Updated May-2022 Test Engine to Practice PSE-Strata Test Questions [Q24-Q42]

Share

Updated May-2022 Test Engine to Practice PSE-Strata Test Questions

PSE-Strata Real Exam Questions Test Engine Dumps Training With 90 Questions

NEW QUESTION 24
What can be applied to prevent users from unknowingly downloading malicious file types from the internet?

  • A. An antivirus profile to security policy rules that deny general web access
  • B. A vulnerability profile to security policy rules that deny general web access
  • C. A zone protection profile to the untrust zone
  • D. A file blocking profile to security policy rules that allow general web access

Answer: D

 

NEW QUESTION 25
Which four actions can be configured in an Anti-Spyware profile to address command-and-control traffic from compromised hosts? (Choose four.)

  • A. Drop
  • B. Redirect
  • C. Quarantine
  • D. Alert
  • E. Allow
  • F. Reset

Answer: A,D,E,F

Explanation:
Explanation
https://www.paloaltonetworks.com/documentation/71/pan-os/pan-os/policy/anti-spyware-profiles.html

 

NEW QUESTION 26
A customer is concerned about malicious activity occurring directly on their endpoints and will not be visible to their firewalls.
Which three actions does the Traps agent execute during a security event, beyond ensuring the prevention of this activity? (Choose three.)

  • A. Remediates the event by deleting the malicious file
  • B. Collects forensic information about the event
  • C. Informs WildFire and sends up a signature to the Cloud
  • D. Notifies the user about the event
  • E. Communicates the status of the endpoint to the ESM

Answer: B,D,E

 

NEW QUESTION 27
Which two tabs in Panorama can be used to identify templates to define a common base configuration? (Choose two.)

  • A. Network Tab
  • B. Device Tab
  • C. Policies Tab
  • D. Objects Tab

Answer: A,B

 

NEW QUESTION 28
How often are the databases for Anti-virus. Application, Threats, and WildFire subscription updated?

  • A. Anti-virus (weekly): Application (daily). Threats (weekly), WildFire (5 minutes)
  • B. Anti-virus (daily), Application (weekly), Threats (weekly), WildFire (5 minutes)
  • C. Anti-virus (weekly), Application (daily), Threats (daily), WildFire (5 minutes)
  • D. Anti-virus (daily), Application (weekly), Threats (daily), WildFire (5 minutes)

Answer: B

Explanation:
Explanation
https://docs.paloaltonetworks.com/pan-os/9-0/pan-os-admin/software-and-content-updates/dynamic-content-upd

 

NEW QUESTION 29
Which security profile on the NGFW includes signatures to protect you from brute force attacks?

  • A. URL Filtering Profile
  • B. Anti-Spyware Profile
  • C. Vulnerability Protection Profile
  • D. Zone Protection Profile

Answer: C

 

NEW QUESTION 30
Which two new file types are supported on the WF-500 in PAN-OS 9? (Choose two)

  • A. ELF
  • B. Zip
  • C. RAR
  • D. 7-Zip

Answer: C,D

 

NEW QUESTION 31
When log sizing is factored for the Cortex Data Lake on the NGFW, what is the average log size used in calculation?

  • A. 1500 bytes
  • B. 8MB
  • C. depends on the Cortex Data Lake tier purchased
  • D. 18 bytes

Answer: A

Explanation:
Explanation
https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClVMCA0

 

NEW QUESTION 32
Which are the three mandatory components needed to run Cortex XDR? (Choose three.)

  • A. Pathfinder
  • B. Traps
  • C. Directory Syn Service
  • D. Cortex Data Lake
  • E. NGFW with PANOS 8 0.5 or later
  • F. Panorama

Answer: C,D,E

Explanation:
https://docs.paloaltonetworks.com/cortex/cortex-xdr/cortex-xdr-prevent-admin/cortex-xdr-prevent-overview/cortex-xdr-prevent-architecture

 

NEW QUESTION 33
Which three settings must be configured to enable Credential Phishing Prevention? (Choose three.)

