Facts about pcnse6 pdf

It is impossible to pass Paloalto Networks pcnse6 exam dumps exam without any help in the short term. Come to Testking soon and find the most advanced, correct and guaranteed Paloalto Networks pcnse6 exam practice questions. You will get a surprising result by our Renovate Palo Alto Networks Certified Network Security Engineer 6.0 practice guides.


♥♥ 2021 NEW RECOMMEND ♥♥

Free VCE & PDF File for Paloalto Networks PCNSE6 Real Exam (Full Version!)

★ Pass on Your First TRY ★ 100% Money Back Guarantee ★ Realistic Practice Exam Questions

Free Instant Download NEW PCNSE6 Exam Dumps (PDF & VCE):
Available on: http://www.surepassexam.com/PCNSE6-exam-dumps.html

Q51. How do you limit the amount of information recorded in the URL Content Filtering Logs? 

A. Enable DSRI 

B. Disable URL packet captures 

C. Enable URL log caching 

D. Enable Log container page only 

Answer:


Q52. Which authentication method can provide role-based administrative access to firewalls running PAN-OS? 

A. LDAP 

B. Certificate-based authentication 

C. Kerberos 

D. RADIUS with Vendor Specific Attributes 

Answer:


Q53. What is a prerequisite for configuring a pair of Palo Alto Networks firewalls in an Active/Passive High Availability (HA) pair? 

A. The peer HA1 IP address must be the same on both firewalls. 

B. The management interfaces must be on the same network. 

C. The firewalls must have the same set of licenses. 

D. The HA interfaces must be directly connected to each other. 

Answer:

Explanation: 

Reference: https://www.paloaltonetworks.com/content/dam/paloaltonetworks-com/en_US/assets/pdf/framemaker/60/pan-os/pan-os/section_4.pdf page 134 


Q54. Which source address translation type will allow multiple devices to share a single translated source address while using a single NAT Policy rule? 

A. Dynamic IP and Port 

B. Dynamic IP 

C. Bi-directional 

D. Static IP 

Answer:

Explanation: 

Reference: https://www.paloaltonetworks.com/documentation/61/pan-os/pan-os/networking/nat.html 


Q55. Which feature can be configured with an IPv6 address? 

A. Static Route 

B. RIPv2 

C. DHCP Server 

D. BGP 

Answer:

Explanation: 

Reference: https://live.paloaltonetworks.com/docs/DOC-5493 


Q56. A company has a policy that denies all applications they classify as bad and permits only applications they classify as good. The firewall administrator created the following security policy on the company s firewall: 

Which two benefits are gained from having both rule 2 and rule 3 present? Choose 2 answers 

A. Different security profiles can be applied to traffic matching rules 2 and 3. 

B. Separate Log Forwarding profiles can be applied to rules 2 and 3. 

C. Rule 2 denies traffic flowing across different TCP and UDP ports than rule 3. 

D. A report can be created that identifies unclassified traffic on the network. 

Answer: A,D 


Q57. WildFire Analysis Reports are available for the following Operating Systems (select all that apply) 

A. Windows XP 

B. Windows 7 

C. Windows 8 

D. Mac OS-X 

Answer: A,B,C 


Q58. What is the maximum usable storage capacity of an M-100 appliance? 

A. 2TB 

B. 4TB 

C. 6TB 

D. STB 

Answer:

Explanation: 

Reference: https://www.paloaltonetworks.com/documentation/61/panorama/panorama_adminguide/set -up-panorama/set-up-the-m-100-appliance.html 


Q59. Which one of the options describes the sequence of the GlobalProtect agent connecting to a Gateway? 

A. The agent connects to the portal, obtains a list of the Gateways, and connects to the Gateway with the fastest SSL connect time 

B. The agent connects to the portal and randomly establishes connect to the first available Gateway 

C. The agent connects to the portal, obtains a list of the Gateways, and connects to the Gateway with the fastest PING response time 

D. The agent connects to the closest Gateway and sends the HIP report to the portal 

Answer:


Q60. How can a Palo Alto Networks firewall be configured to send syslog messages in a format compatible with nonstandard syslog servers? 

A. Enable support for non-standard syslog messages under device management. 

B. Select a non-standard syslog server profile. 

C. Create a custom log format under the syslog server profile. 

D. Check the custom-format checkbox in the syslog server profile. 

Answer:

Explanation: 

Reference: https://live.paloaltonetworks.com/docs/DOC-2021 Page 16 of PDF available there.