[Nov 09, 2021] Get New PSE-Strata Certification – Valid Exam Dumps Questions [Q10-Q30]

Share

[Nov 09, 2021] Get New PSE-Strata Certification – Valid Exam Dumps Questions

100% Passing Guarantee - Brilliant PSE-Strata Exam Questions PDF

NEW QUESTION 10
An endpoint, inside an organization, is infected with known malware that attempts to make a command-and-control connection to a C2 server via the destination IP address Which mechanism prevents this connection from succeeding?

  • A. Wildfire Analysis
  • B. DNS Sinkholing
  • C. Anti-Spyware Signatures
  • D. DNS Proxy

Answer: B

 

NEW QUESTION 11
How do you configure the rate of file submissions to WildFire in the NGFW?

  • A. maximum number of files per minute
  • B. maximum number of files per day
  • C. QoS tagging
  • D. based on the purchased license uploaded

Answer: A

Explanation:
Explanation
https://www.paloaltonetworks.com/documentation/80/wildfire/wf_admin/submit-files-for-wildfire-analysis/firew

 

NEW QUESTION 12
How frequently do WildFire signatures move into the antivirus database?

  • A. once a week
  • B. every 1 hour
  • C. every 24 hours
  • D. every 12 hours

Answer: C

 

NEW QUESTION 13
Which two features are found in a Palo Alto Networks NGFW but are absent in a legacy firewall product?
(Choose two.)

  • A. Identification of application is possible on any port
  • B. Traffic is separated by zones
  • C. Policy match is based on application
  • D. Traffic control is based on IP port, and protocol

Answer: A,C

 

NEW QUESTION 14
The firewall includes predefined reports, custom reports can be built for specific data and actionable tasks, or predefined and custom reports can be combined to compile information needed to monitor network security.
The firewall provides which three types of reports? (Choose three.)

  • A. Botnet Reports
  • B. Netflow Reports
  • C. PDF Summary Reports
  • D. User or Group Activity Reports
  • E. SNMP Reports

Answer: A,B,D

 

NEW QUESTION 15
Which two features are found in a Palo Alto Networks NGFW but are absent in a legacy firewall product? (Choose two.)

  • A. Identification of application is possible on any port
  • B. Traffic is separated by zones
  • C. Policy match is based on application
  • D. Traffic control is based on IP port, and protocol

Answer: A,C

 

NEW QUESTION 16
An administrator wants to justify the expense of a second Panorama appliance for HA of the management layer.
The customer already has multiple M-100s set up as a log collector group. What are two valid reasons for deploying Panorama in High Availability? (Choose two.)

  • A. Control local firewall rules
  • B. Control of post rules
  • C. Ensure management continuity
  • D. Improve log collection redundancy

Answer: C,D

 

NEW QUESTION 17
Which license is required to receive weekly dynamic updates to the correlation objects on the firewall and Panorama?

  • A. WildFire on the firewall, and AutoFocus on Panorama
  • B. Threat Prevention on the firewall, and Support on Panorama
  • C. GlobalProtect on the firewall, and Threat Prevention on Panorama
  • D. URL Filtering on the firewall, and MineMeld on Panorama

Answer: B

 

NEW QUESTION 18
Which CLI command will allow you to view latency, jitter and packet loss on a virtual SD-WAN interface?
A)

B)

C)

D)

  • A. Option
  • B. Option
  • C. Option
  • D. Option

Answer: B

 

NEW QUESTION 19
Match the functions to the appropriate processing engine within the dataplane.

Answer:

Explanation:

 

NEW QUESTION 20
Which three settings must be configured to enable Credential Phishing Prevention? (Choose three.)

  • A. validate credential submission detection
  • B. enable App-ID
  • C. define an SSL decryption rulebase
  • D. define URL Filtering Profile
  • E. enable User-ID

Answer: A,D,E

 

NEW QUESTION 21
Which three platform components can identify and protect against malicious email links? (Choose three.)

  • A. WildFire hybrid cloud solution
  • B. M-600
  • C. M-200
  • D. WF-500
  • E. WildFire public cloud

Answer: C,D,E

 

NEW QUESTION 22
In an HA pair running Active/Passive mode, over which interface do the dataplanes communicate?

  • A. HA1
  • B. HA2
  • C. HA4
  • D. HA3

Answer: B

 

NEW QUESTION 23
What are three purposes for the Eval Systems, Security Lifecycle Reviews and Prevention Posture Assessment tools? (Choose three.)

  • A. assess the state of NGFW feature adoption
  • B. when you're delivering a security strategy
  • C. when client's want to see the power of the platform
  • D. help streamline the deployment and migration of NGFWs
  • E. provide users visibility into the applications currently allowed on the network

Answer: A,C,E

 

NEW QUESTION 24
What are three sources of malware sample data for the Threat Intelligence Cloud? (Choose three)

  • A. Next-generation firewalls deployed with WildFire Analysis Security Profiles
  • B. Palo Alto Networks non-firewall products such as Traps and Prisma SaaS
  • C. WF-500 configured as private clouds for privacy concerns
  • D. Third-party data feeds such as partnership with ProofPomt and the Cyber Threat Alliance
  • E. Correlation Objects generated by AutoFocus

Answer: B,D,E

 

NEW QUESTION 25
Which two tabs in Panorama can be used to identify templates to define a common base configuration? (Choose two.)

  • A. Device Tab
  • B. Policies Tab
  • C. Objects Tab
  • D. Network Tab

Answer: A,D

Explanation:
https://www.paloaltonetworks.com/documentation/80/pan-os/web-interface-help/panorama-web-interface/panorama-templates/template-stacks

 

NEW QUESTION 26
Which three features are used to prevent abuse of stolen credentials? (Choose three.)

  • A. SSL decryption rules
  • B. URL Filtering Profiles
  • C. multi-factor authentication
  • D. WildFire Profiles
  • E. Prisma Access

Answer: A,C,D

 

NEW QUESTION 27
A price-sensitive customer wants to prevent attacks on a Windows Virtual Server. The server will max out at
100Mbps but needs to have 45.000 sessions to connect to multiple hosts within a data center Which VM instance should be used to secure the network by this customer?

  • A. VM-50
  • B. VM-200
  • C. VM-100
  • D. VM-300

Answer: A

 

NEW QUESTION 28
Which three items contain information about Command-and-Control (C2) hosts? (Choose three.)

  • A. Threat logs
  • B. Botnet reports
  • C. Data filtering logs
  • D. SaaS reports
  • E. WildFire analysis reports

Answer: B,C,E

 

NEW QUESTION 29
Which two components must be configured within User-ID on a new firewall that has been implemented? (Choose two.)

  • A. Proxy Authentication
  • B. Group Mapping
  • C. User Mapping
  • D. 802.1X Authentication

Answer: B,C

 

NEW QUESTION 30
......

Free PSE-Strata braindumps download: https://www.pass4cram.com/PSE-Strata_free-download.html

PSE-Strata Dumps 2021 - NewPalo Alto Networks Exam Questions: https://drive.google.com/open?id=1yqA-6HsTYvF_Iakmlm92Mj8s4klYDY1-