Palo Alto Networks Certified Network Security Administrator (PCNSA) — Question 287

What is the default action for the SYN Flood option within the DoS Protection profile?

Answer options

Correct answer: D

Explanation

The default action for the SYN Flood option is 'Random Early Drop,' which helps to manage and mitigate the effects of SYN flood attacks by dropping excess traffic. The other options, such as 'Reset-client' and 'Alert,' do not provide a proactive method for handling this type of denial-of-service attack, and 'Sinkhole' is typically used for redirecting malicious traffic, not for managing SYN floods.