Palo Alto Networks Systems Engineer Professional - Software Firewall 認定 PSE-SWFW-Pro-24 試験問題:
1. A company wants to make its flexible-license VM-Series firewall, which runs on ESXi, process higher throughput.
Which order of steps should be followed to minimize downtime?
A) 1. Increase the vCPU within the deployment profile.
2. Retrieve or fetch license keys on the VM-Series NGFW.
3. Power-off the VM and increase the vCPUs within the hypervisor.
4. Power-on the VM-Series NGFW.
5. Confirm the correct tier level and vCPU appear on the NGFW dashboard.
B) 1. Power-off the VM and increase the vCPUs within the hypervisor.
2. Power-on the VM-Series NGFW.
3. Retrieve or fetch license keys on the VM-Series NGFW.
4. Increase the vCPU within the deployment profile.
5. Confirm the correct tier level and vCPU appear on the NGFW dashboard.
C) 1. Power-off the VM and increase the vCPUs within the hypervisor.
2. Increase the vCPU within the deployment profile.
3. Retrieve or fetch license keys on the VM-Series NGFW.
4. Confirm the correct tier level and vCPU appear on the NGFW dashboard.
5. Power-on the VM-Series NGFW.
D) 1. Increase the vCPU within the deployment profile.
2. Retrieve or fetch license keys on the VM-Series NGFW.
3. Confirm the correct tier level and vCPU appear on the NGFW dashboard.
4. Power-off the VM and increase the vCPUs within the hypervisor.
5. Power-on the VM-Series NGFW.
2. Which three statements describe functionality of NGFW inline placement for Layer 2/3 implementation?
(Choose three.)
A) VM-Series next-generation firewalls do not support VMware vMotion or guest VM workloads.
B) A next-generation firewall VLAN interface can function as a Layer 3 interface.
C) VM-Series next-generation firewalls cannot be positioned between the physical datacenter network and guest VM workloads.
D) VMs on VMware ESXi hypervisors can be segregated from each other by the VM-Series NGFW using VLAN tags while preserving existing Layer 3 gateways.
E) VMs on VMware ESXi hypervisors can be segregated from one another on the network by the VM- Series NGFW by IP addressing and Layer 3 gateways.
3. A customer with multiple virtual private clouds (VPCs) in Amazon Web Services (AWS) protected by the cloud-native firewall experiences a cloud breach. As a result, malware spreads quickly across the VPCs, infecting several workloads.
Which minimum solution should be proposed to prevent similar incidents in the future?
A) Subscribe to Palo Alto Networks Advanced Threat Protection for the cloud-native firewall.
B) Implement a Cloud NGFW for each VPC.
C) Deploy a single Cloud NGFW.
D) Purchase a software credit pool for flexible Cloud NGFW deployment across the VPCs.
4. Which statement is valid for both VM-Series firewalls and Cloud NGFWs?
A) VM-Series firewalls and Cloud NGFWs can be deployed in a customer's private cloud.
B) VM-Series firewalls and Cloud NGFWs can be deployed in all public cloud vendor environments.
C) Updates for VM-Series firewalls and Cloud NGFWs are performed by the customer.
D) Panorama can manage VM-Series firewalls and Cloud NGFWs.
5. Which two deployment models are supported by Cloud NGFW for AWS? (Choose two.)
A) Distributed
B) Hierarchical
C) Linear
D) Centralized
質問と回答:
質問 # 1 正解: C | 質問 # 2 正解: B、D、E | 質問 # 3 正解: B | 質問 # 4 正解: D | 質問 # 5 正解: A、D |