PCNSA Dumps

PCNSA Free Practice Test

Paloalto-Networks PCNSA: Palo Alto Networks Certified Network Security Administrator

QUESTION 6

If using group mapping with Active Directory Universal Groups, what must you do when configuring the User-ID?

Correct Answer: B
PCNSA dumps exhibit If you have Universal Groups, create an LDAP server profile to connect to the root domain of the Global Catalog server on port 3268 or 3269 for SSL, then create another LDAP server profile to connect to the root domain controllers on port 389. This helps ensure that users and group information is available for all domains and subdomains.
https://docs.paloaltonetworks.com/pan-os/9-1/pan-os-admin/user-id/map-users-to-groups

QUESTION 7

A security administrator has configured App-ID updates to be automatically downloaded and installed. The company is currently using an application identified by App-ID as SuperApp_base.
On a content update notice, Palo Alto Networks is adding new app signatures labeled SuperApp_chat and SuperApp_download, which will be deployed in 30 days.
Based on the information, how is the SuperApp traffic affected after the 30 days have passed?

Correct Answer: A
https://docs.paloaltonetworks.com/pan-os/9-0/pan-os-admin/app-id/manage-new-app-ids-introduced-in-content

QUESTION 8

Which action results in the firewall blocking network traffic with out notifying the sender?

Correct Answer: B

QUESTION 9

Given the detailed log information above, what was the result of the firewall traffic inspection?
PCNSA dumps exhibit

Correct Answer: C

QUESTION 10

Which component is a building block in a Security policy rule?

Correct Answer: D