Spring Sale Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: buysanta

Exact2Pass Menu

Palo Alto Networks System Engineer Professional - Strata Data Center

Last Update 20 hours ago Total Questions : 60

The Palo Alto Networks System Engineer Professional - Strata Data Center content is now fully updated, with all current exam questions added 20 hours ago. Deciding to include PSE-StrataDC practice exam questions in your study plan goes far beyond basic test preparation.

You'll find that our PSE-StrataDC exam questions frequently feature detailed scenarios and practical problem-solving exercises that directly mirror industry challenges. Engaging with these PSE-StrataDC sample sets allows you to effectively manage your time and pace yourself, giving you the ability to finish any Palo Alto Networks System Engineer Professional - Strata Data Center practice test comfortably within the allotted time.

Question # 11

In the following scenario, Route-based firewall redundancy is deployed in a Data Center, which statement is true?

A.

IP addresses of Firewall interfaces will move between devices when a firewall fails

B.

The 2 firewalls are in Active-Standby HA status

C.

Firewalls use dynamic routing protocols to determine the best path

D.

Floating IP addresses are necessary for HA configuration

Question # 12

Which VM-Series can be deployed on Amazon Web Services (AWS)?

A.

Can deploy any VM-Series except the VM-50

B.

Only VM-100, VM-200 and VM-300

C.

Any VM-Series model

D.

Any VM-Series model except the VM-700

Question # 13

A customer in a non-NSX VMware environment wants to add a VM-Series firewall and to partition an existing group of VMs in the same subnet into two groups. One group needs no additional security, but the second group requires substantially more security.

How can this partition be accomplished without editing the IP addresses or the default gateways of any of the guest VMs?

A.

Create a new virtual switch and use the VM-Series firewall to separate virtual switches using Virtual Wire mode Then move the guests that require more security into the new virtual switch

B.

Edit the IP address of all of the affected VMs

C.

Send the VLAN out of the virtual environment into a hardware Palo Alto Networks firewall in Layer 3 mode. Use the same IP address as the old default gateway, then delete the old default gateway

D.

Create a Layer 3 interface in the same subnet as the VMs and configure proxy ARP

Question # 14

Which three steps are valid for deploying a VM-Series firewall on NSX? (Choose three )

A.

create steering policies to redirect traffic to the VM-Series firewall

B.

create a vDC and a vApp that includes the VM-Series firewall

C.

register the VM-Series firewall as a service

D.

obtain the AMI from market place

E.

enable communication between Panorama and the NSX Manager

Question # 15

How are workloads protected in Prisma Cloud Enterprise and Prisma Cloud Compute''

A.

Prisma Cloud enterprise and Prisma Cloud Computes provides identical workload capabilities.

B.

Prisma Cloud Enterprise provides workload protection through integration with the NGFW.

C.

Prisma Cloud Compute offers agentless protection for all workload types.

D.

Prisma Cloud Enterprise does not offer workload protection because it is a SaaS based product and agentless

Question # 16

Which interface mode does an administrator use to generate the statdump file that can be converted into an SLR? Assume that the administrator wants to make the evaluation as unintrusive as possible

A.

Virtual Wire

B.

TAP

C.

Layer 2

D.

Layer 3

Question # 17

Which type of cloud service can be protected by an inline firewall controlled by the organization rather than by the cloud provider?

A.

SaaS

B.

laaS

C.

PaaS

D.

FaaS

Question # 18

What is the primary operational benefit of a managed Kubernetes service from a Cloud Service Provider?

A.

reduced complexity, alleviates the need to run masters

B.

less expensive, typically offered at a lower cost than running containers on a VM

C.

more powerful, offers more configuration options than running your own distribution of Kubernetes

D.

increased visibility, provides more insight into application usage than what is natively available

Go to page: