NGFW-Engineer 試験問題 61
An organization uses Cloud Identity Engine (CIE) to gather user information from its on-premises Active Directory (AD) for employees and a separate Azure AD for external partners. Due to compliance regulations, the firewalls protecting the internal network must not have any identity information about external partners. Conversely, firewalls in the partner-facing DMZ should only be aware of partner identities.
Which CIE feature is designed to solve this data partitioning requirement?
Which CIE feature is designed to solve this data partitioning requirement?
NGFW-Engineer 試験問題 62
ハイブリッドクラウド環境において、Palo Alto Networksの次世代ファイアウォール(NGFW)を管理する上で、Ansibleの主な機能は何ですか?
NGFW-Engineer 試験問題 63
An NGFW policy allows general web browsing but blocks access to known malicious or high-risk websites.
この動作に最も直接的に責任がある次世代ファイアウォール(NGFW)のセキュリティ機能はどれですか?
この動作に最も直接的に責任がある次世代ファイアウォール(NGFW)のセキュリティ機能はどれですか?
NGFW-Engineer 試験問題 64
Palo Alto Networksファイアウォールで新しいVSYSを定義する際に、リソースクォータを設定するための有効な設定可能な制限値は何ですか?
NGFW-Engineer 試験問題 65
An organization requires a single security platform that integrates firewalling, VPN, intrusion prevention, and malware protection to simplify operations.
Which security concept BEST describes this approach?
Which security concept BEST describes this approach?
