nerdexam
Palo_Alto_Networks

PSE-SWFW-PRO-24 · Question #9

Which three statements describe the functionality of a Dynamic Address Group in Security policy? (Choose three.)

The correct answer is B. It allows creation and enforcement of consistent Security policy across multiple cloud D. It uses tags as filtering criteria to determine IP address mapping to a group. E. Its maximum number of registered IP addresses is dependent on the firewall platform. Option B: This is a key benefit. Tags and Dynamic Address Groups can be used to create consistent security policies across different cloud environments, simplifying multi-cloud Option D: This is the core functionality of Dynamic Address Groups. They use tags to dynamically…

Security Policy and Object Configuration

Question

Which three statements describe the functionality of a Dynamic Address Group in Security policy? (Choose three.)

Options

  • AIts update requires "Commit" to enforce membership mapping.
  • BIt allows creation and enforcement of consistent Security policy across multiple cloud
  • CTags cannot be defined statically on the firewall.
  • DIt uses tags as filtering criteria to determine IP address mapping to a group.
  • EIts maximum number of registered IP addresses is dependent on the firewall platform.

How the community answered

(20 responses)
  • A
    20% (4)
  • B
    70% (14)
  • C
    10% (2)

Explanation

Option B: This is a key benefit. Tags and Dynamic Address Groups can be used to create consistent security policies across different cloud environments, simplifying multi-cloud Option D: This is the core functionality of Dynamic Address Groups. They use tags to dynamically determine which IP addresses should be included in the group. Option E: The capacity of Dynamic Address Groups is limited by the hardware/virtual resource capacity of the firewall.

Topics

#Dynamic Address Group#tags#security policy#IP address mapping

Community Discussion

No community discussion yet for this question.

Full PSE-SWFW-PRO-24 Practice