PCNSE Exam QuestionsBrowse all questions from this exam

PCNSE Exam - Question 2


Refer to the exhibit.

An organization has Palo Alto Networks NGFWs that send logs to remote monitoring and security management platforms. The network team has reported excessive traffic on the corporate WAN.

How could the Palo Alto Networks NGFW administrator reduce WAN traffic while maintaining support for all the existing monitoring/security platforms?

Show Answer
Correct Answer: A

In the given scenario, the network team has reported excessive traffic on the corporate WAN due to the logs being sent from several remote firewalls to multiple monitoring and security management platforms. The best solution to reduce WAN traffic, while still supporting all existing platforms, is to centralize the log forwarding process. By forwarding logs from firewalls only to Panorama and then having Panorama forward logs to the other external services, you can significantly reduce the number of log streams traversing the WAN. This centralized approach minimizes the bandwidth consumption on the WAN link, as Panorama acts as an intermediate log aggregator and distributor. Additionally, it simplifies the log collection and forwarding architecture, leading to more efficient network resource usage and potentially improved overall system performance.

Discussion

17 comments
Sign in to comment
quappayacre
Jun 11, 2024

Valid Question tinyurl.com/2y4nowqa

r4nq7b6l7f
Jul 11, 2024

Gratz man! What a coincidence that I was just passed from here too

AdamabdiOption: A
Apr 5, 2021

A is the correct https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClKFCA0

niklausOption: A
May 30, 2022

Correct Answer: A Link: https://docs.paloaltonetworks.com/panorama/10-2/panorama-admin/panorama-overview/centralized-logging-and-reporting/log-forwarding-options PAN-OS: 10.2 Time of answer: May 30, 2022

tururu1496Option: A
Mar 6, 2022

Answer: A

king04Option: A
Mar 6, 2022

A is correct

shinichi_88Option: A
Jan 19, 2022

A, 100%, look at the 2nd picture https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClKFCA0

dehaOption: A
Jan 24, 2022

A is correct

NNgiggsOption: A
Feb 7, 2022

the correct answer is A. forwarding from Panorama reduces the number of log streams and cut down extra negotiation traffic per stream etc.

Abu_MuhammadOption: A
Apr 8, 2022

It is A

rquintanaOption: A
May 31, 2022

After reading the KB, I vote for option A.

MekoOption: A
Jun 11, 2022

Firewall logs -> Panorama -> Monitoring system

anbohmOption: A
Jun 21, 2022

Need to be A

MyKasalaOption: A
Jul 11, 2022

A is correct

TAKUM1yOption: A
Oct 4, 2022

https://docs.paloaltonetworks.com/panorama/10-2/panorama-admin/panorama-overview/centralized-logging-and-reporting/log-forwarding-options

lol12Option: A
Oct 19, 2022

https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClKFCA0 https://docs.paloaltonetworks.com/panorama/10-0/panorama-admin/panorama-overview/centralized-logging-and-reporting/log-forwarding-options.html

MarshpillowzOption: A
Jan 23, 2024

Answer A makes most sense to me.

scanossaOption: A
Jan 24, 2024

Based on documentation correct answer is A: Forward logs from firewalls to Panorama and from Panorama to external services—This configuration is best for deployments in which the connections between firewalls and external services have insufficient bandwidth to sustain the logging rate, which is often the case when the connections are remote. This configuration improves firewall performance by offloading some processing to Panorama. https://docs.paloaltonetworks.com/panorama/10-2/panorama-admin/panorama-overview/centralized-logging-and-reporting/log-forwarding-options