pcnsa question 137 discussion

View all Palo Alto Networks Certified Network Security Administrator here
back to palo-alto-networks forum

Question 137

Which three interface deployment methods can be used to block traffic flowing through the Palo Alto Networks firewall? (Choose three.)

  • A. Tap
  • B. HA
  • C. Layer 3
  • D. Layer 2
  • E. Virtual Wire
Answer:

cde

User Votes:
A
50%
B
50%
C 1 votes
50%
D 1 votes
50%
E 1 votes
50%
Discussions
0 / 1000
sara123
1 month, 3 weeks ago

C. Layer 3: In Layer 3 mode, the firewall acts as a router and can enforce security policies to block or allow traffic based on those policies. This mode can effectively block traffic based on configured rules.
D. Layer 2: In Layer 2 mode, the firewall operates at the data link layer. It can also enforce security policies and block traffic while still allowing devices to communicate on the same subnet.
E. Virtual Wire: This mode allows the firewall to sit transparently between two network segments. It can inspect and block traffic based on security policies without requiring IP addressing.
Summary: