PCNSE · Question #618
Based on the screenshots above, and with no configuration inside the Template Stack itself, what access will the device permit on its Management port?
The correct answer is C. The firewall will allow HTTP, Telnet, SNMP, HTTPS, SSH and Ping from IP addresses defined as. The default management interface profile on a Palo Alto Networks firewall permits HTTP, Telnet, SNMP, HTTPS, SSH, and Ping. The critical differentiator in this question is SNMP - the default profile includes it, whereas options A, B, and D do not. Because no configuration…
Question
Based on the screenshots above, and with no configuration inside the Template Stack itself, what access will the device permit on its Management port?
Exhibit
Options
- AThe firewall will allow HTTP Telnet, HTTPS, SSH, and Ping from IP addresses defined as
- BThe firewall will allow HTTP Telnet, HTTPS, SSH, and Ping from IP addresses defined as
- CThe firewall will allow HTTP, Telnet, SNMP, HTTPS, SSH and Ping from IP addresses defined as
- DThe firewall will allow HTTP, Telnet, HTTPS, SSH, and Ping from IP addresses defined as
How the community answered
(21 responses)- A5% (1)
- B14% (3)
- C81% (17)
Explanation
The default management interface profile on a Palo Alto Networks firewall permits HTTP, Telnet, SNMP, HTTPS, SSH, and Ping. The critical differentiator in this question is SNMP - the default profile includes it, whereas options A, B, and D do not. Because no configuration exists inside the Template Stack itself, the device falls back to factory/device defaults, which include all six services listed in option C.
Topics
Community Discussion
No community discussion yet for this question.
