DON'T WANT TO MISS A THING?

Certification Exam Passing Tips

Latest exam news and discount info

Curated and up-to-date by our experts

Yes, send me the newsletter

Free Palo Alto Network Security Administrator PCNSA Exam Questions Dumps

Exam NameNetwork Security Administrator
Exam NumberPCNSA PAN‐OS 10
Exam Price$155 USD
Duration80 minutes
Number of Questions50-60
Passing ScoreVariable (70-80 / 100 Approx.)
Recommended TrainingFirewall Essentials - Configuration and Management (EDU-210)

Download this free exam questions dump with sample questions and answers for the Palo Alto PCNSA certification exam. Practice with realistic practice tests.

Take other online exams

Question #1
Why does a company need an Antivirus profile?
A. o prevent known exploits
B. o protect against viruses, worms, and Trojans
C. o prevent access to malicious web content
D. o prevent command-and-control traffic
View answer
Correct Answer: B
Question #2
Which two Security profile actions can only be applied to DoS Protection profiles? (Choose two.)
A. andom Early Drop
B. YN cookies
C. eset-both
D. eset-server
View answer
Correct Answer: AB
Question #3
What is the main function of the Test Policy Match function?
A. onfirm that policy rules in the configuration are allowing/denying the correct traffic
B. erify that policy rules from Expedition are valid
C. onfirm that rules meet or exceed the Best Practice Assessment recommendations
D. nsure that policy rules are not shadowing other policy rules
View answer
Correct Answer: A
Question #4
An administrator is trying to enforce policy on some (but not all) of the entries in an external dynamic list. What is the maximum number of entries that they can be exclude?
A. 0
B. 00
C. 00
D. 000
View answer
Correct Answer: B
Question #5
Which User Credential Detection method should be applied within a URL Filtering Security profile to check for the submission of a valid corporate username and the associated password?
A. P User
B. roup Mapping
C. omain Credential
D. alid Username Detected Log Severity
View answer
Correct Answer: C
Question #6
In a File Blocking profile, which two actions should be taken to allow file types that support critical apps? (Choose two.)
A. lone and edit the Strict profile
B. et the action to Continue
C. se URL filtering to limit categories in which users can transfer files
D. dit the Strict profile
View answer
Correct Answer: AB
Question #7
Which path in PAN-OS 10.2 would you follow to see how new and modified App-IDs impact a Security policy?
A. bjects > Dynamic Updates > Review Policies
B. bjects > Dynamic Updates > Review App-IDs
C. evice > Dynamic Updates > Review Policies
D. evice > Dynamic Updates > Review App-IDs
View answer
Correct Answer: D
Question #8
An administrator needs to allow users to use only certain email applications. How should the administrator configure the firewall to restrict users to specific email applications?
A. reate an application group and add the email applications to it
B. reate an application filter and filter it on the collaboration category, email subcategory
C. reate an application filter and filter it on the collaboration category
D. reate an application group and add the email category to it
View answer
Correct Answer: B
Question #9
What does rule shadowing in Security policies do?
A. t indicates that a broader rule matching the criteria is configured above a more specific rule
B. t shows rules with the same Source Zones and Destination Zones
C. t indicates rules with App-ID that are not configured as port-based
D. t shows rules that are missing Security profile configurations
View answer
Correct Answer: A
Question #10
Where in Panorama would Zone Protection profiles be configured?
A. emplates
B. hared
C. evice Groups
D. anorama tab
View answer
Correct Answer: A

View Answers after Submission

Please submit your email and WhatsApp to get the answers of questions.

Note: Please make sure your email ID and Whatsapp are valid so that you can get the correct exam results.

Email:
Whatsapp/phone number: