PCNSE Exam Question 276

A company hosts a publically accessible web server behind a Palo Alto Networks next generation firewall with the following configuration information.
- Users outside the company are in the "Untrust-L3" zone
- The web server physically resides in the "Trust-L3" zone.
- Web server public IP address: 23.54.6.10
- Web server private IP address: 192.168.1.10
Which two items must be NAT policy contain to allow users in the untrust-L3 zone to access the web server? (Choose two)
  • PCNSE Exam Question 277

    After configuring an IPSec tunnel, how should a firewall administrator initiate the IKE phase 1 to see if it will come up?
  • PCNSE Exam Question 278

    A firewall administrator has configured User-ID and deployed GlobalProtect, but there is no User-ID showing in the traffic logs.
    How can the administrator ensure that User-IDs are populated in the traffic logs?
  • PCNSE Exam Question 279

    In which two types of deployment is active/active HA configuration supported? (Choose two.)
  • PCNSE Exam Question 280

    An administrator allocates bandwidth to a Prisma Access Remote Networks compute location with three remote networks.
    What is the minimum amount of bandwidth the administrator could configure at the compute location?