PSE-STRATA-PRO-24 · Question #29
A prospective customer is interested in Palo Alto Networks NGFWs and wants to evaluate the ability to segregate its internal network into unique BGP environments. Which statement describes the…
The correct answer is B. It can be addressed by creating multiple eBGP autonomous systems. Segregating a network into unique BGP environments requires the ability to configure separate eBGP autonomous systems (AS) within the NGFW. Palo Alto Networks firewalls support advanced BGP features, including the ability to create and manage multiple autonomous PAN-OS supports…
Question
A prospective customer is interested in Palo Alto Networks NGFWs and wants to evaluate the ability to segregate its internal network into unique BGP environments. Which statement describes the ability of NGFWs to address this need?
Options
- AIt cannot be addressed because PAN-OS does not support it.
- BIt can be addressed by creating multiple eBGP autonomous systems.
- CIt can be addressed with BGP confederations.
- DIt cannot be addressed because BGP must be fully meshed internally to work.
How the community answered
(28 responses)- A7% (2)
- B86% (24)
- C4% (1)
- D4% (1)
Explanation
Segregating a network into unique BGP environments requires the ability to configure separate eBGP autonomous systems (AS) within the NGFW. Palo Alto Networks firewalls support advanced BGP features, including the ability to create and manage multiple autonomous PAN-OS supports the configuration of multiple eBGP AS environments. By creating unique eBGP AS numbers for different parts of the network, traffic can be segregated and routed separately. This feature is commonly used in multi-tenant environments or networks requiring logical separation for administrative or policy reasons. Each eBGP AS can maintain its own routing policies, neighbors, and traffic segmentation. This approach allows the NGFW to address the customer's need for segregated internal BGP
Topics
Community Discussion
No community discussion yet for this question.