Domain 1 - Device Management and Services Flashcards
What are two firewall management methods? (Choose two)
a. CLI
b. RDP
c. VPN
d. XML API
a. CLI
d. XML API
Which two devices are used to connect a computer to the firewall for management purposes? (Choose two)
a. Rollover cable
b. Serial cable
c. RJ-45 Ethernet cable
d. USB cable
b. Serial cable
c. RJ-45 Ethernet cable
What is the default IP address assigned to the MGT interfaces of a Palo Alto Networks firewall?
a. 192.168.1.1
b. 192.168.1.254
c. 10.0.0.1
d. 10.0.0.254
a. 192.168.1.1
What are the two default services that are available on the MGT interface? (Choose two)
a. HTTPS
b. SSH
c. HTTP
d. Telnet
a. HTTPS
b. SSH
Service routes may be used to forward which two traffic types out of a data port? (Choose two)
a. External dynamic lists
b. MineMeId
c. Skype
d. Palo Alto Networks Updates
a. External dynamic lists
d. Palo Alto Networks Updates
Which command must be performed on the firewall to activate any changes?
a. Commit
b. Save
c. Load
d. Import
a. Commit
Which command backs up configuration files to a remote network device?
a. Import
b. Load
c. Copy
d. Export
d. Export
The command load named configuration snapshot overwrites the current candidate configuration with which three items? (Choose three)
a. Custom-named candidate configuration snapshot (instead of the default snapshot)
b. Custom-named running configuration that you imported.
c. Snapshot.xml
d. Current running configuration (running-config.xml)
e. Palo Alto Networks Update
a. Custom-named candidate configuration snapshot (instead of the default snapshot)
d. Current running configuration (running-config.xml)
e. Palo Alto Networks Update
Which three actions should you complete before you upgrade to a newer version of software? (Choose three)
a. Review the release notes to determine any impact of upgrading to a newer version of the software.
b. Ensure that the firewall is connected to a reliable power source.
c. Export the device state.
d. Create an externally store a backup before you upgrade.
e. Put the firewall in maintenance mode.
a. Review the release notes to determine any impact of upgrading to a newer version of the software.
b. Ensure that the firewall is connected to a reliable power source.
d. Create an externally store a backup before you upgrade.
Which two default zones are included with the PAN-OS software? (Choose two)
a. Interzone
b. Extrazone
c. Intrazone
d. Extranet
a. Interzone
c. Intrazone
Which two statements about interfaces are correct? (Choose two)
a. Interfaces must be configured before you can create a zone.
b. Interfaces do not have to be configured before you can create a zone.
c. An interface can belong to only one zone.
d. An interface can belong to multiple zones.
b. Interfaces do not have to be configured before you can create a zone.
c. An interface can belong to only one zone.
Which two interfaces types can belong in a Layer 3 zone? (Choose two)
a. Loopback
b. Tap
c. Tunnel
d. Virtual Wire
a. Loopback
c. Tunnel
What can be used to control traffic through zones?
a. Access lists
b. Security policy lists
c. Security policy rules
d. Access policy rules
c. Security policy rules
For inbound inspection, which two actions can be performed with Tap interface? (Choose two)
a. Encrypt traffic
b. Decrypt traffic
c. Allow or block traffic
d. Log traffic
b. Decrypt traffic
d. Log traffic
Which two actions can be performed with a Virtual Wire interface? (Choose two)
a. NAT
b. Route
c. Switch
d. Log Traffic
a. NAT
d. Log Traffic
Which two actions can be performed with a Layer 3 interface? (Choose two)
a. NAT
b. Route
c. Switch
d. Create a virtual wire object
a. NAT
b. Route
Layer 3 interfaces support which two items? (Choose two)
a. NAT
b. IPv6
c. Switching
d. Spanning Tree
a. NAT
b. IPv6
Layer 3 interfaces support which three advanced settings? (Choose three)
a. IPv4 addressing
b. IPv6 addressing
c. NDP configuration
d. Link speed configuration
e. Link duplex configuration
c. NDP configuration
d. Link speed configuration
e. Link duplex configuration
Layer 2 interfaces support which three items? (Choose three)
a. Spanning tree blocking
b. Traffic examination
c. Forwarding of spanning tree BPDUs
d. Traffic shaping via QoS
e. Firewall management
f. Routing
b. Traffic examination
c. Forwarding of spanning tree BPDUs
d. Traffic shaping via QoS
Which two interface types support subinterfaces? (Choose two)
a. Virtual Wire
b. Layer 2
c. Loopback
d. Tunnel
a. Virtual Wire
b. Layer 2
Which two statements are true regarding Layer 3 interfaces? (Choose two)
a. You can configure a Layer 3 interface with one or more IP addresses as a DHCP client.
b. A Layer3 interface can only have one DHCP assigned address.
c. You can assign only one IPv4 Address to the same interface.
d. You can enable an interface to send IPv4 router advertisements by selecting the Enable Router Advertisement check box on the Router Advertisement tab.
e. You can apply an Interface Management profile to the interface.
b. A Layer3 interface can only have one DHCP assigned address.
e. You can apply an Interface Management profile to the interface.
Which statement is true regarding aggregate Ethernet interfaces?
a. Members of an aggregate interface group can be of different media types.
b. An aggregate interface group can be set to a type of tap.
c. Ethernet interfaces that are members of an aggregate interface group must have the same transmission speeds.
d. A Layer 3 aggregate interface group can have more than one IP assigned to it.
e. Members of aggregate Ethernet interfaces can be assigned to different virtual routes.
d. A Layer 3 aggregate interface group can have more than one IP assigned to it.
What is the default administrative distance of a static route within the PAN-OS software?
a. 1
b. 5
c. 10
d. 100
c. 10
Which two dynamic routing protocols are available in the PAN-OS software?
a. RIP1
b. RIPv2
c. OSPFv3
d. EIGRP
b. RIPv2
c. OSPFv3
Which value is used to distinguish the preference of routing protocols?
a. Metric
b. Weight
c. Distance
d. Cost
e. Administrative distance
e. Administrative distance
Which value is used to distinguish the best route within the same routing protocol?
a. Metric
b. Weight
c. Distance
d. Cost
e. Administrative distance
a. Metric
In path monitoring, what is used to monitor remote network devices?
a. Ping
b. SSL
c. HTTP
d. HTTPS
e. link state
A. Ping