PCNSA Palo Alto Networks Certified Network Security Administrator

Loading demo links...

Showing 10–12 of 15 questions

Question 10

An administrator would like to use App-ID's deny action for an application and would like that action updated with dynamic updates as new content becomes available.

Which security policy action causes this?

Select an option, then click Submit answer.

  • Reset server

  • Reset both

  • Deny

  • Drop

Question 11

An administrator is troubleshooting traffic that should match the interzone-default rule. However, the administrator doesn't see this traffic in the traffic logs on the firewall. The interzone-default was never changed from its default configuration.

Why doesn't the administrator see the traffic?

Select an option, then click Submit answer.

  • Traffic is being denied on the interzone-default policy.

  • The Log Forwarding profile is not configured on the policy.

  • The interzone-default policy is disabled by default

  • Logging on the interzone-default policy is disabled

Question 12

Which protocol used to map username to user groups when user-ID is configured?

Select an option, then click Submit answer.

  • SAML

  • RADIUS

  • TACACS+

  • LDAP