exam questions

Exam PCNSE All Questions

View all questions & answers for the PCNSE exam

Exam PCNSE topic 1 question 479 discussion

Actual exam question from Palo Alto Networks's PCNSE
Question #: 479
Topic #: 1
[All PCNSE Questions]

An administrator needs to identify which NAT policy is being used for internet traffic.

From the GUI of the firewall, how can the administrator identify which NAT policy is in use for a traffic flow?

  • A. From the Monitor tab, click Traffic view and review the information in the detailed log view.
  • B. From the Monitor tab, click Traffic view, ensure that the Source or Destination NAT columns are included and review the information in the detailed log view.
  • C. From the Monitor tab, click App Scope > Network Monitor and filter the report for NAT rules.
  • D. From the Monitor tab, click Session Browser and review the session details.
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
brian7857ffs45
Highly Voted 1 year, 3 months ago
This question was on the exam.. Nov 2023
upvoted 5 times
roo9
1 year, 2 months ago
is this dump valid plz?
upvoted 1 times
...
...
corpguy
Most Recent 3 weeks, 5 days ago
Selected Answer: B
The question does not say anything about active traffic which would be the session browser. The traffic logs has this information.
upvoted 1 times
...
redgi0
2 months, 3 weeks ago
Selected Answer: B
To identify which NAT policy is being applied to internet traffic using the firewall's GUI, follow these steps: Access the Traffic Logs: Navigate to the Monitor tab. Select Logs and then Traffic. Customize the Log View: Click on the Columns button (often represented by a gear icon) to adjust the displayed columns. Ensure that the NAT Source IP and NAT Destination IP columns are included. These columns display the translated IP addresses, providing insight into the NAT process. Review Detailed Log Entries: Locate the specific traffic entry of interest. Click the magnifying glass icon next to the entry to view detailed information about the session. This detailed view will show the NAT rule applied to the session, including both original and translated addresses.
upvoted 1 times
redgi0
2 months, 1 week ago
ok... maybe, that if the condition is "in use", then session browser is the only possible answer. so answer D.
upvoted 1 times
...
...
ThirdLevel
10 months, 3 weeks ago
D. confirmed
upvoted 1 times
...
Marshpillowz
1 year ago
Selected Answer: D
D is correct
upvoted 2 times
...
pchuu
2 years ago
Selected Answer: D
The answer has to be D. The question states "which NAT policy is in use for a traffic flow." The question is asking how to determine the NAT policy in use and not determine if a NAT policy was used. The session browser is the only way to see the NAT policy name. Answer has to be D.
upvoted 3 times
...
Maryamk
2 years ago
D is correct You can only see the the Nat rule name in session browser, the details in Monitor > traffic logs only shows the Source Nat IP/DST Nat IP/ Ports
upvoted 3 times
...
mohr22
2 years ago
D is correct . From the Monitor tab, click Session Browser and review the session details. verified in lab
upvoted 4 times
...
jmolina777
2 years, 1 month ago
Selected Answer: D
Answerd is D, if you go to monitor>Session Browser and see the details you can locate the NAT policy that the flow is matching. its the only way to see the NAT policy for a session log (only if active at the time) in the GUI.
upvoted 4 times
...
DenskyDen
2 years, 1 month ago
C. Definitely wrong. D. works only if the session is currently active. A. As mentioned by Djedeen. B. Makes the most sense. I would go for B.
upvoted 1 times
pchuu
2 years ago
The answer has to be D. The question states "which NAT policy is in use for a traffic flow." The question is asking how to determine the NAT policy in use and not determine if a NAT policy was used. The session browser is the only way to see the NAT policy name. Answer has to be D.
upvoted 1 times
DenskyDen
2 years ago
re-thinking about it, you were right. Should go for D as well.
upvoted 1 times
...
...
...
djedeen
2 years, 1 month ago
From Monitor > logs > traffic, you can see the effects of NAT (src and dst IPs+ports), and if NAT was applied (yes/no), but it really doesn't tell you which NAT rule was used. However it (B) seems to be the most correct answer.
upvoted 2 times
missakid
1 year, 3 months ago
We are looking for "wich" NAT policy is applied, D is the only correct answer as we are looking for a NAT policy name. From Monitor > Logs > Traffic you can only see if NAT was applied (or not) but you cannot see wich NAT policy was applied.
upvoted 1 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago