
Palo Alto NetworksCertified Network Security Analyst
Domain 1Objective 8
1.8 Create and Apply DoS Protection Profiles NETWORK-SECURITY-ANALYST Practice Questions (Page 3)
Part of the Object Configuration Creation and Application domain, which accounts for 30% of the NETWORK-SECURITY-ANALYST exam.
18questions here
4free pages
5concepts
30%of the exam
Questions 11–15
- 11
A company has a DoS protection profile applied to its DMZ zone. The profile has SYN flood protection set to 'alert' and ICMP flood protection set to 'drop'. During a recent incident, the administrator noticed that the SYN flood protection was not stopping the attack, only logging it. What is the most likely reason for this?
Select an answer first - 12
A small business is experiencing frequent UDP flood attacks against its public DNS server. The administrator wants to use a DoS protection profile to mitigate these attacks. What is the primary purpose of creating and applying a DoS protection profile in this scenario?
Select an answer first - 13
Which of the following is a valid target for applying a DoS protection profile?
Select an answer first - 14
A company is planning to deploy a DoS protection profile for the first time. The security team is discussing what the profile can do. Which statement accurately describes the function of a DoS protection profile?
Select an answer first - 15
Which of the following flood types can be configured in a DoS protection profile?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Palo Alto Networks. “NETWORK-SECURITY-ANALYST” is a trademark of its owner, used for identification only.