PSE-STRATA Exam Questions
229 real PSE-STRATA exam questions with expert-verified answers and explanations. Page 3 of 5.
- Question #103
True or False: PAN-DB is a service that aligns URLs with category types and is fed to the WildFire threat cloud.
- Question #104
Palo Alto Networks maintains a dynamic database of malicious domains. Which two Security Platform components use this database to prevent threats? (Choose two)
- Question #105
Which User-ID method maps IP addresses to usernames for users connecting through an 802.1x-enabled wireless network device that has no native integration with PAN-OS software?
- Question #106
What are three possible verdicts that WildFire can provide for an analyzed sample? (Choose three)
- Question #107
What are the three benefits of the Palo Alto Networks migration tool? (Choose three.)
- Question #108
Palo Alto Networks publishes updated Command and Control signatures. How frequently should the related signatures schedule be set?
- Question #109
A service provider has acquired a pair of PA-7080s for its data center to secure its customer base's traffic. The server provider's traffic is largely generated by smart phones and...
- Question #110
A customer is worried about unknown attacks, but due to privacy and regulatory issues, won't implement SSL decrypt. How can the platform still address this customer's concern?
- Question #111
Where are three tuning considerations when building a security policy to protect against modern day attacks? (Choose three)
- Question #112
Which two designs require virtual systems? (Choose two.)
- Question #113
Which three network events are highlighted through correlation objects as a potential security risks? (Choose three.)
- Question #114
In which two cases should the Hardware offering of Panorama be chosen over the Virtual Offering? (Choose two)
- Question #115
Which three methods used to map users to IP addresses are supported in Palo Alto Networks firewalls? (Choose three.)
- Question #116
What are two benefits of using Panorama for a customer who is deploying virtual firewalls to secure data center traffic? (Choose two.)
- Question #117
Because of regulatory compliance a customer cannot decrypt specific types of traffic. Which license should an SE recommend to the customer who will be decrypting traffic on the Pal...
- Question #118
An administrator needs a PDF summary report that contains information compiled from existing reports based on data for the top 5 in each category. How often will the Administrator...
- Question #119
Which three policies or certificates must be configured for SSL Forward Proxy decryption? (Choose three.)
- Question #120
What are two core values of the Palo Alto Network Security Platform? (Choose two)
- Question #121
DNS sinkholing helps identify infected hosts on the protected network using DNS traffic in situations where the firewall cannot see the infected client's DNS query (that is, the fi...
- Question #122
A customer is targeted by a true zero-day, targeted attack. However, the customer is protected by the Palo Alto Networks security platform. The attack leverages a previously unknow...
- Question #123
An SE is preparing an SLR report for a school and wants to emphasize URL filtering capabilities because the school is concerned that its students are accessing inappropriate websit...
- Question #124
What are the two group options for database when creating a custom report? (Choose two)
- Question #125
A customer is concerned about malicious activity occurring directly on their endpoints and not visible to their firewalls. Which three actions does Traps execute during a security...
- Question #126
What are two core values of the Palo Alto Network Security Operating Platform? (Choose two.}
- Question #127
Which two products can send logs to the Cortex Data Lake? (Choose two.)
- Question #128
When the Cortex Data Lake is sized for Traps Management Service, which two factors should be considered? (Choose two.)
- Question #129
How frequently do WildFire signatures move into the antivirus database?
- Question #130
What are two presales selling advantages of using Expedition? (Choose two.)
- Question #131
An administrator wants to justify the expense of a second Panorama appliance for HA of the management layer. The customer already has multiple M-100s set up as a log collector grou...
- Question #132
Which are the three mandatory components needed to run Cortex XDR? (Choose three.)
- Question #133
Which selection must be configured on PAN-OS External Dynamic Lists to support MineMeld indicators?
- Question #134
Which two new file types are supported on the WF-500 in PAN-OS 9? (Choose two)
- Question #135
A customer is concerned about zero-day targeted attacks against its intellectual property. Which solution informs a customer whether an attack is specifically targeted at them?
- Question #136
Prisma SaaS provides which two SaaS threat prevention capabilities? (Choose two)
- Question #137
Decryption port mirroring is now supported on which platform?
- Question #138
Select the BOM for the Prisma Access, to provide access for 5500 mobile users and 10 remote locations (100Mbps each) for one year, including Base Support and minimal logging. The c...
- Question #139
As you prepare to scan your Amazon S3 account, what enables Prisma service permission to access Amazon S3?
- Question #140
In which two ways can PAN-OS software consume MineMeld outputs? (Choose two.)
- Question #141
Which domain permissions are required by the User-ID Agent for WMI Authentication on a Windows Server? (Choose three.)
- Question #142
What is the basis for purchasing Cortex XDR licensing?
- Question #143
How often are the databases for Anti-virus, Application, Threats, and WildFire subscription updated?
- Question #144
A company has deployed the following: - VM-300 firewalls in AWS - endpoint protection with the Traps Management Service - a Panorama M-200 for managing its VM-Series firewalls - PA...
- Question #145
When log sizing is factored for the Cortex Data Lake on the NGFW, what is the average log size used in calculation?
- Question #146
What can be applied to prevent users from unknowingly downloading malicious file types from the internet?
- Question #148
A customer is concerned about malicious activity occurring directly on their endpoints and will not be visible to their firewalls. Which three actions does the Traps agent execute...
- Question #149
Which two types of security chains are supported by the Decryption Broker? (Choose two.)
- Question #150
Which two configuration items are required when the NGFW needs to act as a decryption broker for multiple transparent bridge security chains? (Choose two.)
- Question #151
When the Cortex Data Lake is sized for Prisma Access mobile users, what is a valid log size range you would use per day. per user?
- Question #152
Which two steps are required to configure the Decryption Broker? (Choose two.)
- Question #153
What are three purposes for the Eval Systems, Security Lifecycle Reviews and Prevention Posture Assessment tools? (Choose three.)