Weekend Special Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: scxmas70

PSE-PrismaCloud Exam Dumps - PSE Palo Alto Networks System Engineer Professional - Prisma Cloud

Go to page:
Question # 25

What are two ways to enable interface swap when deploying a VM-Series NGFW in Google Cloud Platform? (Choose two.)

A.

run the PAN-OS CLI command: set system mgmt-interface-swap enable yes

B.

run the PAN-OS CLI command: set system mgmt-interface-swap setting enable yes

C.

create a bootstrap file that includes the mgmt-interface-swap command

D.

in the Google Cloud Console Metadata Field, enter a key-value pair where mgmt-interface-swap is the key and enable is the value

Full Access
Question # 26

How is license utilization displayed within the Prisma Public Cloud interface?

A.

navigate to the CLI and run show license command

B.

navigate to General > Licensing

C.

navigate to Dashboard > Asset Inventory

D.

navigate to Settings (via the gear icon) > Licensing

Full Access
Question # 27

Which regulatory framework in Prisma Cloud measures compliance with European Union (EU) data privacy regulations in Amazon Web services (AWS) workloads?

A.

General Data Protection Regulation (GDPR)

B.

International Organization for Standardization (ISO) 27001

C.

Payment Card Industry (PCI) Data Security Standard (DSS) 3.0

D.

EU Data Protection Directive 95/46/EC

Full Access
Question # 28

When protecting against attempts to exploit client-side and server-side vulnerabilities, what is the Palo Alto Networks best practice when using NGFW Vulnerability Protection Profiles?

A.

Use the default Vulnerability Protection Profile to protect clients from all known critical, high, and medium-severity threats

B.

Clone the predefined Strict Profile, with packet capture settings disabled

C.

Use the default Vulnerability Protection Profile to protect servers from all known critical, high, and medium-severity threats

D.

Clone the predefined Strict Profile, with packet capture settings enabled

Full Access
Question # 29

Which Resource Query Language (RQL) query returns a list of all TERMINATED Google Compute Engine (GCE) instances?

A.

Config from.cloud.resource where api.name = „gcloud-compute-instance-list" and json.rule = status == TERMINATED

B.

Config from.cloud.resource where api.name = „gcloud-compute-instance-list" and json.rule = TERMINATED

C.

Config from.cloud.resource where api.name = „gcloud-compute-instance-list" and json.rule = status contains TERMINATED

D.

Config from.cloud.resource where api.name = „gcloud-compute-instance-list" and json.rule = is TERMINATED

Full Access
Question # 30

Which two actions are appropriate when configuring Prisma Cloud to scan a registry? (Choose two.)

A.

Allow Prisma Cloud to automatically optimize registry scans with version pattern matching.

B.

Allow Prisma Cloud to automatically distribute the scan job across a pool of available Defenders.

C.

Explicitly specify the Defender to do the job.

D.

Explicitly specify the predefined version pattern-matching algorithm.

Full Access
Question # 31

Which three methods can provide application-level security for a web server instance on Amazon Web Services? (Choose three.)

A.

Traps

B.

Prisma SaaS

C.

Amazon Web Services WAF

D.

VM-Series firewalls

E.

Security Groups

Full Access
Question # 32

An administrator deploys a VM-Series firewall into Amazon Web Services. Which attribute must be disabled on the data-plane elastic network interface for the instance to handle traffic that is not destined to its own IP address?

A.

security group

B.

tags

C.

elastic ip address

D.

source/destination checking

Full Access
Go to page: