Join the discussion
Question 21/21
After a firewall is associated with Strata Cloud Manager (SCM), which two additional actions are required to enable management of the firewall from SCM? (Choose two.)
Correct Answer: B,D
To fully manage a firewall from Strata Cloud Manager (SCM), it's essential to establish trust and ensure reliable connectivity:
Configure NTP and DNS servers
The firewall must have accurate time (NTP) and name resolution (DNS) to securely communicate with SCM and related cloud services.
"To ensure successful management, configure the firewall's NTP and DNS settings to synchronize time and resolve domain names such as stratacloudmanager.paloaltonetworks.com." (Source: SCM Onboarding Requirements) Install a device certificate A device certificate authenticates the firewall's identity when connecting to SCM.
"The device certificate authenticates the firewall to Palo Alto Networks cloud services, including SCM. It's a fundamental requirement to establish secure connectivity." (Source: Device Certificates) These steps ensuretrust, secure communication, and successful onboarding into SCM.
Configure NTP and DNS servers
The firewall must have accurate time (NTP) and name resolution (DNS) to securely communicate with SCM and related cloud services.
"To ensure successful management, configure the firewall's NTP and DNS settings to synchronize time and resolve domain names such as stratacloudmanager.paloaltonetworks.com." (Source: SCM Onboarding Requirements) Install a device certificate A device certificate authenticates the firewall's identity when connecting to SCM.
"The device certificate authenticates the firewall to Palo Alto Networks cloud services, including SCM. It's a fundamental requirement to establish secure connectivity." (Source: Device Certificates) These steps ensuretrust, secure communication, and successful onboarding into SCM.
Add Comments
- Other Question (21q)
- Q1. Which NGFW function can be used to enhance visibility, protect, block, and log the use of ...
- Q2. Which component of NGFW is supported in active/passive design but not in active/active des...
- Q3. How does Advanced WildFire integrate into third-party applications?...
- Q4. What is the recommended upgrade path from PAN-OS 9.1 to PAN-OS 11.2?...
- Q5. A network security engineer wants to forward Strata Logging Service data to tools used by ...
- Q6. What must be configured to successfully onboard a Prisma Access remote network using Strat...
- Q7. A cloud security architect is designing a certificate management strategy for Strata Cloud...
- Q8. A company has an ongoing initiative to monitor and control IT-sanctioned SaaS applications...
- Q9. When a firewall acts as an application-level gateway (ALG), what does it require in order ...
- Q10. In which two applications can Prisma Access threat logs for mobile user traffic be reviewe...
- Q11. A network security engineer needs to implement segmentation but is under strict compliance...
- Q12. How does Strata Logging Service help resolve ever-increasing log retention needs for a com...
- Q13. Which action allows an engineer to collectively update VM-Series firewalls with Strata Clo...
- Q14. Which method in the WildFire analysis report detonates unknown submissions to provide visi...
- Q15. Which firewall attribute can an engineer use to simplify rule creation and automatically a...
- Q16. Which offering can be managed in both Panorama and Strata Cloud Manager (SCM)?...
- Q17. An NGFW administrator is updating PAN-OS on company data center firewalls managed by Panor...
- Q18. In a distributed enterprise implementing Prisma SD-WAN, which configuration element should...
- Q19. How do Cloud NGFW instances get created when using AWS centralized deployments?...
- Q20. Which set of practices should be implemented with Cloud Access Security Broker (CASB) to e...
- Q21. After a firewall is associated with Strata Cloud Manager (SCM), which two additional actio...
[×]
Download PDF File
Enter your email address to download PaloAltoNetworks.NetSec-Pro.v2026-04-28.q21.pdf
