exam questions

Exam PCCSE All Questions

View all questions & answers for the PCCSE exam

Exam PCCSE topic 1 question 96 discussion

Actual exam question from Palo Alto Networks's PCCSE
Question #: 96
Topic #: 1
[All PCCSE Questions]

A customer has a requirement to restrict any container from resolving the name www.evil-url.com.

How should the administrator configure Prisma Cloud Compute to satisfy this requirement?

  • A. Choose “copy into rule” for any Container, set www.evil-url.com as a blocklisted DNS name in the Container policy and set the policy effect to alert.
  • B. Set www.evil-url.com as a blocklisted DNS name in the default Container runtime policy, and set the effect to block.
  • C. Choose “copy into rule” for any Container, set www.evil-url.com as a blocklisted DNS name, and set the effect to prevent.
  • D. Set www.evil-url.com as a blocklisted DNS name in the default Container policy and set the effect to prevent.
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Spippolo
1 week, 1 day ago
Selected Answer: D
D --> I think D, because we have to restrict any container from resolving, we don't need to block the container; so, the correct answer should be "prevent" by default.
upvoted 2 times
...
marcosvporto
3 weeks, 4 days ago
The question does not refer to delete the container, just to restrict the container from resolving the DNS name. So I would go with D.
upvoted 2 times
...
Chichi23
1 month, 2 weeks ago
B. Set www.evil-url.com as a blocklisted DNS name in the default Container runtime policy, and set the effect to block.
upvoted 1 times
...
HARRY
4 months, 1 week ago
Selected Answer: D
D is Correct
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago