
Explanation
To collect all of the required mappings, the User-ID agent must connect to all servers that your users log in to in order to monitor the security log files on all servers that contain login events. Auto-discovery locates domain controllers in the local domain only; you must manually add Exchange servers, eDirectory servers, and syslog senders. https://docs.paloaltonetworks.com/pan-os/10-1/pan-os-admin/user-id/map-ip-addresses-to- users/configure-user-mapping-using-the-windows-user-id-agent/configure-the-windows-based- user-id-agent-for-user-mapping
Topics
Community Discussion
No community discussion yet for this question.