Palo Alto Networks PCNSA - Palo Alto Networks Certified Network Security Administrator Exam
Page: 2 / 84
Total 420 questions
Question #6 (Topic: Single Topic)
Which dataplane layer of the graphic shown provides pattern protection for spyware and vulnerability exploits on a Palo Alto Networks Firewall?


A. Signature Matching
B. Network Processing
C. Security Processing
D. Data Interfaces
Answer: A
Question #7 (Topic: Single Topic)
Which option shows the attributes that are selectable when setting up application filters?
A. Category, Subcategory, Technology, and Characteristic
B. Category, Subcategory, Technology, Risk, and Characteristic
C. Name, Category, Technology, Risk, and Characteristic
D. Category, Subcategory, Risk, Standard Ports, and Technology
Answer: B
Question #8 (Topic: Single Topic)
Actions can be set for which two items in a URL filtering security profile? (Choose two.)
A. Block List
B. Custom URL Categories
C. PAN-DB URL Categories
D. Allow List
Answer: BC
Question #9 (Topic: Single Topic)
DRAG DROP
Match the Cyber-Attack Lifecycle stage to its correct description.
Select and Place:

Match the Cyber-Attack Lifecycle stage to its correct description.
Select and Place:

Answer:

Question #10 (Topic: Single Topic)
Which two statements are correct about App-ID content updates? (Choose two.)
A. Updated application content might change how Security policy rules are enforced.
B. After an application content update, new applications must be manually classified prior to use.
C. Existing security policy rules are not affected by application content updates.
D. After an application content update, new applications are automatically identified and classified.
Answer: AD