I think applying a Zone Protection profile might be the right answer, but I'm not entirely sure. We discussed it in class, but I can't remember all the details.
Applying App-ID security policy rules to block traffic from the untrust zone sounds like a good start, but I think the Zone Protection profile is the most comprehensive solution here.
I'm not totally confident on this one. I'll need to eliminate the options that don't seem relevant and then make an educated guess between the remaining choices.
Okay, I've got this. The answer is C - applying a Zone Protection profile on the ingress interface zone. That's the best way to defend against port scans from the internet.
Hmm, I'm a bit unsure about this one. I'll need to review my notes on Palo Alto firewall security policies and profiles to figure out the right approach.
This looks like a networking security question. I think the key is to identify the best way to protect against port scans from the internet. Let me think this through carefully.
Alesia
2 months agoVeta
2 months agoWilbert
2 months agoShizue
3 months agoSusana
3 months agoHelaine
3 months agoGlenna
3 months agoSueann
4 months agoDomonique
4 months agoLisbeth
4 months agoJaney
4 months agoBrunilda
4 months agoRosalia
5 months agoMelvin
5 months agoRory
9 months agoDonte
8 months agoHeike
8 months agoEttie
8 months agoKaran
9 months agoBarbra
9 months agoMelina
9 months agoGearldine
9 months agoEva
8 months agoMirta
9 months agoLouvenia
9 months agoLatrice
10 months agoEvette
10 months agoAlonso
9 months agoDeangelo
9 months agoCelestina
10 months agoBarbra
10 months agoOcie
10 months agoDenny
9 months agoTiffiny
9 months agoDaren
10 months ago