Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
Palo Alto Networks logo

Palo Alto NetworksCertified Next-Generation Firewall Engineer

Domain 2Objective 7

2.7 Configure Web Proxy on PAN-OS NEXT-GENERATION-FIREWALL-ENGINEER Practice Questions (Page 4)

Part of the PAN-OS Device Setting Configuration domain, which accounts for 40% of the NEXT-GENERATION-FIREWALL-ENGINEER exam.

26questions here
6free pages
7concepts
40%of the exam

Questions 16–20

  1. 16application · medium

    A security administrator has configured a web proxy on PAN-OS to forward traffic to an external proxy server. They want to ensure that all web traffic from the internal network is inspected by the firewall's security policies before being sent to the proxy. What must be verified in the security policy configuration?

    Select an answer first
  2. 17application · medium

    A network administrator configures a web proxy on PAN-OS with an IP address of 192.168.1.10 and port 3128. The proxy requires authentication. After configuration, users can browse the internet, but the firewall logs show that the proxy authentication is failing. What should the administrator verify first?

    Select an answer first
  3. 18expert · hard

    An organization uses a PAC file on PAN-OS to route traffic. The PAC file is hosted on a web server that is only accessible from the management network. After a network change, the PAC file becomes unreachable from the firewall's management interface. What is the impact on web traffic?

    Select an answer first
  4. 19foundation · easy

    In PAN-OS, what happens to web traffic when a web proxy is configured?

    Select an answer first
  5. 20foundation · easy

    What is the purpose of a PAC file in web proxy configuration on PAN-OS?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Palo Alto Networks. “NEXT-GENERATION-FIREWALL-ENGINEER” is a trademark of its owner, used for identification only.