PSE-PLATFORM Exam Questions
329 real PSE-PLATFORM exam questions with expert-verified answers and explanations. Page 5 of 7.
- Question #222
Which three steps will reduce the CPU utilization on the management plane? (Choose three.)
- Question #223
Which two virtualization platforms officially support the deployment of Palo Alto Networks VM-Series firewalls? (Choose two.)
- Question #224
To connect the Palo Alto Networks firewall to AutoFocus, which setting must be enabled?
- Question #225
Which event will happen if an administrator uses an Application Override Policy?
- Question #227
Which three options are supported in HA Lite? (Choose three.)
- Question #229
An administrator is using Panorama and multiple Palo Alto Networks NGFWs. After upgrading all devices to the latest PAN-OS?software, the administrator enables log forwarding from t...
- Question #230
An administrator pushes a new configuration from Panorama to a pair of firewalls that are configured as an active/passive HA pair. Which NGFW receives the configuration from Panora...
- Question #231
Which three file types can be forwarded to WildFire for analysis as a part of the basic WildFire service? (Choose three.)
- Question #232
Which three firewall states are valid? (Choose three.)
- Question #233
An administrator encountered problems with inbound decryption. Which option should the administrator investigate as part of triage?
- Question #235
An administrator needs to implement an NGFW between their DMZ and Core network. EIGRP Routing between the two environments is required. Which interface type would support this busi...
- Question #236
A network security engineer for a large company has just installed a PA-5060 Firewall to isolate the company's PCI environment from its production network. The company's engineers...
- Question #237
After Migrating from an ASA firewall to a Palo Alto Networks Firewall, the VPN connection between a remote network and the Palo Alto Networks Firewall is not establishing correctly...
- Question #239
If a template stack is assigned to a device and the stack includes three templates with overlapping settings, which settings are published to the device when the template stack is...
- Question #241
An administrator sees several inbound sessions identified as unknown-tcp in the Traffic logs. The administrator determines that these sessions are form external users accessing the...
- Question #242
During the packet flow process, which two processes are performed in application identification? (Choose two.)
- Question #243
An administrator logs in to the Palo Alto Networks NGFW and reports that the WebUI is missing the Policies tab. Which profile is the cause of the missing Policies tab?
- Question #244
When configuring a GlobalProtect Portal, what is the purpose of specifying an Authentication Profile?
- Question #245
The certificate information displayed in the following image is for which type of certificate?
- Question #246
An administrator has been asked to configure active/passive HA for a pair of Palo Alto Networks NGFWs. The administrator assigns priority 100 to the active firewall. Which priority...
- Question #247
Which option is part of the content inspection process?
- Question #248
Which three types of software will receive a Grayware verdict from WildFire? (Choose Three)
- Question #249
A speed/duplex negotiation mismatch is between the Palo Alto Networks management port and the switch port which it connects. How would an administrator configure the interface to 1...
- Question #250
In a virtual router, which object contains all potential routes?
- Question #251
Refer to the exhibit. An administrator is using DNAT to map two servers to a single public IP address. Traffic will be steered to the specific server based on the application, wher...
- Question #252
A customer has an application that is being identified as unknown-top for one of their custom PostgreSQL database connections. Which two configuration options can be used to correc...
- Question #254
An administrator has enabled OSPF on a virtual router on the NGFW. OSPF is not adding new routes to the virtual router. Which two options enable the administrator to troubleshoot t...
- Question #255
Which tool provides an administrator the ability to see trends in traffic over periods of time, such as threats detected in the last 30 days?
- Question #256
The administrator has enabled BGP on a virtual router on the Palo Alto Networks NGFW, but new routes do not seem to be populating the virtual router. Which two options would help t...
- Question #257
How can the firewall be configured automatically disable the PBF rule if the next hop goes down?
- Question #258
Which feature must you configure to prevent users form accidentally submitting their corporate credentials to a phishing website?
- Question #260
What are two benefits of nested device groups in Panorama? (Choose two.)
- Question #261
PAN-OS 7.0 introduced an automated correlation engine that analyzes log patterns and generates correlation events visible in the new Application Command Center (ACC). Which license...
- Question #262
An administrator needs to upgrade a Palo Alto Networks NGFW to the most current version of PAN-OS® software. The firewall has internet connectivity through an Ethernet interface, b...
- Question #263
Which three settings are defined within the Templates object of Panorama? (Choose three.)
- Question #264
An administrator has left a firewall to use the default port for all management services. Which three functions are performed by the dataplane? (Choose three.)
- Question #265
A Security policy rule is configured with a Vulnerability Protection Profile and an action of `Deny". Which action will this cause configuration on the matched traffic?
- Question #266
If the firewall has the link monitoring configuration, what will cause a failover?
- Question #267
An administrator has been asked to configure a Palo Alto Networks NGFW to provide protection against worms and trojans. Which Security Profile type will protect against worms and t...
- Question #269
A client is concerned about resource exhaustion because of denial-of-service attacks against their DNS servers. Which option will protect the individual servers?
- Question #270
Refer to the exhibit. Which will be the egress interface if the traffic's ingress interface is ethernet 1/7 sourcing from 192.168.111.3 and to the destination 10.46.41.113?
- Question #271
Which PAN-OS?policy must you configure to force a user to provide additional credentials before he is allowed to access an internal application that contains highly-sensitive busin...
- Question #272
How would an administrator monitor/capture traffic on the management interface of the Palo Alto Networks NGFW?
- Question #273
If an administrator does not possess a website's certificate, which SSL decryption mode will allow the Palo Alto networks NGFW to inspect when users browse to HTTP(S) websites?
- Question #274
Which CLI command enables an administrator to view details about the firewall including uptime, PAN-OS?version, and serial number?
- Question #275
An administrator has configured the Palo Alto Networks NGFW's management interface to connect to the internet through a dedicated path that does not traverse back through the NGFW...
- Question #276
A customer wants to set up a VLAN interface for a Layer 2 Ethernet port. Which two mandatory options are used to configure a VLAN interface? (Choose two.)
- Question #277
Which option would an administrator choose to define the certificate and protocol that Panorama and its managed devices use for SSL/TLS services?
- Question #278
VPN traffic intended for an administrator's Palo Alto Networks NGFW is being maliciously intercepted and retransmitted by the interceptor. When creating a VPN tunnel, which protect...
- Question #280
An administrator needs to optimize traffic to prefer business-critical applications over non- critical applications. QoS natively integrates with which feature to provide service q...