Câu 1: NetSec-Analyst: Palo Alto Networks Certified Network Security Analyst
A company requires that all file transfers only over HTTP (tcp/80 and tcp/8080) to SaaS storage must be inspected for data exfiltration. Traffic to encrypted HTTPS SaaS storage cannot be inspected based on the company decryption restrictions. When using a security profile group, which Security policy configuration mee…
Nội dung câu hỏi
A company requires that all file transfers only over HTTP (tcp/80 and tcp/8080) to SaaS storage must be inspected for data exfiltration. Traffic to encrypted HTTPS SaaS storage cannot be inspected based on the company decryption restrictions. When using a security profile group, which Security policy configuration meets this requirement?
Các lựa chọn
Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.
- A. One with data filtering to inspect all HTTP traffic on the web-browsing application using application-default for the service. — đáp án hiện tại
- B. One with URL filtering and file blocking to block all file uploads to the URL category online-storage-and-backup, then set the service to tcp/80 and tcp/8080.
- C. One with data filtering and the service set to tcp/80 and tcp/8080, then verify block threshold is set to "1" to stop exfiltration.
- D. One with data filtering and an application filter that matches "file-sharing" applications, then set the service to tcp/80 and tcp/8080.
Cộng đồng
0 bình luận công khai. Tên thành viên được ẩn một phần.