Go Back on ACE Exam
Available in 1, 3, 6 and 12 Months Free Updates Plans
PDF: $15 $60

Test Engine: $20 $80

PDF + Engine: $25 $99

ACE Practice Test


Page 2 out of 25 Pages

When employing the Brightcloud URL filtering database on the Palo Alto Networks
firewalls, the order of checking within a profile is:


A.

Block List, Allow List, Custom Categories, Cache Files, Predefined Categories, Dynamic
URL Filtering


B.

Block List, Allow List, Cache Files, Custom Categories, Predefined Categories, Dynamic
URL Filtering


C.

Dynamic URL Filtering, Block List, Allow List, Cache Files, Custom Categories,
Predefined Categories


D.

None of the above





A.
  

Block List, Allow List, Custom Categories, Cache Files, Predefined Categories, Dynamic
URL Filtering



Which of the following options may be enabled to reduce system overhead when using
Content ID?


A.

STP


B.

VRRP


C.

RSTP


D.

DSRI





D.
  

DSRI



When an interface is in Tap mode and a policy action is set to block, the interface will send
a TCP reset.


A.

True


B.

False





B.
  

False



When Network Address Translation has been performed on traffic, Destination Zones in
Security rules should be based on:


A.

Post-NAT addresses


B.

The same zones used in the NAT rules


C.

Pre-NAT addresses


D.

None of the above





A.
  

Post-NAT addresses



WildFire Analysis Reports are available for the following Operating Systems (select all that
apply)


A.

Windows XP


B.

Windows 7


C.

Windows 8


D.

Mac OS-X





A.
  

Windows XP



B.
  

Windows 7



C.
  

Windows 8




Page 2 out of 25 Pages
Previous