NGFW-Engineer 試験問題 6
ネットワークアーキテクトは、ローカルデータセンターとクラウド環境を接続するための新しいIPSec VPNトンネルの導入を計画しています。この計画には、トンネルネゴシエーションとデータ転送の両方に必要なすべてのセキュリティポリシー構成を含める必要があります。実装計画に含めるべきセキュリティポリシー要件はどれですか?(2つ選択してください)
NGFW-Engineer 試験問題 7
An network engineer is configuring SSL Forward Proxy decryption on a Palo Alto Networks firewall. The company's internal clients trust a corporate root certificate authority (CA). To ensure the firewall can properly validate the certificates of external web servers, the engineer must configure a specific component. Which component defines the mechanism for Online Certificate Status Protocol (OCSP) / certificate revocation list (CRL) status?
NGFW-Engineer 試験問題 8
管理インターフェースをDHCPクライアントとして設定するには、どのCLIコマンドを使用しますか?
NGFW-Engineer 試験問題 9
PAN-OSのアップグレード後、すべての機能が正しく動作するようにするために推奨される手順は何ですか?
NGFW-Engineer 試験問題 10
An engineer is configuring a site-to-site IPSec VPN to a partner network. The IKE Gateway and IPSec tunnel configurations are complete, and the tunnel interface has been assigned to a security zone. However, the tunnel fails to establish, and no application traffic passes through it once it is up.
Which two Security policy configurations are required to allow tunnel establishment and data traffic flow in this scenario? (Choose two.)
Which two Security policy configurations are required to allow tunnel establishment and data traffic flow in this scenario? (Choose two.)
