Palo Alto Networks NGFW Engineer — Question 77
An administrator must perform several actions on a fleet of firewalls from a central Panorama instance. To maintain efficiency, the administrator wants to only perform actions that do not require switching context into each firewall's individual web interface.
Which set of actions is available to the administrator directly from the Panorama UI?
Answer options
- A. Creating a new VLAN - Assigning an interface to the new VLAN Configuring a new DHCP server on the firewall
- B. Modifying a pre-rule - Editing a shared service object - Creating a new certificate profile
- C. Accessing the CLI - Restarting the device - Installing the latest content and software versions
- D. Configuring a new IPSec tunnel - Modifying the IKE gateway - Changing the DNS server settings of the firewall
Correct answer: B
Explanation
Option B is correct because modifying a pre-rule, editing a shared service object, and creating a new certificate profile can all be done directly from Panorama without needing to access individual firewalls. The other options involve tasks that either require switching contexts or are not supported directly in the Panorama interface.