nerdexam
Palo_Alto_Networks

PSE-PLATFORM · Question #286

Which method will dynamically register tags on the Palo Alto Networks NGFW?

The correct answer is D. XML API or the VM Monitoring agent on the NGFW or on the User-ID agent. Option D is correct because Palo Alto Networks uses the XML API (not a RESTful API) as its native interface for dynamically registering tags, and the VM Monitoring agent is the specific PAN-OS component that monitors virtualized environments and pushes IP-to-tag mappings - both…

User-ID and Authentication

Question

Which method will dynamically register tags on the Palo Alto Networks NGFW?

Options

  • ARestful API or the VMWare API on the firewall or on the User-ID agent or the read-only domain controller (RODC)
  • BRestful API or the VMware API on the firewall or on the User-ID agent
  • CXML-API or the VMware API on the firewall or on the User-ID agent or the CLI
  • DXML API or the VM Monitoring agent on the NGFW or on the User-ID agent

How the community answered

(28 responses)
  • A
    4% (1)
  • C
    4% (1)
  • D
    93% (26)

Explanation

Option D is correct because Palo Alto Networks uses the XML API (not a RESTful API) as its native interface for dynamically registering tags, and the VM Monitoring agent is the specific PAN-OS component that monitors virtualized environments and pushes IP-to-tag mappings - both can target either the NGFW directly or the User-ID agent.

Options A and B are wrong because they incorrectly substitute "Restful API" for the XML API - while PAN-OS does have a REST API, dynamic tag registration is performed via the XML API. Option A adds an extra distractor by including the RODC, which handles User-ID identity mapping, not tag registration.

Option C is partially right (XML API is correct) but wrong because it names "VMware API" - a generic term - instead of the specific VM Monitoring agent, and it incorrectly includes the CLI, which cannot dynamically register tags.

Memory tip: Think "X-V-U" - XML API, VM Monitoring agent, User-ID agent - those are your three dynamic tag registration touchpoints. If you see "REST API," "VMware API," or "RODC" in an answer, eliminate it.

Topics

#dynamic tags#XML-API#User-ID#VM monitoring

Community Discussion

No community discussion yet for this question.

Full PSE-PLATFORM Practice