Exam PCNSE All QuestionsBrowse all questions from this exam
Question 566

An engineer is monitoring an active/active high availability (HA) firewall pair.

Which HA firewall state describes the firewall that is currently processing traffic?

    Correct Answer: D

    In an active/active high availability (HA) configuration, the state that describes the firewall currently processing traffic is Active-primary. In this state, the firewall can connect to User-ID agents, run DHCP server and relay, and match NAT and PBF rules with its device ID. This state allows the firewall to own and set up sessions, indicating it is actively processing traffic.

Discussion
nebulanerdOption: D

Active/Active is Active-primary / Active-secondary https://docs.paloaltonetworks.com/pan-os/10-1/pan-os-admin/high-availability/ha-concepts/ha-modes https://docs.paloaltonetworks.com/pan-os/10-1/pan-os-admin/high-availability/ha-firewall-states

MHy2kOption: D

D is correct. https://docs.paloaltonetworks.com/pan-os/9-1/pan-os-admin/high-availability/ha-firewall-states

joquin0020Option: D

D IS CORRECT! https://docs.paloaltonetworks.com/pan-os/9-1/pan-os-admin/high-availability/ha-firewall-states

techplusOption: D

There is no Active in an Active/Active configuration, this is only seen in an Active/Passive configuration. --------------- Active A/P State of the active firewall in an active/passive configuration. -------- For an Active passing traffic is Active/Primary ------------ Active-Primary A/A In an active/active configuration, state of the firewall that connects to User-ID agents, runs DHCP server and DHCP relay, and matches NAT and PBF rules with the Device ID of the active-primary firewall. A firewall in this state can own sessions and set up sessions. ------

MicutzuOption: D

https://docs.paloaltonetworks.com/pan-os/11-1/pan-os-admin/high-availability/ha-firewall-states

MarshpillowzOption: D

D is correct

XuziOption: D

Active-Primary A/A In an active/active configuration, state of the firewall that connects to User-ID agents, runs DHCP server and DHCP relay, and matches NAT and PBF rules with the Device ID of the active-primary firewall. A firewall in this state can own sessions and set up sessions.

MiczolaOption: D

D is correct.

piipoOption: D

active/active high availability