Paloalto Networks Palo Alto Networks Next-Generation Firewall Engineer NGFW-Engineer Question # 2 Topic 1 Discussion

Paloalto Networks Palo Alto Networks Next-Generation Firewall Engineer NGFW-Engineer Question # 2 Topic 1 Discussion

NGFW-Engineer Exam Topic 1 Question 2 Discussion:
Question #: 2
Topic #: 1

Which two statements apply to configuring required security rules when setting up an IPSec tunnel between a Palo Alto Networks firewall and a third- party gateway? (Choose two.)


A.

For incoming and outgoing traffic through the tunnel, creating separate rules for each direction is optional.


B.

The IKE negotiation and IPSec/ESP packets are allowed by default via the intrazone default allow policy.


C.

For incoming and outgoing traffic through the tunnel, separate rules must be created for each direction.


D.

The IKE negotiation and IPSec/ESP packets are denied by default via the interzone default deny policy.


Get Premium NGFW-Engineer Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.