nerdexam
Palo_Alto_Networks

PCNSE6 · Question #130

In the following display, ethernetl/6 is configured with an interface management profile that allows ping with no restriction on the source address: Given the following security policy rule base…

The correct answer is D. The traffic will be dropped by the firewall. See the full explanation below for the reasoning.

Question

In the following display, ethernetl/6 is configured with an interface management profile that allows ping with no restriction on the source address:

Given the following security policy rule base:

What is the result of a ping sent from an address on the Trust-L3 zone to the IP address of ethernet1/6?

Exhibit

PCNSE6 question #130 exhibit

Options

  • AThe firewall will send an ICMP redirect message to the client.
  • BThe client will receive an ICMP "destination unreachable" packet.
  • CThe interface will respond.
  • DThe traffic will be dropped by the firewall.

How the community answered

(24 responses)
  • A
    13% (3)
  • B
    4% (1)
  • C
    4% (1)
  • D
    79% (19)

Community Discussion

No community discussion yet for this question.

Full PCNSE6 Practice