Pass the Paloalto Networks Strata Associate PSE-Strata-Associate Questions and answers with CertsForce

Viewing page 1 out of 1 pages
Viewing questions 1-10 out of questions
Questions # 1:

What are three unique benefits of the Palo Alto Networks Content-ID? (Choose three.) Select 3 Correct Responses

Options:

A.

micro-segmenting network traffic based on the unique identification number of the content


B.

increasing latency as new threat prevention features are enabled


C.

detecting and preventing known and unknown threats in a single pass


D.

enforcing policy control over unapproved web surfing


E.

proactively identifying and defending against unknown, new, or custom malware and exploits


Questions # 2:

Which architecture allows a Palo Alto Networks Next-Generation Firewall (NGFW) to achieve high performance with all security features enabled?

Options:

A.

single-pass parallel processing


B.

dual-pass processing


C.

multi-core processing


D.

parallel-pass single processing


Questions # 3:

What is a technical benefit of User-ID in relation to policy control?

Options:

A.

It matches traffic against policy to check whether it is allowed on the network.


B.

It allows all users to designate view-only access to itinerant personnel.


C.

It improves safe enablement of applications traversing the network.


D.

It encrypts all private keys and passwords in the configuration.


Questions # 4:

Which of the following statements applies to WildFire Public Cloud verdicts?

Options:

A.

They are unique to the affected Next-Generation Firewall (NGFW).


B.

They are shared globally with all WildFire customers.


C.

They must be manually downloaded from the WildFire portal.


D.

They are automatically shared with third-party firewall vendors.


Questions # 5:

Which deployment method is used to integrate a firewall to be inline in an existing network but does not support additional routing or switching?

Options:

A.

virtual wire


B.

TAP mode


C.

Layer 3


D.

Layer 2


Questions # 6:

A firewall enabled as a decryption broker will take which of the following actions?

Options:

A.

forward clear text traffic to security chains for additional enforcement


B.

monitor the state of active connections to determine which network packets to allow through


C.

correlate a series of related threat events that indicate a likely compromised host on the network


D.

identify potential denial-of-service (DoS) attacks and take protective action


Questions # 7:

Which Next-Generation Firewall (NGFW) deployment model allows an organization to monitor traffic during evaluations without interruption to network traffic?

Options:

A.

Layer 2


B.

TAP mode


C.

virtual wire


D.

Layer 3


Questions # 8:

Which two Cloud-Delivered Security Services (CDSS) would be appropriate for an organization that wants to secure internet traffic on a perimeter firewall? (Choose two.)

Select 2 Correct Responses

Options:

A.

WildFire


B.

Advanced URL Filtering (AURLF)


C.

Autonomous Digital Experience Management (ADEM)


D.

SD-WAN


Questions # 9:

Using a comprehensive range of natively-integrated subscriptions and inline machine learning (ML), what does a Next-Generation Firewall (NGFW) use to prevent known and unknown threats in real time?

Options:

A.

Cloud Delivered Security Services (CDSS)


B.

Cloud Security Posture Management (CSPM)


C.

Cloud Native Security Platform (CNSP)


D.

Cloud Identity Access Management (CIAM)


Questions # 10:

A customer interested in Panorama is concerned about managing multiple firewalls they are putting in place globally. Each location has its own IP addresses, zones, and VPN configurations.

Which element of Panorama will assist the customer in pushing this unique configuration information to the individual firewalls?

Options:

A.

device profile


B.

GlobalProtect


C.

templates


D.

device groups


Viewing page 1 out of 1 pages
Viewing questions 1-10 out of questions