PCNSE Palo Alto Networks Certified Network Security Engineer

Loading demo links...

Showing 16–18 of 20 questions

Question 16

In an existing deployment, an administrator with numerous firewalls and Panorama does not see any WildFire logs in Panorama. Each firewall has an active WildFire subscription On each firewall. WildFire togs are available.

This issue is occurring because forwarding of which type of logs from the firewalls to Panorama is missing?

Select an option, then click Submit answer.

  • Threat logs

  • Traffic togs

  • System logs

  • WildFire logs

Question 17

An engineer needs to see how many existing SSL decryption sessions are traversing a firewall

What command should be used?

Select an option, then click Submit answer.

  • show dataplane pool statistics I match proxy

  • debug dataplane pool statistics I match proxy

  • debug sessions I match proxy

  • show sessions all

Question 18

The manager of the network security team has asked you to help configure the company's Security Profiles according to Palo Alto Networks best practice As part of that effort, the manager has assigned you the Vulnerability Protection profile for the internet gateway firewall.

Which action and packet-capture setting for items of high severity and critical severity best matches Palo Alto Networks best practice?

Select an option, then click Submit answer.

  • action 'reset-both' and packet capture 'extended-capture'

  • action 'default' and packet capture 'single-packet'

  • action 'reset-both' and packet capture 'single-packet'

  • action 'reset-server' and packet capture 'disable'