exam questions

Exam PSE Strata All Questions

View all questions & answers for the PSE Strata exam

Exam PSE Strata topic 1 question 104 discussion

Actual exam question from Palo Alto Networks's PSE Strata
Question #: 104
Topic #: 1
[All PSE Strata Questions]

A customer with a legacy firewall architecture focused on port-and-protocol-level security has heard that NGFWs open all ports by default.

Which of the following statements regarding Palo Alto Networks NGFWs is an appropriate rebuttal that explains an advantage over legacy firewalls?

  • A. They do not consider port information, instead relying on App-ID signatures that do not reference ports.
  • B. They protect all applications on all ports while leaving all ports open by default.
  • C. They can control applications by application-default service ports or a configurable list of approved ports on a per-policy basis.
  • D. They keep ports closed by default, only opening after understanding the application request, and then opening only the application-specified ports.
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Robesque
1 month, 2 weeks ago
Selected Answer: D
Overall, option D provides an accurate description of how Palo Alto Networks NGFWs manage ports, emphasizing their ability to enhance security while offering greater flexibility and control over network traffic compared to legacy firewalls.
upvoted 1 times
...
hifumi_daisuki
5 months, 3 weeks ago
Selected Answer: C
See Question 24 https://www.examtopics.com/discussions/palo-alto-networks/view/84230-exam-pse-strata-topic-1-question-24-discussion/
upvoted 2 times
...
[Removed]
7 months, 2 weeks ago
I took the Palo Alto Networks PSE-StrataDC and prepared from Realexamcollection.com as it has a detailed explanation of all the topics available which helped me understand all the concepts. I scored 900/1000.
upvoted 1 times
...
McMarius11
9 months, 1 week ago
Selected Answer: C
C is correct
upvoted 1 times
...
zerox7305
11 months, 3 weeks ago
Selected Answer: C
should be c
upvoted 1 times
...
f143c37
1 year ago
Selected Answer: C
C indeed
upvoted 1 times
...
ArangoTopics
1 year ago
Selected Answer: C
D is incorrect because each application has default port which is open by default. C is the correct answer.
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago