nerdexam
Palo_Alto_Networks

PSE-PLATFORM · Question #61

A company.com wants to enable Application Override. Given the following screenshot: Which two statements are true if Source and Destination traffic match the Application Override policy? (Choose two)

The correct answer is C. Traffic utilizing UDP Port 16384 will now be identified as "rtp-base". D. Traffic utilizing UDP Port 16384 will bypass the App-ID and Content-ID engines. Explanation/Reference: An application override policy is changes how the Palo Alto Networks firewall classifies network traffic into applications. An application override with a custom application prevents the session from being processed by the App-ID engine, which is a…

Network Security - Security Policy

Question

A company.com wants to enable Application Override. Given the following screenshot:

Which two statements are true if Source and Destination traffic match the Application Override policy? (Choose two)

Exhibit

PSE-PLATFORM question #61 exhibit

Options

  • ATraffic that matches "rtp-base" will bypass the App-ID and Content-ID engines.
  • BTraffic will be forced to operate over UDP Port 16384.
  • CTraffic utilizing UDP Port 16384 will now be identified as "rtp-base".
  • DTraffic utilizing UDP Port 16384 will bypass the App-ID and Content-ID engines.

How the community answered

(25 responses)
  • A
    12% (3)
  • B
    4% (1)
  • C
    84% (21)

Explanation

Explanation/Reference: An application override policy is changes how the Palo Alto Networks firewall classifies network traffic into applications. An application override with a custom application prevents the session from being processed by the App-ID engine, which is a Layer-7 inspection. https://live.paloaltonetworks.com/t5/Configuration-Articles/How-to-Create-an-Application-Override-Policy/ta-p/60044

Topics

#Application Override#App-ID bypass#Content-ID bypass#custom application

Community Discussion

No community discussion yet for this question.

Full PSE-PLATFORM Practice