PCNSE Exam Question 106

A web server is hosted in the DMZ and the server is configured to listen for incoming connections on TCP port 443 A Security policies rules allowing access from the Trust zone to the DMZ zone needs to be configured to allow web-browsing access. The web server hosts its contents over HTTP(S). Traffic from Trust to DMZ is being decrypted with a Forward Proxy rule.
Which combination of service and application, and order of Security policy rules, needs to be configured to allow cJeartext web-browsing traffic to this server on tcp/443?
  • PCNSE Exam Question 107

    An engineer creates a set of rules in a Device Group (Panorama) to permit traffic to various services for a specific LDAP user group.
    What needs to be configured to ensure Panorama can retrieve user and group information for use in these rules?
  • PCNSE Exam Question 108

    An administrator has two pairs of firewalls within the same subnet. Both pairs of firewalls have been configured to use High Availability mode with Active/Passive. The ARP tables for upstream routes display the same MAC address being shared for some of these firewalls.
    What can be configured on one pair of firewalls to modify the MAC addresses so they are no longer in conflict?
  • PCNSE Exam Question 109

    SAML SLO is supported for which two firewall features? (Choose two.)
  • PCNSE Exam Question 110

    An administrator wants to grant read-only access to all firewall settings, except administrator accounts, to a new-hire colleague in the IT department.
    Which dynamic role does the administrator assign to the new-hire colleague?