nerdexam
Palo_Alto_Networks

PCNSE6 · Question #19

A Palo Alto Networks firewall has the following interface configuration; Hosts are directly connected on the following interfaces: Ethernet 1/6 -Host IP 192.168.62.2 Ethernet 1/3 -Host IP…

The correct answer is D. Change the Virtual Router setting to VR1. See the full explanation below for the reasoning.

Question

A Palo Alto Networks firewall has the following interface configuration; Hosts are directly connected on the following interfaces:

Ethernet 1/6 -Host IP 192.168.62.2 Ethernet 1/3 -Host IP 10.46.40.63 The security administrator is investigating why ICMP traffic between the hosts is not working. She first ensures that ail traffic is allowed between zones based on the following security policy rule:

The routing table of the firewall shows the following output:

Which interface configuration change should be applied to ethernet1/6 to allow the two hosts to communicate based on this information?

Exhibit

PCNSE6 question #19 exhibit

Options

  • AChange the Management Profile.
  • BChange the security policy to explicitly allow ICMP on this interface.
  • CChange the configured zone to DMZ.
  • DChange the Virtual Router setting to VR1.

How the community answered

(28 responses)
  • A
    11% (3)
  • B
    7% (2)
  • C
    4% (1)
  • D
    79% (22)

Community Discussion

No community discussion yet for this question.

Full PCNSE6 Practice