  • A. enable User-ID
  • B. validate credential submission detection
  • C. define URL Filtering Profile
  • D. enable App-ID
  • E. define an SSL decryption rulebase

Answer: A,B,C

Explanation:
https://docs.paloaltonetworks.com/pan-os/9-0/pan-os-admin/threat-prevention/prevent-credential-phishing.html

 

NEW QUESTION 34
What are three sources of malware sample data for the Threat Intelligence Cloud? (Choose three)

  • A. Third-party data feeds such as partnership with ProofPomt and the Cyber Threat Alliance
  • B. Next-generation firewalls deployed with WildFire Analysis Security Profiles
  • C. Correlation Objects generated by AutoFocus
  • D. Palo Alto Networks non-firewall products such as Traps and Prisma SaaS
  • E. WF-500 configured as private clouds for privacy concerns

Answer: A,C,D

 

NEW QUESTION 35
Which two of the following does decryption broker provide on a NGFW? (Choose two.)

  • A. Provides a third party SSL decryption option which allows you to increase the total number of third party devices performing analysis and enforcement
  • B. Decryption broker allows you to offload SSL decryption to the Palo Alto Networks next-generation firewall and decrypt traffic multiple times
  • C. Eliminates the need for a third party SSL decryption option which allows you to reduce the total number of third party devices performing analysis and enforcement
  • D. Decryption broker allows you to offload SSL decryption to the Palo Alto Networks next-generation firewall and decrypt traffic only once

Answer: C,D

 

NEW QUESTION 36
In an HA pair running Active/Passive mode, over which interface do the dataplanes communicate?

  • A. HA1
  • B. HA3
  • C. HA4
  • D. HA2

Answer: D

 

NEW QUESTION 37
What can be applied to prevent users from unknowingly downloading malicious file types from the internet?

  • A. An antivirus profile to security policy rules that deny general web access
  • B. A vulnerability profile to security policy rules that deny general web access
  • C. A zone protection profile to the untrust zone
  • D. A file blocking profile to security policy rules that allow general web access

Answer: D

Explanation:
Explanation
https://docs.paloaltonetworks.com/best-practices/8-1/internet-gateway-best-practices/best-practice-internet-gatew

 

NEW QUESTION 38
Which two tabs in Panorama can be used to identify templates to define a common base configuration?
(Choose two.)

  • A. Network Tab
  • B. Device Tab
  • C. Policies Tab
  • D. Objects Tab

Answer: A,B

Explanation:
Explanation
https://www.paloaltonetworks.com/documentation/80/pan-os/web-interface-help/panorama-web-interface/panora

 

NEW QUESTION 39
Which two email links, contained in SMTP and POP3, can be submitted from WildFire analysis with a WildFire subscription? (Choose two.)

  • A. RTP
  • B. HTTP
  • C. HTTPS
  • D. FTP

Answer: B,C

 

NEW QUESTION 40
Which CLI allows you to view the names of SD-WAN policy rules that send traffic to the specified virtual SD-WAN interface, along with the performance metrics?
A)

B)

C)

D)

  • A. Option
  • B. Option
  • C. Option
  • D. Option

Answer: A

Explanation:
https://docs.paloaltonetworks.com/sd-wan/1-0/sd-wan-admin/troubleshooting/use-cli-commands-for-sd-wan-tasks.html

 

NEW QUESTION 41
Which functionality is available to firewall users with an active Threat Prevention subscription, but no WildFire license?

  • A. PE file upload to WildFire
  • B. WildFire hybrid deployment
  • C. Access to the WildFire API
  • D. 5 minute WildFire updates to threat signatures

Answer: D

 

NEW QUESTION 42
......

PSE-Strata Actual Questions Answers PDF 100% Cover Real Exam Questions: https://www.suretorrent.com/PSE-Strata-exam-guide-torrent.html

PSE-Strata Exam questions and answers: https://drive.google.com/open?id=1C5aNO7Ti-qlR4jRjfPpH0f8DKOdhhzbX