exam questions

Exam PSE-SASE All Questions

View all questions & answers for the PSE-SASE exam

Exam PSE-SASE topic 1 question 12 discussion

Actual exam question from Palo Alto Networks's PSE-SASE
Question #: 12
Topic #: 1
[All PSE-SASE Questions]

Which three decryption methods are available in a security processing node (SPN)? (Choose three.)

  • A. SSL Outbound Proxy
  • B. SSHv2 Proxy
  • C. SSL Forward Proxy
  • D. SSL Inbound Inspection
  • E. SSH Inbound Inspection
Show Suggested Answer Hide Answer
Suggested Answer: BCD 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
veryboringitstudent
2 months, 1 week ago
Selected Answer: BCD
Most of times the community helps me a lot, so I'm trying to help too: In this link already here: https://docs.paloaltonetworks.com/strata-cloud-manager/getting-started/manage-configuration-ngfw-and-prisma-access/security-services/decryption First it says: Strata Cloud Manager provides two types of Decryption policy rules: SSL Forward Proxy to control outbound SSL traffic and SSL Inbound Inspection to control inbound SSL traffic. But in the end - Decryption at a Glance: it mention the SSH Proxy! D) Decryption Policies—List of onboarded decryption policies. Review the policy configuration, policy type (SSL Forward Proxy, SSL Inbound Inspection, or SSH Proxy), policy action (decrypt or no-decrypt), and BPA Verdict. So, I believe the correct are B, C, D.
upvoted 2 times
...
confusion
11 months ago
Selected Answer: BCD
I believe hcir is correct.
upvoted 1 times
...
raquinopsky
11 months ago
Answers correct is B, C, D. https://docs.paloaltonetworks.com/pan-os/10-1/pan-os-admin/decryption/decryption-concepts
upvoted 3 times
...
hcir
11 months, 3 weeks ago
Selected Answer: BCD
ssl forward proxy, ssl inbound inspection and sshv2
upvoted 2 times
...
yet_another_user
1 year ago
Selected Answer: ACD
Agree with NodummyIQ but another misleading question (SSL outbound and forward proys are actually the same). https://docs.paloaltonetworks.com/cloud-management/administration/manage-configuration-ngfw-and-prisma-access/security-services/decryption
upvoted 1 times
...
NodummyIQ
1 year, 2 months ago
A. SSL Outbound Proxy C. SSL Forward Proxy D. SSL Inbound Inspection Option B, SSHv2 Proxy, is not correct because it is not one of the decryption methods available in a security processing node (SPN). While SSHv2 is a secure protocol used for encrypted communication between devices, it is not specifically designed for decryption and inspection of encrypted traffic in the context of an SPN.
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago