pcnsa question 311 discussion

View all Palo Alto Networks Certified Network Security Administrator here
back to palo-alto-networks forum

Question 311

An administrator needs to create a Security policy rule that matches DNS traffic within the LAN zone, and also needs to match DNS traffic within the DMZ zone.
The administrator does not want to allow traffic between the DMZ and LAN zones.
Which Security policy rule type should they use?

  • A. interzone
  • B. intrazone
  • C. default
  • D. universal
Answer:

d

User Votes:
A 2 votes
50%
B 3 votes
50%
C
50%
D 2 votes
50%
Discussions
0 / 1000
kenonaruyi
6 months, 1 week ago

In Palo Alto Networks firewalls, "within" or "intrazone" refers to traffic within a zone, while "between" or "interzone" refers to traffic between zones.