PCNSE Exam Question 21

Refer to the exhibit.


Review the screenshots and consider the following information:
* FW-1 is assigned to the FW-1_DG device group, and FW-2 is assigned to OFFICE_FW_DG.
* There are no objects configured in REGIONAL_DG and OFFICE_FW_DG device groups.
Which IP address will be pushed to the firewalls inside Address Object Server-1?
  • PCNSE Exam Question 22

    A firewall administrator requires an A/P HA pair to fail over more quickly due to critical business application uptime requirements.
    What is the correct setting?
  • PCNSE Exam Question 23

    During the implementation of SSL Forward Proxy decryption, an administrator imports the company's Enterprise Root CA and Intermediate CA certificates onto the firewall. The company's Root and Intermediate CA certificates are also distributed to trusted devices using Group Policy and GlobalProtect. Additional device certificates and/or Subordinate certificates requiring an Enterprise CA chain of trust are signed by the company's Intermediate CA.
    Which method should the administrator use when creating Forward Trust and Forward Untrust certificates on the firewall for use with decryption?
  • PCNSE Exam Question 24

    An administrator has two pairs of firewalls within the same subnet. Both pairs of firewalls have been configured to use High Availability mode with Active/Passive. The ARP tables for upstream routes display the same MAC address being shared for some of these firewalls.
    What can be configured on one pair of firewalls to modify the MAC addresses so they are no longer in conflict?
  • PCNSE Exam Question 25



    Review the images. A firewall policy that permits web traffic includes the global-logs policy is depicted What is the result of traffic that matches the "Alert - Threats" Profile Match List?