Join the discussion
Question 1/45
A customer has a pair of Panorama HA appliances tunning local log collectors and wants to have log redundancy on logs forwarded from firewalls Which two configuration options fulfill the customer's requirement for log redundancy? (Choose two)
Correct Answer: B,C
To fulfill the customer's requirement for log redundancy on logs forwarded from firewalls in a Panorama HA setup, the following configuration options are necessary:
B:Log redundancy must be enabled per Collector Group: This ensures that logs are redundantly stored across multiple log collectors within the same collector group.
C:A Collector Group must contain at least two Log Collectors: For log redundancy to work, there must be at least two log collectors in the collector group so that if one log collector fails, the other can continue to collect logs.
These configurations ensure that log data is replicated across multiple log collectors, providing redundancy and resilience in the event of a failure.
References:
* Palo Alto Networks - Configure Log Forwarding and Redundancy:
https://docs.paloaltonetworks.com/panorama/10-0/panorama-admin/manage-log-collection/configure-log-f
* Palo Alto Networks - Panorama High Availability:
https://docs.paloaltonetworks.com/panorama/10-0/panorama-admin/set-up-panorama/set-up-high-availabil
B:Log redundancy must be enabled per Collector Group: This ensures that logs are redundantly stored across multiple log collectors within the same collector group.
C:A Collector Group must contain at least two Log Collectors: For log redundancy to work, there must be at least two log collectors in the collector group so that if one log collector fails, the other can continue to collect logs.
These configurations ensure that log data is replicated across multiple log collectors, providing redundancy and resilience in the event of a failure.
References:
* Palo Alto Networks - Configure Log Forwarding and Redundancy:
https://docs.paloaltonetworks.com/panorama/10-0/panorama-admin/manage-log-collection/configure-log-f
* Palo Alto Networks - Panorama High Availability:
https://docs.paloaltonetworks.com/panorama/10-0/panorama-admin/set-up-panorama/set-up-high-availabil
Add Comments
- Other Question (45q)
- Q1. A customer has a pair of Panorama HA appliances tunning local log collectors and wants to ...
- Q2. What will be the egress interface if the traffic's ingress interface is Ethernet 1/6 sourc...
- Q3. Which two methods can be used to verify firewall connectivity to Autofocus? (Choose two. )...
- Q4. View the GlobalProtect configuration screen capture. What is the purpose of this configura...
- Q5. An administrator pushes a new configuration from panorama to a pair of firewalls that are ...
- Q6. What are two benefits of nested device groups in panorama? (Choose two )...
- Q7. What configuration is necessary for Active/Active HA to synchronize sessions between peers...
- Q8. Which two options prevents the firewall from capturing traffic passing through it? (Choose...
- Q9. In an environment using User-ID, what role does the User-ID agent play?...
- Q10. Which event will happen administrator uses an Application Override Policy?...
- Q11. In Panorama, what is the correct order of precedence for security policies?...
- Q12. Which three user authentication services can be modified in to provide the Palo Alto Netwo...
- Q13. Which prerequisite must be satisfied before creating an SSH proxy Decryption policy?...
- Q14. An administrator has been asked to configure active/passive HA for a pair of Palo Alto Net...
- Q15. Which of the following WildFire action settings will ensure that a malicious file is quara...
- Q16. An administrator creates a custom application containing Layer 7 signatures. The latest ap...
- Q17. An administrator accidentally closed the commit window/screen before the commit was finish...
- Q18. Match the task for server settings in group mapping with its order in the process. (Exhibi...
- Q19. Which two types of security profiles are recommended to protect against known and unknown ...
- Q20. Which three steps must an administrator perform to load only address objects from a PAN-OS...
- Q21. Which three options are supposed in HA Lite? (Choose three.)...
- Q22. What feature should be used to decrypt and inspect inbound SSL traffic without having to i...
- Q23. Which PAN-OS policy must you configure to force a user to provide additional credential be...
- Q24. You are hosting a public-facing web server on your DMZ and access to that server is throug...
- Q25. An administrator has been asked to configure active/active HA for a pair of Palo Alto Netw...
- Q26. Which command would you use to view the current sessions on a Palo Alto firewall?...
- Q27. In Panorama the web interface displays the security rules in evaluation order Organize the...
- Q28. If the firewall is configured for credential phishing prevention using the "Domain Credent...
- Q29. Which two action would be part of an automatic solution that would block sites with untrus...
- Q30. An administrator using an enterprise PKI needs to establish a unique chain of trust to ens...
- Q31. Refer to the exhibit. (Exhibit) A web server in the DMZ is being mapped to a public addres...
- Q32. An administrator logs in to the Palo Alto Networks NGFW and reports and reports that the W...
- Q33. An administrator has created an SSL Decryption policy rule that decrypts SSL sessions on a...
- Q34. An administrator encountered problems with inbound decryption. Which option should the adm...
- Q35. Your customer believes that the Panorama appliance is being overwhelmed by the logs from d...
- Q36. Which option would an administration choose to define the certificate and protect that Pan...
- Q37. Your customer has asked you to set up tunnel monitoring on an IPsec VPN tunnel between two...
- Q38. A user's traffic traversing a Palo Alto Networks NGFW sometime can reach http//www company...
- Q39. Which CLI command enables an administrator to view detail about the firewall including upt...
- Q40. How does Panorama prompt VMware NSX to quarantine an in6erface VM??...
- Q41. SSL Forward Proxy decryption is enabled on (he firewall When clients use Chrome to browse ...
- Q42. An administrator has users accessing network resources through Citrix XenApp 7 .x. Which U...
- Q43. Which processing order will be enabled when a panorama administrator selects the setting "...
- Q44. Which CLI command should you use to verify whether all SFP SFP*, or QSFP modules are insta...
- Q45. What command can you use to check the status of GlobalProtect clients connected to the fir...

[×]
Download PDF File
Enter your email address to download PaloAltoNetworks.PCNSC.v2025-02-14.q45.pdf