Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Palo Alto Networks Exam PCNSA Topic 10 Question 56 Discussion

Actual exam question for Palo Alto Networks's Palo Alto Networks Certified Network Security Administrator exam
Question #: 56
Topic #: 10
[All Palo Alto Networks Certified Network Security Administrator Questions]

Review the Screenshot:

Given the network diagram, traffic must be permitted for SSH and MYSQL from the DMZ to the SERVER zones, crossing two firewalls. In addition, traffic should be permitted from the

SERVER zone to the DMZ on SSH only.

Which rule group enables the required traffic?

A)

B)

C)

D)

Show Suggested Answer Hide Answer

Contribute your Thoughts:

Hyun
6 months ago
Hold up, I'm not so sure. Option A also seems to have the required rules, and it's a bit more straightforward. Maybe we should double-check that one as well?
upvoted 0 times
...
Crissy
6 months ago
I agree, Option C looks like the best fit. The rule group in that option includes the necessary permissions for SSH and MySQL between the DMZ and Server zones, as well as the SSH permission from the Server zone to the DMZ.
upvoted 0 times
...
Vincent
6 months ago
Okay, let's take a closer look. The problem statement says we need to permit SSH and MySQL traffic from the DMZ to the Server zones, and SSH traffic from the Server zone to the DMZ. Based on that, I think Option C might be the correct answer.
upvoted 0 times
Margurite
6 months ago
Alright, Option C it is then. Let's go with that choice.
upvoted 0 times
...
Golda
6 months ago
Option D doesn't mention anything about allowing SSH traffic from Server zones to DMZ, so I still think Option C is the most suitable.
upvoted 0 times
...
Sang
6 months ago
I think Option D might also work, it allows SSH and MYSQL traffic from DMZ to Server zones as well.
upvoted 0 times
...
Mireya
6 months ago
That's true. Option C seems to be the best choice considering both requirements.
upvoted 0 times
...
Mary
6 months ago
Option A only allows SSH and MYSQL traffic from the DMZ to the Server zones, there is no mention of SSH traffic from Server zones to DMZ.
upvoted 0 times
...
Tijuana
6 months ago
But what about Option A? It also allows SSH and MYSQL traffic from DMZ to Server zones.
upvoted 0 times
...
Gerald
6 months ago
I agree, Option C looks like the correct choice.
upvoted 0 times
...
...
Dorian
6 months ago
Hmm, this is a tricky one. The question is asking about the rule group that enables the required traffic, but the network diagram and the problem statement don't give us a lot of details to work with. I'm a bit unsure about the correct answer.
upvoted 0 times
...

Save Cancel
az-700  pass4success  az-104  200-301  200-201  cissp  350-401  350-201  350-501  350-601  350-801  350-901  az-720  az-305  pl-300  

Warning: Cannot modify header information - headers already sent by (output started at /pass.php:70) in /pass.php on line 77