Palo Alto Networks ACE - Accredited Configuration Engineer Exam
Page: 2 / 35
Total 172 questions
Question #6 (Topic: Topic 1)
Which of the following CANNOT use the source user as a match criterion?
A. Policy Based Forwarding
B. Secuirty Policies
C. QoS
D. DoS Protection
E. Antivirus Profile
Answer: E
Question #7 (Topic: Topic 1)
Which statement below is True?
A. PANOS uses BrightCloud as its default URL Filtering database, but also supports PANDB.
B. PANOS uses PANDB for URL Filtering, replacing BrightCloud.
C. PANOS uses BrightCloud for URL Filtering, replacing PANDB.
D. PANOS uses PANDB as the default URL Filtering database, but also supports BrightCloud.
Answer: D
Question #8 (Topic: Topic 1)
When configuring a Decryption Policy rule, which option allows a firewall administrator to control SSHv2 tunneling in policies by specifying the SSHtunnel AppID?
A. SSH Proxy
B. SSL Forward Proxy
C. SSL Inbound Inspection
D. SSL Reverse Proxy
Answer: A
Question #9 (Topic: Topic 1)
What are two sources of information for determining whether the firewall has been successful in communicating with an external UserID Agent?
A. System Logs and the indicator light under the UserID Agent settings in the firewall.
B. Traffic Logs and Authentication Logs.
C. System Logs and an indicator light on the chassis.
D. System Logs and Authentication Logs.
Answer: A
Question #10 (Topic: Topic 1)
What Security Profile type must be configured to send files to the WildFire cloud, and with what choices for the action setting?
A. A File Blocking profile with possible actions of “Forward†or “Continue and Forwardâ€.
B. A Data Filtering profile with possible actions of “Forward†or “Continue and Forwardâ€.
C. A Vulnerability Protection profile with the possible action of “Forwardâ€.
D. A URL Filtering profile with the possible action of “Forwardâ€.
Answer: A