PCNSE · Question #733
Which type of policy in Palo Alto Networks firewalls can use Device-ID as a match condition?
The correct answer is C. QoS. Similar to how User-ID provides user-based policy rules and App-ID provides app-based policy rules, Device-ID provides policy rules that are based on a device, regardless of changes to its IP address or location. By providing traceability for devices and associating network…
Question
Which type of policy in Palo Alto Networks firewalls can use Device-ID as a match condition?
Options
- ATunnel inspection
- BNAT
- CQoS
- DDOS protection
How the community answered
(22 responses)- A5% (1)
- B5% (1)
- C91% (20)
Explanation
Similar to how User-ID provides user-based policy rules and App-ID provides app-based policy rules, Device-ID provides policy rules that are based on a device, regardless of changes to its IP address or location. By providing traceability for devices and associating network events with specific devices, Device-ID lets you gain context for how events relate to devices and adds policy rules that are associated with devices, instead of users, locations, or IP addresses, which can change over time. You can use Device-ID in Security, Decryption, Quality of Service (QoS), and Authentication policies.
Topics
Community Discussion
No community discussion yet for this question.