Which two network events are highlighted through correlation objects as potential security risks? (Choose two.)
A. Launch of an identified malware executable file
B. Identified vulnerability exploits
C. Endpoints access files from a removable drive
D. Suspicious host behavior
正解:B,D
解説: (Pass4Test メンバーにのみ表示されます)
質問 2:
The Palo Ao Networks Cloud Identity Engino (CIE) includes which service that supports identity Providers (ldP)?
A. Directory Sync and Cloud Authentication Service that support IdP ung SAML 2.0 and OAuth2
B. Directory Sync that supports IdP using SAML 2.0
C. Directory Sync and Cloud Authentication Service that support IdP ng SAML 2.0
D. Cloud Authentication Service that supports IdP using SAML 2.0 and OAuth2
正解:A
解説: (Pass4Test メンバーにのみ表示されます)
質問 3:
A client chooses to not block uncategorized websites.
Which two additions should be made to help provide some protection? (Choose two.)
A. A URL filtering profile with the action set to continue for unknown URL categories to security policy rules that allow web access
B. A data filtering profile with a custom data pattern to security policy rules that deny uncategorized websites
C. A security policy rule using only known URL categories with the action set to allow
D. A file blocking profile attached to security policy rules that allow uncategorized websites to help reduce the risk of drive by downloads
正解:A,D
解説: (Pass4Test メンバーにのみ表示されます)
質問 4:
Which three categories are identified as best practices in the Best Practice Assessment tool? (Choose three.)
A. identify sanctioned and unsanctioned SaaS applications
B. use of device management access and settings
C. expose the visibility and presence of command-and-control sessions
D. measure the adoption of URL filters. App-ID. User-ID
E. use of decryption policies
正解:A,D,E
解説: (Pass4Test メンバーにのみ表示されます)
質問 5:
Which CLI command will allow you to view latency, jitter and packet loss on a virtual SD-WAN interface?
A.

B.

C.

D.

正解:B
解説: (Pass4Test メンバーにのみ表示されます)
質問 6:
Which three features are used to prevent abuse of stolen credentials? (Choose three.)
A. WildFire Profiles
B. multi-factor authentication
C. SSL decryption rules
D. URL Filtering Profiles
E. Prisma Access
正解:B,C,D
解説: (Pass4Test メンバーにのみ表示されます)
質問 7:
What are three purposes for the Eval Systems, Security Lifecycle Reviews and Prevention Posture Assessment tools? (Choose three.)
A. when client's want to see the power of the platform
B. assess the state of NGFW feature adoption
C. provide users visibility into the applications currently allowed on the network
D. when you're delivering a security strategy
E. help streamline the deployment and migration of NGFWs
正解:A,B,D
解説: (Pass4Test メンバーにのみ表示されます)
質問 8:
A customer requires an analytics tool with the following attributes:
- Uses the logs on the firewall to detect actionable events on the network
- Automatically processes a series of related threat events that, when combines, indicate a likely comprised host on the network
- Pinpoints the area of risk and allows for assessment of the risk to action can be taken to prevent exploitation of network resources Which feature of PAN-OS will address these requirements?
A. Automated correlation engine (ACE)
B. WildFire with application program interface (API) calls for automation
C. Cortex XDR and Cortex Data Lake
D. Third-party security information and event management (SIEM) which can ingest next-generation firewall (NGFW) logs
正解:A
解説: (Pass4Test メンバーにのみ表示されます)
本田** -
迅速に送付いただき有難うございました。
中身も試験を対応できてとてもよかったです。
無事に試験に合格することができました。