exam questions

Exam PCCSE All Questions

View all questions & answers for the PCCSE exam

Exam PCCSE topic 1 question 38 discussion

Actual exam question from Palo Alto Networks's PCCSE
Question #: 38
Topic #: 1
[All PCCSE Questions]

What is the behavior of Defenders when the Console is unreachable during upgrades?

  • A. Defenders continue to alert, but not enforce, using the policies and settings most recently cached before upgrading the Console.
  • B. Defenders will fail closed until the web-socket can be re-established.
  • C. Defenders will fail open until the web-socket can be re-established.
  • D. Defenders continue to alert and enforce using the policies and settings most recently cached before upgrading the Console.
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️
Reference:
https://docs.paloaltonetworks.com/prisma/prisma-cloud/20-09/prisma-cloud-compute-edition-admin/upgrade/upgrade_process.html

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Spippolo
1 month, 1 week ago
Selected Answer: D
D. Although older Defenders can interoperate with newer Consoles, their operation is restricted. Older Defenders fully protect your nodes using the policies and settings most recently cached before upgrading Console. They can emit audits to Console and local logs, including syslog. However, they cannot access any API endpoint other than the upgrade endpoint, and they cannot share any new data with Console. No new policies or settings can be pushed from Console to older Defenders. When Defender is in this state, its status is shown as 'Upgrade needed' in Manage > Defenders > Manage. To restore older Defenders to a fully operation state, upgrade them so that their versions match Console’s version.
upvoted 1 times
Spippolo
1 month, 1 week ago
In the event of a communications failure with Console, Defender continues running and enforcing the active policy that was last pushed by the management point. Events that would be pushed back to Console are cached locally until it is once again reachable. https://docs.paloaltonetworks.com/prisma/prisma-cloud/prisma-cloud-admin-compute/technology_overviews/defender_architecture
upvoted 1 times
...
...
Jihe
1 month, 2 weeks ago
D When version mismatches, Older Defenders fully protect your nodes using the policies and settings most recently cached before upgrading Console. (https://docs.paloaltonetworks.com/prisma/prisma-cloud/20-09/prisma-cloud-compute-edition-admin/upgrade/upgrade_process )
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago