Palo Alto Networks Certified Network Security Engineer (PCNSE) — Question 111
Which logs enable a firewall administrator to determine whether a session was decrypted?
Answer options
- A. Traffic
- B. Security Policy
- C. Decryption
- D. Correlated Event
Correct answer: A
Explanation
The correct answer is A, as Traffic logs provide detailed information about sessions, including whether they were decrypted. The other options do not specifically indicate session decryption; Security Policy logs focus on policy enforcement, Decryption logs detail the decryption process itself but not session status, and Correlated Event logs relate to events that may not specifically include session decryption.