https://killexams.com/pass4sure/exam-detail/PCNSE7
Answer: B, E
Explanation:
(https://www.paloaltonetworks.com/documentation/60/panorama/panoramaadminguide/se
t-up-panorama/set-up-the-m-100-appliance)
QUESTION: 52
Which three log-forwarding destinations require a server profile to be configured? (Choose
three)
A. SNMP Trap
B. Email
C. RADIUS
D. Kerberos
E. Panorama
F. Syslog
Answer: A, B, F
QUESTION: 53
Which three fields can be included in a pcap filter? (Choose three)
A. Egress interface
B. Source IP
C. Rule number
D. Destination IP
E. Ingress interface
Answer: B, D, E
Explanation:
(https://live.paloaltonetworks.com/t5/Featured-Articles/Getting-Started-Packet-Capture/ta-
p/72069)
QUESTION: 54
The company's Panorama server(IP 10.10.10.5) is not able to manage a firewall that was
recently deployed. The firewall's dedicated management port is being used to connect to the
managementnetwork. Which two commands may be used to troubleshoot this issue from
the CLI of the new firewall? (Choose two)
A. test panoramas-connect 10.10.10.5
B. show panoramas-status
C. show arp all I match 10.10.10.5
D. topdump filter "host 10.10.10.5
E. debug dataplane packet-diag set capture on
Answer: A, C
QUESTION: 55
AfterpushingasecuritypolicyfromPanoramatoaPA-3020firwall,thefirewall
administrator notices that traffic logs from the PA-3020 are not appearing in Panorama�s
traffic logs. What could be the problem?
A. A Server Profile has not been configured for logging to this Panorama device.
B. Panorama is not licensed to receive logs from this particular firewall.
C. The firewall is not licensed for logging to this Panorama device.
D. None of the firwwall's policies have been assigned a Log Forwarding profile
Answer: D
QUESTION: 56
Which client software can be used to connect remote Linux client into a Palo Alto Networks
Infrastructure without sacrificing the ability to scan traffic and protect against threats?
A. X-Auth IPsec VPN
B. GlobalProtect Apple IOS
C. GlobalProtect SSL
D. GlobalProtect Linux
Answer: D
Explanation:
( http://blog.webernetz.net/2014/03/31/palo-alto-globalprotect-for-linux-with-vpnc/ )
QUESTION: 57
Which two interface types can be used when configuring GlobalProtect Portal?(Choose two)
A. Virtual Wire
B. Loopback
C. Layer 3
D. Tunnel
Answer: B, C
QUESTION: 58
Click the Exhibit button
An administrator has noticed a large increase in bittorrent activity. The administrator wants
to determine where the traffic is going on the company. What would be the administrator's
next step?
A. Right-Click on the bittorrent link and select Value from the context menu
B. Create a global filter for bittorrent traffic and then view Traffic logs.
C. Create local filter for bittorrent traffic and then view Traffic logs.
D. Click on the bittorrent application link to view network activity
Answer: D
QUESTION: 59
AcriticalUS-CERTnotificationispublishedregardinganewlydiscoveredbotnet.The
malwareisveryevasiveandisnotreliablydetectedbyendpointantivirussoftware.
Furthermore, SSL is used to tunnel malicious traffic to command-and-control servers on the
internet and SSL Forward Proxy Decryption is not enabled. Which component once enabled
onaperirneterfirewallwillallowtheidentificationofexistinginfectedhostsinan
environment?
A. Anti-Spyware profiles applied outbound security policies with DNS Query action set to
sinkhole
B. File Blocking profiles applied to outbound security policies with action set to alert
C. Vulnerability Protection profiles applied to outbound security policies with action set to
block
D. Antivirus profiles applied to outbound security policies with action set to alert
Answer: C
QUESTION: 60
What are three possible verdicts that WildFire can provide for an analyzed sample? (Choose
three)
A. Clean
B. Bengin
C. Adware
D. Suspicious
E. Grayware
F. Malware
Answer: B, E, F
Explanation:
https://www.paloaltonetworks.com/documentation/70/pan- os/newfeaturesguide/wildfire-
features/wildfire-grayware-verdict
For More exams visit https://killexams.com
�
Kill your exam at First Attempt....Guaranteed!
No comments:
Post a Comment