Exam PCNSA All QuestionsBrowse all questions from this exam
Question 399

Which action should be taken to identify threats that have been detected by using inline cloud analysis?

    Correct Answer: D

    To identify threats detected using inline cloud analysis, you should filter Threat logs by Threat Category. This method allows for easy identification of specific threats that have been analyzed and detected by the inline cloud analysis mechanism.

Discussion
cjaceOption: A

A. Filter Threat logs by Type12 Inline cloud analysis is an Advanced Threat Prevention feature that enables the detection of advanced, highly-evasive zero-day command-and-control (C2) threats and command injection and SQL injection vulnerabilities in real-time by querying the Advanced Threat Prevention cloud service12. The threats detected by inline cloud analysis are logged in the Threat logs12. By filtering these logs by Type, you can identify the threats that have been detected

fujitestOption: D

D https://docs.paloaltonetworks.com/pan-os/11-0/pan-os-new-features/content-inspection-features/vuln-protection-inline-cloud-analysis "Select MonitorLogsThreat and filter by ( category-of-threatid eq inline-cloud-exploit ) to view logs that have been analyzed using the inline cloud analysis mechanism of Advanced Threat Prevention."