What is the default capacity license of a VM-Series NGFW being deployed from the Google Cloud Platform Marketplace?
A. VM-500
B. VM-GCP
C. VM-300
D. VM-100
正解:C
解説: (Pass4Test メンバーにのみ表示されます)
質問 2:
An administrator deploys a VM-Series firewall into Amazon Web Services. Which attribute must be disabled on the data-plane elastic network interface for the instance to handle traffic that is not destined to its own IP address?
A. source/destination checking
B. security group
C. elastic ip address
D. tags
正解:A
解説: (Pass4Test メンバーにのみ表示されます)
質問 3:
What configuration on AWS is required in order for VM-Series to forward traffic between its network interfaces?
A. Source Check is disabled and Destination Check is enabled
B. Both Source and Destination Checks are enabled
C. Source Check is enabled and Destination Check is disabled
D. Both Source and Destination Checks are disabled
正解:D
解説: (Pass4Test メンバーにのみ表示されます)
質問 4:
Which RQL string monitors all traffic from the Internet and Suspicious IPs destined for your Amazon Web Services databases''
A. network where dest.resource IN (resource where role = 'Database'}
B. network where source.publicnetwork IN ('Suspicious IPs', 'Internet IPs') and dest resource IN (resource where role IN ('AWS RDS'. 'Database'))
C. network where source.publicnetwork IN ('Suspicious IPs', 'Internet IPs') and dest.resource IN (resource where role IN ('LDAP'))
D. network where source.publicnetwork IN ('Suspicious IPs') and dest.resource IN (resource where role IN ('AWS RDS', 'Database'))
正解:B
質問 5:
What are two ways to enable interface swap when deploying a VM-Series NGFW in Google Cloud Platform?
(Choose two.)
A. create a bootstrap file that includes the mgmt-interface-swap command
B. in the Google Cloud Console Metadata Field, enter a key-value pair where mgmt-interface-swap is the key and enable is the value
C. run the PAN-OS CLI command: set system mgmt-interface-swap enable yes
D. run the PAN-OS CLI command: set system mgmt-interface-swap setting enable yes
正解:A,B
解説: (Pass4Test メンバーにのみ表示されます)
質問 6:
Which RQL string searches for all EBS volumes that do not have a "DataClassification" tag?
A. config where api.name = ,aws-ec2-describe-volumes' AND json.rule = tags[*].key exists
B. config where api.name = 'aws-ec2-describe-volumes, AND json.rule = tags[*]key contains DataClassification
C. config where api.name = 'aws-ec2-describe-volumes' AND json.rule = tags[*].key = 1
D. config where api.name = ,aws-ec2-describe-volumes' AND json.rule = tags[*]key != DataClassification
正解:D
もり** -
このをPSE-PrismaCloud問題集をベースにして、無事試験に合格できました。次はPCNSEを購入したいです。