Palo Alto Networks PSE Platform - Professional 認定 PSE-Platform 試験問題:
1. How do Highly Suspicious artifacts in-AutoFocus help identify when an unknown, potential zero-day, targeted attack occur to allow one to adjust the security posture?
A) Highly Suspicious artifacts are High Risk artifacts that have been seen in very few samples.
B) All High Risk artifacts are automatically classified as Highly Suspicious.
C) Highly Suspicious artifacts have been seen infecting a broad, significant range of companies.
D) Highly Suspicious artifacts are associated with High-Risk payloads that are inflicting massive amounts of damage to end customers.
2. A network covers three geographical areas: Americas, Europe (EMEA), and Asia (APAC).
The APAC segment of the network consists of nine HA pairs of PA-3060 firewalls, generating a combined log output of 25 K logs per second. Only 14 days of traffic log retention is required.
Which management and logging solution will be effective and cost-efficient for this segment of the network?
A) Two Dual-mode M-500s in HA for both global management and storage. Each M-500 has 8 TB of storage
B) Two M-500s in HA management at the global level, and one log collector-mode M-500 with 8 TB of storage for APAC
C) Two M-500s in HA management at the global level, and two log collector-mode M-500s in a log collector group with 16 TB of storage for APAC
D) Two M-500s in HA management at the global level, with one M-100 with 4 TB of storage for APAC
3. The botnet report displays a confidence score of 1 to 5 indicating the likelihood of a botnet infection.
Which three sources are used by the firewall as the basis of this score? (Choose three.)
A) Traffic Type
B) Threat Landscape
C) Botnet Reports
D) Executable Downloads
E) Bad Certificate Reports
F) Number of Events
4. An SE is preparing an SLR report for a school and wants to emphasize URL filtering capabilities because the school is concerned that its students are accessing inappropriate websites.
The URL categories being chosen by default in the report are not highlighting these types of websites.
How should the SE show the customer the firewall can detect that these websites are being accessed?
A) Remove unwanted categories listed under "High Risk" and use relevant information
B) Produce the report and edit the PDF manually
C) Edit the Key-Findings text to list the other types of categories that may be of interest
D) Create a footnote within the SLR generation tool
5. Where are three tuning considerations when building a security policy to protect against modern day attacks? (Choose three)
A) Create an antivirus profile to block all content that matches and antivirus signature
B) Create a WildFire profile to schedule file uploads during low network usage windows
C) Create an anti-spyware profile to block all spyware
D) Create an SSL Decryption policy to decrypt 100% of the traffic
E) Create a vulnerability protection profile to block all the vulnerabilities with severity low and higher
質問と回答:
質問 # 1 正解: A | 質問 # 2 正解: C | 質問 # 3 正解: A、D、F | 質問 # 4 正解: A | 質問 # 5 正解: B、D、E |