The statement says "The firewall identifies a popular application as an unknown-tcp". It doesn't say traffic is being dropped. If it identifies it, that means a rule is already in place. It also says popular, and as per https://docs.paloaltonetworks.com/pan-os/9-1/pan-os-admin/app-id/manage-custom-or-unknown-applications#, "...If the packet capture reveals that the application is a commercial application, you can submit this packet capture to Palo Alto Networks for App-ID development...". Commercial equates to popular. I say AC
https://docs.paloaltonetworks.com/pan-os/10-2/pan-os-admin/app-id/manage-custom-or-unknown-applications
Actually shows A,C,D as all viable options. Great...
I think A & D actually provide solutions, versus waiting on Palo to build you something that you will need to wait for.
ITs handle not identify ... A&C
Create security policies to control unknown applications by unknown TCP, unknown UDP or by a combination of source zone, destination zone, and IP addresses.
You can create a custom app:
https://docs.paloaltonetworks.com/pan-os/9-1/pan-os-admin/app-id/use-application-objects-in-policy/create-a-custom-application
or submit a request to PAN
https://www.paloaltonetworks.com/blog/submit-an-application/
Correct A, C.
https://docs.paloaltonetworks.com/pan-os/9-1/pan-os-admin/app-id/manage-custom-or-unknown-applications
Check that the article mentioned "Create security policies to control unknown application" No to Identify as the option D
Go on the Reference link read the beginning and after the step 6, you need to create a custom app and then to create a security policy to allow the new app that you created... during time you will understand how it communicates, how access is done as is written in the tech docs... after that if you want you can submit this to Palo to create an app but 1st you need to do this so the answer is A and D .
A , C
C: since it is a popular (referred in the docs as "commercial") Application ,
((Request an App-ID from Palo Alto Networks—If you would like to inspect and control the applications that traverse your network, for any unknown traffic, you can record a packet capture. If the packet capture reveals that the application is a commercial application, you can submit this packet capture to Palo Alto Networks for App-ID development. If it is an internal application, you can create a custom App-ID and/or define an application override policy.))
D: would be right if it an internal or Organization Application
https://docs.paloaltonetworks.com/pan-os/9-1/pan-os-admin/app-id/manage-custom-or-unknown-applications
A & D
A: because thats the way to go to reliably identify a custom app
PA says: "Create a Custom Application with a signature and attach it to a security policy"
D: because you need to see traffic on the wire to create custom patterns matching that new application (otherwise it would be just blocked and you will not be able to create a custom app)
PA says: "Create security policies to control unknown applications by unknown TCP, unknown UDP or by a combination of source zone, destination zone, and IP addresses.
"
So even though a security policy alone (D) will not help but together with A its the way how it works.
ref:
https://docs.paloaltonetworks.com/pan-os/9-1/pan-os-admin/app-id/manage-custom-or-unknown-applications#
This section is not available anymore. Please use the main Exam Page.PCNSE Exam Questions
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
Edu147
Highly Voted 5 years, 3 months agoochc
Highly Voted 3 years, 11 months agoMarshpillowz
Most Recent 9 months, 2 weeks agoTechn
1 year, 4 months agoTAKUM1y
2 years, 1 month agoKuronekosama
2 years, 2 months agoGabriel2022
2 years, 2 months agoUFanat
2 years, 4 months agoMeira088
2 years, 5 months agoAbuHussain
2 years, 7 months agoWATU
2 years, 7 months agoFS68
3 years agoanak1n
3 years, 6 months agoElvenking
2 years, 6 months agoNarendragpt
3 years, 7 months agotuktuk2020
3 years, 7 months agoRinoAlenz
3 years, 8 months agohpbdcb
3 years, 11 months agoPradeepan
4 years, 1 month ago