Here are all the actual test exam dumps for IT exams. Most people prepare for the actual exams with our test dumps to pass their exams. So it's critical to choose and actual test pdf to succeed.

Exam NetSec-Analyst Topic 2 Question 70 Discussion

Actual exam question for Palo Alto Networks's NetSec-Analyst exam
Question #: 70
Topic #: 2
An organization is deploying a new application that uses non-standard ports for critical services and requires strict compliance logging of all access attempts, regardless of success or failure. The security team needs to ensure these specific sessions are always logged and accessible in Strata Logging Service with high fidelity. What configuration elements on the Palo Alto Networks firewall and within Strata Logging Service are essential to meet this requirement, and how can log volume be managed efficiently for these specific services without impacting performance?

Suggested Answer: B Vote an answer

For high-fidelity logging of all access attempts (success or failure) and efficient log management for specific services: 1. On the firewall: Enabling 'Log at Session Start' and 'Log at Session End' on both 'allow' and a preceding 'deny' rule (for the same traffic) ensures both successful and failed attempts are logged. 2. Custom Log Forwarding Profiles are crucial as they allow granular control over which log types are sent and to which log receivers (Strata Logging Service). This prevents unnecessary logs from being sent, managing volume. 3. Strata Logging Service is designed to handle large log volumes and automatically scales; it doesn't require separate data buckets for individual applications in the way suggested by Option A, but rather provides powerful query capabilities to filter data. Packet capture (D) is too resource-intensive for continuous compliance logging. Mirroring (C) is a different mechanism for full packet visibility, not direct log forwarding.

by Daisy at Apr 29, 2026, 10:11 PM

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
Nick name: Submit Cancel
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.