Question 1

An NGFW engineer is configuring multiple Panorama-managed firewalls to start sending all logs to Strata Logging Service. The Strata Logging Service instance has been provisioned, the required device certificates have been installed, and Panorama and the firewalls have been successfully onboarded to Strata Logging Service.
Which configuration task must be performed to start sending the logs to Strata Logging Service and continue forwarding them to the Panorama log collectors as well?
  • Question 2

    Which networking technology can be configured on Layer 3 interfaces but not on Layer 2 interfaces?
  • Question 3

    A security administrator is hardening the ingress zone of an NGFW. The goal is to prevent attacks that rely on malformed IP address packets with incorrect header lengths or invalid TCP packets that have both the SYN and FIN flags set. Within which section of a Zone Protection profile should these protections be configured?
  • Question 4

    What must be configured before a firewall administrator can define policy rules based on users and groups?
  • Question 5

    Which statement applies to the relationship between Panorama-pushed Security policy and local firewall Security policy?