
Palo Alto NetworksCertified Network Security Analyst
Domain 1Objective 8
1.8 Create and Apply DoS Protection Profiles NETWORK-SECURITY-ANALYST Practice Questions (Page 2)
Part of the Object Configuration Creation and Application domain, which accounts for 30% of the NETWORK-SECURITY-ANALYST exam.
18questions here
4free pages
5concepts
30%of the exam
Questions 6–10
- 6
What is the purpose of the 'random early drop' action in a DoS protection profile?
Select an answer first - 7
An administrator has configured a DoS protection profile with SYN flood protection set to 'random early drop' and applied it to the untrust zone. After a suspected attack, the administrator wants to confirm that the profile is working correctly. Which log or report should the administrator examine to see the specific packets that were dropped by the DoS protection?
Select an answer first - 8
What should you check to confirm that a DoS protection profile is active on a zone?
Select an answer first - 9
A large e-commerce company is preparing for a major sales event. They expect a significant increase in legitimate traffic to their web servers. The security team has a DoS protection profile with SYN flood protection set to 'random early drop' and a threshold based on the current baseline. To avoid dropping legitimate traffic during the event, what should the administrator do?
Select an answer first - 10
When creating a DoS protection profile, which of the following settings can be configured for SYN flood protection?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Palo Alto Networks. “NETWORK-SECURITY-ANALYST” is a trademark of its owner, used for identification only.