PSE-STRATA Exam Questions
229 real PSE-STRATA exam questions with expert-verified answers and explanations. Page 5 of 5.
- Question #204
Which component is needed for a large-scale deployment of NGFWs with multiple Panorama Management Servers?
- Question #205
What is the correct behavior when a Palo Alto Networks next-generation firewall (NGFW) is unable to retrieve a DNS verdict from DNS service cloud in the configured lookup time?
- Question #206
What is an advantage public cloud WildFire has over the private WildFire appliance?
- Question #207
Which two platform components can identify and protect against malicious email links? (Choose two.)
- Question #208
A potential customer requires an NGFW solution that enables high-throughput, low-latency network security and also inspects the application. Which aspect of the Palo Alto Networks...
- Question #209
Which task would be included in the Best Practice Assessment (BPA) tool?
- Question #210
What is the key benefit of Palo Alto Networks single-pass architecture (SPA) design?
- Question #211
Which two actions should be taken prior to installing a decryption policy on an NGFW? (Choose two.)
- Question #212
Which two statements correctly describe what a Network Packet Broker does for a Palo Alto Networks NGFW? (Choose two.)
- Question #213
A large number of next-generation firewalls (NGFWs), along with Panorama and WildFire have been positioned for a prospective customer. The customer is concerned about storing retri...
- Question #214
What is used to choose the best path on a virtual router that has two or more different routes to the same destination?
- Question #215
A prospective customer wants to purchase a next-generation firewall (NGFW) and requires at least 2 million concurrent sessions with a minimum of 10Gbps of throughput with threat de...
- Question #216
What does WildFire block on a next-generation firewall (NGFW) that already has Advanced Threat Prevention (ATP) enabled?
- Question #217
A customer next-generation firewall (NGFW) proof-of-concept (POC) and final presentation have just been completed. Which CLI command is used to clear data, remove all logs, and res...
- Question #218
Which decryption requirement ensures that inspection can be provided to all inbound traffic routed to internal application and database servers?
- Question #219
Which statement describes how Palo Alto Networks can eliminate implicit user trust, regardless of user location?
- Question #220
Which two interface types can be associated to a virtual router? (Choose two.)
- Question #221
If a Palo Alto Networks Next-Generation Firewall (NGFW) already has Advanced Threat Prevention (ATP) enabled what is the throughput impact of also enabling Wildfire and Advanced UR...
- Question #222
Which two of the following are required when configuring the Domain Credential Filter method for preventing phishing attacks? (Choose two.)
- Question #223
Which Cloud Identity Engine service should be discussed if a prospect indicates they have an identity provider (IdP) that supports SAML 2.0?
- Question #224
What is a key benefit of the Single Pass Architecture (SPA) in PAN-OS?
- Question #225
A prospective customer with a limited budget has a remote office with 10 users and wants routing path redundancy. What should be recommended for this prospect?
- Question #226
Which Cloud-Delivered Security Service (CDSS) subscription will best help prevent an office location with more than 900 users from falling victim to phishing?
- Question #227
Which subscription allows for potential identification of zero-day malware?
- Question #228
Which tool can review an imported configuration and assist with identifying which application- based rules should be implemented?
- Question #229
Which step is necessary at the end of a proof-of-concept engagement?
- Question #230
Which deployment option of Advanced URL Filtering (AURLF) would help a prospect that actively uses PAC files?
- Question #231
What allows verification of machine learning (ML) functionality for WildFire during a proof of concept?
- Question #232
Which PAN-OS feature helps prevent user credential theft?