PSE Strata Exam QuestionsBrowse all questions from this exam

PSE Strata Exam - Question 52


What two types of traffic should you exclude from a decryption policy? (Choose two.)

Show Answer
Correct Answer: AC

Two types of traffic that should be excluded from a decryption policy are business and regulatory traffic, as well as mutual authentication traffic. Business and regulatory traffic should be excluded to comply with legal and organizational rules. Mutual authentication traffic should be excluded because it involves both parties verifying each other's credentials, which can break if the traffic is decrypted.

Discussion

8 comments
Sign in to comment
mushi4kaOptions: AC
Oct 1, 2022

https://docs.paloaltonetworks.com/pan-os/9-1/pan-os-admin/decryption/decryption-exclusions

faam13Options: AC
Apr 19, 2023

Answer A and C

LostatSeaOptions: AC
Jul 22, 2023

Traffic that breaks decryption for technical reasons, such as using a pinned certificate, an incomplete certificate chain, unsupported ciphers, or mutual authentication Traffic that you choose not to decrypt because of business, regulatory, personal, or other reasons

ArangoTopicsOptions: AC
Jul 12, 2023

Agree with mushi4ka, refer to the link

zerox7305Options: AC
Jul 30, 2023

Agree with A,C

ck19Options: AC
May 13, 2024

AC are correct

redmldadOptions: AB
Jun 19, 2024

AB - from the refferenced link

redmldadOptions: AC
Jun 19, 2024

AC - from the refferenced link