nerdexam
Palo_Alto_Networks

PCNSE · Question #876

What must be taken into consideration when preparing a log forwarding design for all of a customer's deployed Palo Alto Networks firewalls?

The correct answer is B. Traffic and threat logs will not be forwarded unless the relevant Log Forwarding profile is attached. For log forwarding in PAN-OS, traffic and threat logs require a Log Forwarding profile attached to Security rules (Option B) to send logs to external systems (e.g., syslog, Panorama). Without this, logs are stored locally but not forwarded, a critical design consideration.

Submitted by carter_n· Apr 18, 2026Deploy and Configure

Question

What must be taken into consideration when preparing a log forwarding design for all of a customer's deployed Palo Alto Networks firewalls?

Options

  • AThe logs will not contain the names of the identified applications unless the "Enable enhanced
  • BTraffic and threat logs will not be forwarded unless the relevant Log Forwarding profile is attached
  • CApp-ID engine will not identify any application traffic unless the "Enable enhanced application
  • DTraffic and threat logs will not be forwarded unless the relevant Log Forwarding profile is selected

How the community answered

(23 responses)
  • A
    4% (1)
  • B
    87% (20)
  • D
    9% (2)

Explanation

For log forwarding in PAN-OS, traffic and threat logs require a Log Forwarding profile attached to Security rules (Option B) to send logs to external systems (e.g., syslog, Panorama). Without this, logs are stored locally but not forwarded, a critical design consideration.

Topics

#Log Forwarding#Logging Profile#Security Policy#Configuration

Community Discussion

No community discussion yet for this question.

Full PCNSE Practice