exam questions

Exam PCNSE All Questions

View all questions & answers for the PCNSE exam

Exam PCNSE topic 1 question 479 discussion

Actual exam question from Palo Alto Networks's PCNSE
Question #: 479
Topic #: 1
[All PCNSE Questions]

An administrator needs to identify which NAT policy is being used for internet traffic.

From the GUI of the firewall, how can the administrator identify which NAT policy is in use for a traffic flow?

  • A. From the Monitor tab, click Traffic view and review the information in the detailed log view.
  • B. From the Monitor tab, click Traffic view, ensure that the Source or Destination NAT columns are included and review the information in the detailed log view.
  • C. From the Monitor tab, click App Scope > Network Monitor and filter the report for NAT rules.
  • D. From the Monitor tab, click Session Browser and review the session details.
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
brian7857ffs45
Highly Voted 1 year, 1 month ago
This question was on the exam.. Nov 2023
upvoted 5 times
roo9
1 year, 1 month ago
is this dump valid plz?
upvoted 1 times
...
...
redgi0
Most Recent 1 month, 1 week ago
Selected Answer: B
To identify which NAT policy is being applied to internet traffic using the firewall's GUI, follow these steps: Access the Traffic Logs: Navigate to the Monitor tab. Select Logs and then Traffic. Customize the Log View: Click on the Columns button (often represented by a gear icon) to adjust the displayed columns. Ensure that the NAT Source IP and NAT Destination IP columns are included. These columns display the translated IP addresses, providing insight into the NAT process. Review Detailed Log Entries: Locate the specific traffic entry of interest. Click the magnifying glass icon next to the entry to view detailed information about the session. This detailed view will show the NAT rule applied to the session, including both original and translated addresses.
upvoted 1 times
redgi0
1 month ago
ok... maybe, that if the condition is "in use", then session browser is the only possible answer. so answer D.
upvoted 1 times
...
...
ThirdLevel
9 months, 1 week ago
D. confirmed
upvoted 1 times
...
Marshpillowz
11 months, 2 weeks ago
Selected Answer: D
D is correct
upvoted 2 times
...
pchuu
1 year, 10 months ago
Selected Answer: D
The answer has to be D. The question states "which NAT policy is in use for a traffic flow." The question is asking how to determine the NAT policy in use and not determine if a NAT policy was used. The session browser is the only way to see the NAT policy name. Answer has to be D.
upvoted 3 times
...
Maryamk
1 year, 11 months ago
D is correct You can only see the the Nat rule name in session browser, the details in Monitor > traffic logs only shows the Source Nat IP/DST Nat IP/ Ports
upvoted 3 times
...
mohr22
1 year, 11 months ago
D is correct . From the Monitor tab, click Session Browser and review the session details. verified in lab
upvoted 4 times
...
jmolina777
1 year, 11 months ago
Selected Answer: D
Answerd is D, if you go to monitor>Session Browser and see the details you can locate the NAT policy that the flow is matching. its the only way to see the NAT policy for a session log (only if active at the time) in the GUI.
upvoted 4 times
...
DenskyDen
1 year, 11 months ago
C. Definitely wrong. D. works only if the session is currently active. A. As mentioned by Djedeen. B. Makes the most sense. I would go for B.
upvoted 1 times
pchuu
1 year, 10 months ago
The answer has to be D. The question states "which NAT policy is in use for a traffic flow." The question is asking how to determine the NAT policy in use and not determine if a NAT policy was used. The session browser is the only way to see the NAT policy name. Answer has to be D.
upvoted 1 times
DenskyDen
1 year, 10 months ago
re-thinking about it, you were right. Should go for D as well.
upvoted 1 times
...
...
...
djedeen
1 year, 11 months ago
From Monitor > logs > traffic, you can see the effects of NAT (src and dst IPs+ports), and if NAT was applied (yes/no), but it really doesn't tell you which NAT rule was used. However it (B) seems to be the most correct answer.
upvoted 2 times
missakid
1 year, 2 months ago
We are looking for "wich" NAT policy is applied, D is the only correct answer as we are looking for a NAT policy name. From Monitor > Logs > Traffic you can only see if NAT was applied (or not) but you cannot see wich NAT policy was applied.
upvoted 1 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago