
Palo Alto NetworksCertified Network Security Analyst
Domain 2Objective 1
2.1 Create and Apply Security Policies (i.e., App-ID, User-ID, Content-ID) NETWORK-SECURITY-ANALYST Practice Questions (Page 2)
Part of the Policy Creation and Application domain, which accounts for 30% of the NETWORK-SECURITY-ANALYST exam.
14questions here
3free pages
6concepts
30%of the exam
Questions 6–10
- 6
After creating a new security policy rule, what is the best way to verify that it is working as intended without disrupting legitimate traffic?
Select an answer first - 7
In Palo Alto Networks, security policies are evaluated in which order?
Select an answer first - 8
A security administrator wants to block access to known malware-hosting websites and also prevent intrusion attempts. Which Palo Alto Networks technology provides these capabilities within a security policy?
Select an answer first - 9
When creating a security policy rule, which of the following is a required match criterion that must be specified?
Select an answer first - 10
A company has a policy that allows all users to access the internet, but they want to block access to social media for users in the 'Marketing' group. User-ID is integrated with Active Directory. The administrator creates a rule that blocks social media for the 'Marketing' group and places it above the allow rule. However, some Marketing users can still access social media. What is the most likely reason?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Palo Alto Networks. “NETWORK-SECURITY-ANALYST” is a trademark of its owner, used for identification only.