nerdexam
Palo_Alto_Networks

PCNSE · Question #682

An organization is interested in migrating from their existing web proxy architecture to the Web Proxy feature of their PAN-OS 11.0 firewalls. Currently, HTTP and SSL requests contain the…

The correct answer is C. Transparent proxy. For the transparent proxy method, the request contains the destination IP address of the web server and the proxy transparently intercepts the client request (either by being in-line or by traffic steering). There is no client configuration and Panorama is optional. Transparent…

Submitted by saadiq_pk· Apr 18, 2026Deploy and Configure

Question

An organization is interested in migrating from their existing web proxy architecture to the Web Proxy feature of their PAN-OS 11.0 firewalls. Currently, HTTP and SSL requests contain the destination IP address of the web server and the client browser is redirected to the proxy. Which PAN-OS proxy method should be configured to maintain this type of traffic flow?

Options

  • ASSL forward proxy
  • BExplicit proxy
  • CTransparent proxy
  • DDNS proxy

How the community answered

(48 responses)
  • A
    2% (1)
  • B
    2% (1)
  • C
    92% (44)
  • D
    4% (2)

Explanation

For the transparent proxy method, the request contains the destination IP address of the web server and the proxy transparently intercepts the client request (either by being in-line or by traffic steering). There is no client configuration and Panorama is optional. Transparent proxy requires a loopback interface, User-ID configuration in the proxy zone, and specific Destination NAT (DNAT) rules. Transparent proxy does not support X-Authenticated Users (XAU) or Web Cache Communications Protocol (WCCP). https://docs.paloaltonetworks.com/pan-os/11-0/pan-os-new-features/networking-features/web-

Topics

#Web Proxy#Transparent Proxy#PAN-OS 11.0#Traffic Flow

Community Discussion

No community discussion yet for this question.

Full PCNSE Practice