PSE-PLATFORM Exam Questions
329 real PSE-PLATFORM exam questions with expert-verified answers and explanations. Page 4 of 7.
- Question #164
People are having intermittent quality issues during a live meeting via a web application. How can the performance of this application be improved?
- Question #165
When is it necessary to activate a license when provisioning a new Palo Alto Networks firewall?
- Question #166
A file sharing application is being permitted and no one knows what this application is used for. How should this application be blocked?
- Question #167
YouTube videos are consuming too much bandwidth on the network, causing delays in mission-critical traffic. The administrator wants to throttle YouTube traffic. The following inter...
- Question #168
Which field is optional when creating a new Security Police rule?
- Question #169
When using the predefined default antivirus profile, the policy will inspect for viruses on the decoders. Match each decoder with its default action. Answer options may be used mor...
- Question #170
When a malware-infected host attempts to resolve a known command-and-control server, the traffic matches a security policy with DNS sinkhole enabled, generating a traffic log. What...
- Question #171
How can a Palo Alto Networks firewall be configured to send syslog messages in a format compatible with non-standard syslog servers?
- Question #172
What are two prerequisites for configuring a pair of Palo Alto Networks firewalls in an active/passive High Availability (HA) pair? (Choose two.)
- Question #173
Which device Group option is assigned by default in Panorama whenever a new device group is created to manage a Firewall?
- Question #174
When performing the "ping" test shown in this CLI output: What will be the source address in the ICMP packet?
- Question #175
Site-A and Site- have a site-to-site VPN set up between them. OSPF is configured to dynamically create the routes between the sites. The OSPF configuration in Site- is configured p...
- Question #177
Which two virtualized environments support Active/Active High Availability (HA) in PAN-OS 7.0? (Choose two.)
- Question #178
Which Panorama feature allows for logs generated by Panorama to be forwarded to an external Security Information and Event Management (SIEM) system?
- Question #179
In an enterprise deployment, a network security engineer wants to assign rights to a group of administrators without creating local administrator accounts on the firewall. Which au...
- Question #181
Which URL Filtering Security Profile action logs the URL Filtering category to the URL Filtering log?
- Question #182
Which authentication source requires the installation of Palo Alto Networks software, other than PAN-OS 7x, to obtain username-to-IP-address mapping?
- Question #183
Which two actions are required to make Microsoft Active Directory users appear in a firewall traffic log? (Choose two.)
- Question #184
Firewall administrators cannot authenticate to a firewall GUI. Which two logs on that firewall will contain authentication-related information useful in troubleshooting this issue?...
- Question #186
Several offices are connected with VPNs using static IPv4 routes. An administrator has been tasked with implementing OSPF to replace static routing. Which step is required to accom...
- Question #187
Which CLI command displays the current management plane memory utilization?
- Question #188
A distributed log collection deployment has dedicated Log Collectors. A developer needs a device to send logs to Panorama instead of sending logs to the Collector Group. What shoul...
- Question #189
Site-A and Site-B need to use IKEv2 to establish a VPN connection. Site-A connects directly to the internet using a public IP address. Site-B uses a private IP address behind an IS...
- Question #190
A network security engineer has a requirement to allow an external server to access an internal web server. The internal web server must also initiate connections with the external...
- Question #191
What happens when the traffic log shows an internal host attempting to open a session to a properly configured sinkhole address?
- Question #192
PAS-OS 7.0 introduced an automated correlation engine that analyzes log patterns and generates correlation events visible in the new Application Command Center (ACC). Which license...
- Question #193
Site-A and Site-have a site-to-site VPN set up between them. OSPF is configured to dynamically create the routes between the sites. The OSPF configuration in Site-is configured pro...
- Question #194
A network security engineer for a large company has just installed a PA-5060 Firewall to isolate the company's PCI environment from its production network. The company's network en...
- Question #195
On March 10, 2016, between 11:00 am and 11:30 am, users reported that web-browsing traffic to the IP address 1.1.1.1 failed. Which filter can be applied to the traffic logs to show...
- Question #196
Server Message Block (SMB), a common file-sharing application, is slow when passing through a Palo Alto Networks firewall. The Network Security Administrator created an application...
- Question #197
What are three valid options when creating a new security policy? (Choose three.)
- Question #199
Which two statements accurately describe how DoS Protection Profiles and Policies mitigate attacks? (Choose two.)
- Question #201
What are the three Security Policy Rule Type classifications supported in PAN-OS 7.0? (Choose three.)
- Question #202
What is the default behavior when a Certificate Profile is configured to use both CRL and OCSP?
- Question #203
Ethernet1/1 has been configured with the following subinterfaces: The following security policy rule is applied: The Interface Management Profile permits the following: What will b...
- Question #204
Given the following diagram: A VPN connection has been created to allow traffic from the Trust-L3 zone of Site A to reach the Trust-L3 zone of Site B. Each site is using tunnel.1 i...
- Question #205
For which two functions is the management plane responsible? (Choose two.)
- Question #206
A company has started utilizing WildFire in its network. Which three file types are supported? (Choose three.)
- Question #208
Which Captive Portal mode must be configured to support MFA authentication?
- Question #209
Which protection feature is available only in a Zone Protection Profile?
- Question #210
Which User-ID method maps IP addresses to usernames for users connecting through an 802.1x-enabled wireless network device that has no native integration with PAN-OS?software?
- Question #213
An administrator has users accessing network resources through Citrix XenApp 7 x. Which User-ID mapping solution will map multiple users who are using Citrix to connect to the netw...
- Question #214
An administrator creates a custom application containing Layer 7 signatures. The latest application and threat dynamic update is downloaded to the same NGFW. The update contains an...
- Question #215
How can a candidate or running configuration be copied to a host external from Panorama?
- Question #216
A company needs to preconfigure firewalls to be sent to remote sites with the least amount of reconfiguration. Once deployed, each firewall must establish secure tunnels back to mu...
- Question #217
A global corporate office has a large-scale network with only one User-ID agent, which creates a bottleneck near the User-ID agent server. Which solution in PAN- OS?software would...
- Question #218
Which CLI command is used to simulate traffic going through the firewall and determine which Security policy rule, NAT translation, static route, or PBF rule will be triggered by t...
- Question #219
If the firewall is configured for credential phishing prevention using the "Domain Credential Filter" method, which login will be detected as credential theft?
- Question #220
Which Security policy rule will allow an admin to block facebook chat but allow Facebook in general?
- Question #221
Which feature prevents the submission of corporate login information into website forms?