Palo Alto Networks Certified Network Security Engineer (PCNSE) — Question 116
An administrator deploys PA-500 NGFWs as an active/passive high availability pair. The devices are not participating in dynamic routing, and preemption is disabled.
What must be verified to upgrade the firewalls to the most recent version of PAN-OSֲ® software?
Answer options
- A. Antivirus update package.
- B. Applications and Threats update package.
- C. User-ID agent.
- D. WildFire update package.
Correct answer: B
Explanation
Before upgrading to the latest PAN-OS® version, it is essential to ensure that the Applications and Threats update package is current, as this package is critical for the firewall's threat prevention capabilities. The Antivirus update package, User-ID agent, and WildFire update package, while important, do not directly impact the upgrade process of the operating system itself.