PCNSE Exam Question 306

An organization uses the User-ID agent to control access to sensitive internal resources. A firewall engineer adds Security policies to ensure only User A has access to a specific resource.
User A was able to access the resource without issue before the updated policies, but now is having intermittent connectivity issues. What is the most likely resolution to this issue?
  • PCNSE Exam Question 307

    A network security engineer is attempting to peer a virtual router on a PAN-OS firewall with an external router using the BGP protocol. The peer relationship is not establishing.
    What command could the engineer run to see the current state of the BGP state between the two devices?
  • PCNSE Exam Question 308

    Cortex XDR notifies an administrator about grayware on the endpoints. There are no entries about grayware in any of the logs of the corresponding firewall. Which setting can the administrator configure on the firewall to log grayware verdicts?
  • PCNSE Exam Question 309

    Site-A and Site-B need to use IKEv2 to establish a VPN connection. Site-A connects directly to the internet using a public IP address. Site-B uses a private IP address behind an ISP router to connect to the internet.
    How should NAT Traversal be implemented for the VPN connection to be established between Site-A and Site-B?
  • PCNSE Exam Question 310

    Which three multi-factor authentication methods can be used to authenticate access to the firewall? (Choose three.)