Module 3 Firewall Configuration Flashcards

1
Q

What is the running-config

A

Actual configuration controlling operation of the firewall

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is the candidate config

A

During startup, running-config copied to a candidate config. A candidate config are changes in progress but not active on the firewall.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is a commit?

A

Process of activating pending changes from the candidate to the running config. After commit is selected, the process of overwriting the candidate over the current running-config.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What are the firewall configuration actions?

A

revert, save, load, export and import.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What type of files are tranfered, .exe, ?

A

XML files

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Control and Data plane - where is the magic happening at boot?

A

Latest config on disk is loaded to candidate config in control plane. Auto commit copies candidate to running-config in control plane. Running config is both in control and data plane, and receives the new commit. **Any commit saves the changes to the running config in both data and control plane.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

How do you save a candidate config?

A

Save candidate config to save configuration to memory. IT IS IN VOLATILE MEMORY and will not be saved if you reboot the firewall.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

How else can you save a candidate config?

A

Save your current candidate config to an XML file on disk by clicking save configuration snapshot. This will save a reboot.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

How do I start over?

A

You can delete your candidate config, copy the running config to the candidate config by REVERT to RUNNING CONFIG

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Can you just do Admin Commits?

A

Yes, with PAN-OS 8.0 you can do only admin commits.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What happens in the Commit status window?

A

Warnings displayed do NOT prevent a commit. Errors however do.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

There is a small icon next to the commit button. It allows you to do what as an Admin?

A

Revert changes to previous saved config (per admin or all changes), or save changes in progress without commuting (per admin or all changes).

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What are the three sub tabs under commit, when you do a commit?

A

Change summary, preview changes, and validate commit. Preview compares the candidate to running-config. Change summary - lists the individual settings, and validate shows an error message if you were to commit.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What is the color scheme for preview changes?

A

Green, yellow and red. Green is what is added, yellow is what is modified and red are deletions.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What is the lock icon - how does it help an admin?

A

Commit and config lock: Commit blocks other administrators from committing the candidate config, and config lock block the administrators from changing the candidate config

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

End

A

End