PCNSA Exam QuestionsBrowse all questions from this exam

PCNSA Exam - Question 125


An administrator would like to see the traffic that matches the interzone-default rule in the traffic logs.

What is the correct process to enable this logging?

Show Answer
Correct Answer: AB

To enable logging for the interzone-default rule, you must first select the rule and click Override. This allows you to modify the read-only default rule. On the Actions tab, select Log at Session End and click OK to ensure the traffic is logged.

Discussion

17 comments
Sign in to comment
AG15808Option: A
Jan 18, 2022

A is the correct answer. You must select "Override" and A is the only answer that meets this requirement.

H3kermanOption: A
Nov 25, 2021

The default rules are predefined rules that are part of the predefined configuration and are read-only by default; you can override them and change a limited number of settings, including the tags, action (allow or deny), log settings, and security profiles. The names for the two default rules are intrazone-default and interzone-default.

error_909Option: A
Mar 13, 2022

A. Select the interzone-default rule and click Override; on the Actions tab, select Log at Session End and click OK.

TheMaster01Option: A
Sep 25, 2022

Default rules are not modifiable unless you over ride them

LuisRG17Option: A
Dec 16, 2021

A is correct

LordScorpiusOption: A
Mar 29, 2022

Default rules and profiles require Override and, of course, best practice, log at end.

bnsrikarOption: A
May 10, 2022

A is correct answer. You need to override. Default rules cannot be modified

all_nicknames_are_takenOption: A
Mar 5, 2023

A: https://docs.paloaltonetworks.com/best-practices/9-1/data-center-best-practices/data-center-best-practice-security-policy/log-and-monitor-data-center-traffic/log-data-center-traffic-that-matches-no-interzone-rules

mr_flubberOption: A
May 4, 2023

It's A, override is necessary.

kewokil120Option: A
May 19, 2022

A is correct answer. You need to override.

z8d21oczdOption: A
Jul 19, 2022

A it is. Tested and verified

Spaz_6Option: A
Dec 19, 2022

The default policy can only be modified with override option.

Chance101Option: A
Dec 31, 2022

tis A boom shacka lacka

BeforeScopeOption: A
Jan 13, 2023

Override

AdilonOption: A
Apr 21, 2023

override for sure

cjaceOption: A
May 23, 2024

The correct answer is A. Select the interzone-default rule and click Override; on the Actions tab, select Log at Session End and click OK. In Palo Alto PAN-OS, the interzone-default rule is a pre-defined rule that cannot be edited directly. However, you can override this rule to change its actions.

PostlalondeOption: A
Jul 14, 2024

It should be A as you need to click "Override" First to edit a default rule.