nerdexam
Palo_Alto_Networks

PCNSE · Question #813

An existing log forwarding profile is currently configured to forward all threat logs to Panorama. The firewall engineer wants to add syslog as an additional log forwarding method. The requirement…

The correct answer is C. 1. Open the current log forwarding profile. To meet the requirement of forwarding only medium or higher severity threat logs to syslog without affecting the existing forwarding configuration to Panorama: 1. Use the current log forwarding profile to maintain the existing Panorama forwarding 2. Add a new match list…

Submitted by omar99· Apr 18, 2026Deploy and Configure

Question

An existing log forwarding profile is currently configured to forward all threat logs to Panorama. The firewall engineer wants to add syslog as an additional log forwarding method. The requirement is to forward only medium or higher severity threat logs to syslog. Forwarding to Panorama must not be changed. Which set of actions should the engineer take to achieve this goal?

Options

  • A
    1. Open the current log forwarding profile.
  • B
    1. Create a new log forwarding profile.
  • C
    1. Open the current log forwarding profile.
  • D
    1. Create a new log forwarding profile.

How the community answered

(28 responses)
  • A
    14% (4)
  • B
    11% (3)
  • C
    71% (20)
  • D
    4% (1)

Explanation

To meet the requirement of forwarding only medium or higher severity threat logs to syslog without affecting the existing forwarding configuration to Panorama: 1. Use the current log forwarding profile to maintain the existing Panorama forwarding 2. Add a new match list specifically for threat logs to configure the additional forwarding to 3. Define a filter within the match list to specify the condition for forwarding logs (e.g., severity medium or higher). 4. Select the syslog forward method to send the filtered logs to the syslog server. This approach ensures that the existing forwarding to Panorama remains unchanged while introducing the new syslog forwarding rule.

Topics

#Log Forwarding Profiles#Syslog Integration#Threat Logs#Configuration Management

Community Discussion

No community discussion yet for this question.

Full PCNSE Practice