
Palo Alto NetworksCertified Network Security Architect
Domain 3Objective 2
3.2 Architect Strata Cloud Manager (SCM), Strata Logging Service, and Cloud Identity Engine NETWORK-SECURITY-ARCHITECT Practice Questions (Page 4)
Part of the Centralized Management and IAM domain, which accounts for 13% of the NETWORK-SECURITY-ARCHITECT exam.
23questions here
5free pages
5concepts
13%of the exam
Questions 16–20
- 16
An enterprise is migrating from Panorama to SCM. They have a complex environment with multiple device groups and templates. Their change management process requires that any change to a device group or template be approved before it is pushed to firewalls. What should the architect configure in SCM to meet this requirement?
Select an answer first - 17
What is the primary function of the Strata Logging Service (SLS) when integrated with Strata Cloud Manager?
Select an answer first - 18
Which method is used in Strata Cloud Manager to control administrative access to the management platform?
Select an answer first - 19
A security architect is designing a solution where SCM, SLS, and CIE work together. The goal is to provide centralized management, centralized logging, and user-based policy enforcement. Which statement correctly describes how these services interoperate?
Select an answer first - 20
An organization is integrating Strata Logging Service (SLS) with SCM. They need to ensure that logs from all managed firewalls are forwarded to SLS and that log retention meets a 1-year compliance requirement. What is the most efficient way to configure this?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Palo Alto Networks. “NETWORK-SECURITY-ARCHITECT” is a trademark of its owner, used for identification only.