exam questions

Exam PCNSA All Questions

View all questions & answers for the PCNSA exam

Exam PCNSA topic 1 question 322 discussion

Actual exam question from Palo Alto Networks's PCNSA
Question #: 322
Topic #: 1
[All PCNSA Questions]

How would a Security policy need to be written to allow outbound traffic using Secure Shell (SSH) to destination ports tcp/22 and tcp/4422?

  • A. The admin creates a custom service object named "tcp-4422" with port tcp/4422.
    The admin then creates a Security policy allowing application "ssh" and service "tcp-4422".
  • B. The admin creates a custom service object named "tcp-4422" with port tcp/4422.
    The admin then creates a Security policy allowing application "ssh", service "tcp-4422", and service "application-default".
  • C. The admin creates a custom service object named "tcp-4422" with port tcp/4422.
    The admin also creates a custom service object named "tcp-22" with port tcp/22.
    The admin then creates a Security policy allowing application "ssh", service "tcp-4422", and service "tcp-22".
  • D. The admin creates a Security policy allowing application "ssh" and service "application-default".
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Wisley
Highly Voted 4 months, 1 week ago
Selected Answer: C
Because if you select application default, you will not add other service.
upvoted 15 times
...
[Removed]
Most Recent 4 months, 2 weeks ago
Selected Answer: B
Answer B ssh port 22 = application default
upvoted 1 times
LetsDiscuss23
4 months, 1 week ago
If you are specifying the service (ports) then all previous actions will need to match. in your case if you choose B only SSH over port 4422 would be allowed you cannot add application-default to the service when ports a specified
upvoted 7 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago