What is the correct behavior when a Palo Alto Networks next-generation firewall (NGFW) is unable to retrieve a DNS verdict from DNS service cloud in the configured lookup time?
A.
NGFW discard a response from the DNS server.
B.
NGFW temporarily disable DNS Security function.
C.
NGFW permit a response from the DNS server.
D.
NGFW resend a verdict challenge to DNS service cloud.
"If the firewall is unable to retrieve a signature verdict in the allotted time due to connectivity issues, the request, including all subsequent DNS responses, are passed through."
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
wsdeffwd
3 months, 3 weeks agoJP_I
8 months, 1 week agoyet_another_user
1 year agoXyn
1 year, 2 months ago