
Palo Alto NetworksCertified Network Security Architect
Domain 1Objective 3
1.3 Differentiate Access to Specific Applications NETWORK-SECURITY-ARCHITECT Practice Questions (Page 3)
Part of the Zero Trust Enterprise domain, which accounts for 8% of the NETWORK-SECURITY-ARCHITECT exam.
15questions here
3free pages
5concepts
8%of the exam
Questions 11–15
- 11
What is the core principle of Zero Trust that applies to application access?
Select an answer first - 12
In a Zero Trust architecture, how should access to a specific application be treated?
Select an answer first - 13
A global company has a policy that access to a financial application is allowed only for the 'Finance' group. However, the company also has a 'Finance-Contractors' group that needs temporary access for a project. The firewall is integrated with Active Directory. The security architect wants to avoid creating a separate rule for the contractors. What is the most efficient way to grant the contractors access while maintaining the policy?
Select an answer first - 14
Which of the following is an example of a contextual factor that can influence access to an application?
Select an answer first - 15
A network administrator notices that a policy rule intended to allow access to a specific SaaS application is also matching traffic to other web applications. The rule uses a destination IP address and port 443. The administrator wants to ensure the policy only applies to the intended application. What should the administrator do?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to NETWORK-SECURITY-ARCHITECT
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Palo Alto Networks. “NETWORK-SECURITY-ARCHITECT” is a trademark of its owner, used for identification only.