PSE-SASE · Question #99
Which feature must be enabled to ensure that a customer's POC environment has full visibility into all traffic flowing through it?
The correct answer is C. Decryption. Decryption must be enabled because the majority of modern network traffic is encrypted (TLS/HTTPS), and without it the firewall sees only the outer envelope of each session - not the actual payload. Enabling decryption allows the firewall to inspect the full contents of…
Question
Which feature must be enabled to ensure that a customer's POC environment has full visibility into all traffic flowing through it?
Options
- AApp-ID
- BUser-ID
- CDecryption
- DOnboard Service Connection
How the community answered
(43 responses)- A7% (3)
- B5% (2)
- C86% (37)
- D2% (1)
Explanation
Decryption must be enabled because the majority of modern network traffic is encrypted (TLS/HTTPS), and without it the firewall sees only the outer envelope of each session - not the actual payload. Enabling decryption allows the firewall to inspect the full contents of encrypted flows, which is the only way to achieve complete visibility in a POC.
Why the distractors are wrong:
- A. App-ID identifies applications traversing the network, but it operates on what the firewall can already see - encrypted traffic still obscures payload content from App-ID.
- B. User-ID maps IP addresses to usernames for policy enforcement; it adds attribution, not traffic inspection.
- D. Onboard Service Connection is a Prisma Access connectivity construct for onboarding branch/mobile users - it's about reachability, not visibility.
Memory tip: Think of it as a sealed envelope - App-ID can read the address label, User-ID knows who sent it, but only Decryption lets you open and read what's inside.
Topics
Community Discussion
No community discussion yet for this question.