Exam PCNSA All QuestionsBrowse all questions from this exam
Question 164

Which Security policy match condition would an administrator use to block traffic from IP addresses on the Palo Alto Networks EDL of Known Malicious IP

Addresses list?

    Correct Answer: B

    To block traffic from IP addresses on the Palo Alto Networks EDL of Known Malicious IP Addresses list, an administrator would use the 'source address' match condition. This is because the source address refers to where the traffic originates from, making it possible to block any incoming traffic from those known malicious IP addresses.

Discussion
TheMaster01Option: B

The question is regarding how to block traffic COMING from an IP adrares regardless of the zone

HyayOption: B

B, it identifies adresses. https://docs.paloaltonetworks.com/pan-os/9-0/pan-os-admin/policy/use-an-external-dynamic-list-in-policy/external-dynamic-list

afm_Option: B

'from'

Alex48694Option: B

It's B: source address

BanchanOption: B

B.I think so too.Its nesesary source ip address.