NGFW-Engineer 試験問題 61

An organization uses Cloud Identity Engine (CIE) to gather user information from its on-premises Active Directory (AD) for employees and a separate Azure AD for external partners. Due to compliance regulations, the firewalls protecting the internal network must not have any identity information about external partners. Conversely, firewalls in the partner-facing DMZ should only be aware of partner identities.
Which CIE feature is designed to solve this data partitioning requirement?
  • NGFW-Engineer 試験問題 62

    ハイブリッドクラウド環境において、Palo Alto Networksの次世代ファイアウォール(NGFW)を管理する上で、Ansibleの主な機能は何ですか?
  • NGFW-Engineer 試験問題 63

    An NGFW policy allows general web browsing but blocks access to known malicious or high-risk websites.
    この動作に最も直接的に責任がある次世代ファイアウォール(NGFW)のセキュリティ機能はどれですか?
  • NGFW-Engineer 試験問題 64

    Palo Alto Networksファイアウォールで新しいVSYSを定義する際に、リソースクォータを設定するための有効な設定可能な制限値は何ですか?
  • NGFW-Engineer 試験問題 65

    An organization requires a single security platform that integrates firewalling, VPN, intrusion prevention, and malware protection to simplify operations.
    Which security concept BEST describes this approach?