
Palo Alto NetworksCertified Next-Generation Firewall Engineer
Domain 1Objective 6
1.6 Configure Tunnels NEXT-GENERATION-FIREWALL-ENGINEER Practice Questions (Page 2)
Part of the PAN-OS Networking Configuration domain, which accounts for 40% of the NEXT-GENERATION-FIREWALL-ENGINEER exam.
24questions here
5free pages
8concepts
40%of the exam
Questions 6–10
- 6
After configuring a GRE tunnel interface on a Palo Alto firewall, what additional configuration is required to send traffic through the tunnel?
Select an answer first - 7
What is the primary purpose of a GRE tunnel?
Select an answer first - 8
Which two protocols are the core components of an IPSec tunnel, and what are their primary roles?
Select an answer first - 9
A security team is planning to deploy new IPSec tunnels and wants to protect against future quantum computer attacks. They require that the key exchange mechanism be resistant to quantum cryptanalysis. Which PAN-OS feature should they use?
Select an answer first - 10
What is the purpose of the tunnel interface in an IPSec configuration on a Palo Alto firewall?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Palo Alto Networks. “NEXT-GENERATION-FIREWALL-ENGINEER” is a trademark of its owner, used for identification only.