PCCSA – QUIZ QUESTIONS AND
ANSWERS
Intra-VM traffic is also known as which type of traffic? - Correct Answers -east-west
A network filter that allows administrators to restrict access to external content from
within a network is known as which of the following? - Correct Answers -Content
Which option describes the strength of Palo Alto Networks Traps operation? - Correct
Answers -Blocks core exploit and malware techniques
Which technique is NOT used to break the command-and-control (C&C) phase of the
Cyber-Attack Lifecycle? - Correct Answers -Vulnerability and patch management
True or False: The commonly used name for an intermediate area between a trusted
network and an untrusted network is the DMZ. - Correct Answers -True
What does the Palo Alto Networks Large Scale VPN feature use to authenticate
network devices? - Correct Answers -Certificates
A scanner that listens in on a network and identifies vulnerable versions of both server
and client software is known as which of the following? - Correct Answers -Passive
Vulnerability Scanner
Which three options are threat intelligence sources for AutoFocus?
A. WildFire
B. URL Filtering with PAN-DB Service
C. Unit 42 Threat Intelligence and Research Team
D. Third-Party Intrusion Prevention Systems - Correct Answers -A,B,C
True or False: The Domain Name System (DNS) is a function of the World Wide Web
that converts a URL (Uniform Resource Locator) like www.course.com into the IP
address of the Web server host. - Correct Answers -True
Which application identification technique determines whether the initially detected
application protocol is the "real one" or if it is being used as a tunnel to hide the actual
, application (for example, Tor might run inside HTTPS). - Correct Answers -Application
protocol decoding
Perimeter firewalls are designed to protect against what type of traffic? - Correct
Answers -North/South
Which type of wireless attack intercepts the victim's web traffic, redirects the victim's
browser to a web server that it controls, and sends whatever content the attacker
desires? - Correct Answers -SSLstrip
Which option describes malicious software or code that typically takes control of,
collects information from, or damages an infected endpoint? - Correct Answers -
Malware
Panorama does not integrate with which option? - Correct Answers -Traditional port-
based firewalls
In a PKI, what does one host use to encrypt data when it initiates a network connection
to another host? - Correct Answers -Private key
Which of the following best describes a set of security tests and evaluations that
simulate attacks by a hacker or other malicious external source? - Correct Answers -
Penetration testing
Which option is NOT a defining characteristic of an NGFW? - Correct Answers -
Adherence to strict port and protocol enforcement for allow or block decisions
The method by which systems determine whether and how to admit a user into a
trusted area of the organization is known as what? - Correct Answers -Access control
What is a capability of the Palo Alto Networks Traps advanced endpoint protection
product? - Correct Answers -Identifies unknown, zero-day vulnerabilities
Which of the following is not a dynamic routing protocol? - Correct Answers -Point-to-
Point
Which option is NOT a core technique for identifying applications in Palo Alto Networks
NGFWs? - Correct Answers -Packet headers
Which option is an example of a logical address? - Correct Answers -IP Address
Which Aperture feature enables you to define granular, context-aware policy control that
provides you with the ability to drive enforcement and the quarantine of users and data
as soon as a violation occurs? - Correct Answers -Contextual Data Exposure Control
ANSWERS
Intra-VM traffic is also known as which type of traffic? - Correct Answers -east-west
A network filter that allows administrators to restrict access to external content from
within a network is known as which of the following? - Correct Answers -Content
Which option describes the strength of Palo Alto Networks Traps operation? - Correct
Answers -Blocks core exploit and malware techniques
Which technique is NOT used to break the command-and-control (C&C) phase of the
Cyber-Attack Lifecycle? - Correct Answers -Vulnerability and patch management
True or False: The commonly used name for an intermediate area between a trusted
network and an untrusted network is the DMZ. - Correct Answers -True
What does the Palo Alto Networks Large Scale VPN feature use to authenticate
network devices? - Correct Answers -Certificates
A scanner that listens in on a network and identifies vulnerable versions of both server
and client software is known as which of the following? - Correct Answers -Passive
Vulnerability Scanner
Which three options are threat intelligence sources for AutoFocus?
A. WildFire
B. URL Filtering with PAN-DB Service
C. Unit 42 Threat Intelligence and Research Team
D. Third-Party Intrusion Prevention Systems - Correct Answers -A,B,C
True or False: The Domain Name System (DNS) is a function of the World Wide Web
that converts a URL (Uniform Resource Locator) like www.course.com into the IP
address of the Web server host. - Correct Answers -True
Which application identification technique determines whether the initially detected
application protocol is the "real one" or if it is being used as a tunnel to hide the actual
, application (for example, Tor might run inside HTTPS). - Correct Answers -Application
protocol decoding
Perimeter firewalls are designed to protect against what type of traffic? - Correct
Answers -North/South
Which type of wireless attack intercepts the victim's web traffic, redirects the victim's
browser to a web server that it controls, and sends whatever content the attacker
desires? - Correct Answers -SSLstrip
Which option describes malicious software or code that typically takes control of,
collects information from, or damages an infected endpoint? - Correct Answers -
Malware
Panorama does not integrate with which option? - Correct Answers -Traditional port-
based firewalls
In a PKI, what does one host use to encrypt data when it initiates a network connection
to another host? - Correct Answers -Private key
Which of the following best describes a set of security tests and evaluations that
simulate attacks by a hacker or other malicious external source? - Correct Answers -
Penetration testing
Which option is NOT a defining characteristic of an NGFW? - Correct Answers -
Adherence to strict port and protocol enforcement for allow or block decisions
The method by which systems determine whether and how to admit a user into a
trusted area of the organization is known as what? - Correct Answers -Access control
What is a capability of the Palo Alto Networks Traps advanced endpoint protection
product? - Correct Answers -Identifies unknown, zero-day vulnerabilities
Which of the following is not a dynamic routing protocol? - Correct Answers -Point-to-
Point
Which option is NOT a core technique for identifying applications in Palo Alto Networks
NGFWs? - Correct Answers -Packet headers
Which option is an example of a logical address? - Correct Answers -IP Address
Which Aperture feature enables you to define granular, context-aware policy control that
provides you with the ability to drive enforcement and the quarantine of users and data
as soon as a violation occurs? - Correct Answers -Contextual Data Exposure Control