nerdexam
Palo_Alto_Networks

PCNSE · Question #733

Which type of policy in Palo Alto Networks firewalls can use Device-ID as a match condition?

The correct answer is C. QoS. Similar to how User-ID provides user-based policy rules and App-ID provides app-based policy rules, Device-ID provides policy rules that are based on a device, regardless of changes to its IP address or location. By providing traceability for devices and associating network…

Submitted by valeria.br· Apr 18, 2026Deploy and Configure

Question

Which type of policy in Palo Alto Networks firewalls can use Device-ID as a match condition?

Options

  • ATunnel inspection
  • BNAT
  • CQoS
  • DDOS protection

How the community answered

(22 responses)
  • A
    5% (1)
  • B
    5% (1)
  • C
    91% (20)

Explanation

Similar to how User-ID provides user-based policy rules and App-ID provides app-based policy rules, Device-ID provides policy rules that are based on a device, regardless of changes to its IP address or location. By providing traceability for devices and associating network events with specific devices, Device-ID lets you gain context for how events relate to devices and adds policy rules that are associated with devices, instead of users, locations, or IP addresses, which can change over time. You can use Device-ID in Security, Decryption, Quality of Service (QoS), and Authentication policies.

Topics

#Palo Alto Networks#Device-ID#QoS#Policy matching

Community Discussion

No community discussion yet for this question.

Full PCNSE Practice