
Palo Alto NetworksCertified Network Security Analyst
Domain 2Objective 2
2.2 Create and Apply NAT Policies NETWORK-SECURITY-ANALYST Practice Questions (Page 3)
Part of the Policy Creation and Application domain, which accounts for 30% of the NETWORK-SECURITY-ANALYST exam.
21questions here
5free pages
7concepts
30%of the exam
Questions 11–15
- 11
In a Palo Alto Networks firewall NAT policy, which two sets of attributes are defined to control address translation?
Select an answer first - 12
What is the primary purpose of a NAT policy on a Palo Alto Networks firewall?
Select an answer first - 13
When troubleshooting a NAT issue, which log type would you examine to see if a NAT policy matched the traffic?
Select an answer first - 14
A firewall has the following NAT policies in order: 1) Source NAT for Trust to Untrust with source 192.168.1.0/24 to 203.0.113.50; 2) Source NAT for Trust to Untrust with source 192.168.1.100 to 203.0.113.51. An administrator wants traffic from host 192.168.1.100 to be translated to 203.0.113.51. What should the administrator do?
Select an answer first - 15
An administrator is troubleshooting a NAT issue where internal users cannot reach a public website. The firewall has a source NAT policy that translates Trust to Untrust. The administrator checks the traffic logs and sees that the session is being denied. What is the most likely cause?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Palo Alto Networks. “NETWORK-SECURITY-ANALYST” is a trademark of its owner, used for identification only.