Which Security Profile mitigates attacks based on packet count?
Which Security Profile mitigates attacks based on packet count?
A zone protection profile is designed to protect the network and mitigate different types of DoS (Denial of Service) attacks which are based on packet count. This type of profile allows you to set thresholds for various types of traffic, preventing floods of packets that could overwhelm network resources. Hence, it effectively mitigates attacks based on packet count.
DoS Zone Protection
Answer A seems to be the right answer however Zone Protection it is NOT a Security Profile, however DoS protection it is a Security Profile. Zone Protection profile it is a Network Profile.
Out of the choices A is the obvious answer however the question is "borked" Objects>Security profiles>Dos Protection Network>Network profiles>Zone protection
is dos/zone protection stuff in the new PCNSA exam ? I don't see this in the 2022 blue print or the study guide
Off the web: "DoS Protection adds another layer of defense against attacks on individual devices, which can succeed if the Zone Protection profile thresholds are above the CPS rate of the attack on the device." Yes it is a vulnerability but, those are handled in this type by a Zone Profile on Palo.
Correct answer is A PALO ALTO NETWORKS: PCNSA Study Guide 159