Palo Alto Networks Certified Network Security Engineer (PCNSE) — Question 469
An internal audit team has requested additional information to be included inside traffic logs forwarded from Palo Alto Networks firewalls to an internal syslog server.
Where can the firewall engineer define the data to be added into each forwarded log?
Answer options
- A. Custom Log Format within Device > Server Profiles > Syslog
- B. Built-in Actions within Objects > Log Forwarding Profile
- C. Logging and Reporting Settings within Device > Setup > Management
- D. Data Patterns within Objects > Custom Objects
Correct answer: A
Explanation
The correct answer is A because the Custom Log Format setting allows for the specification of additional data in the logs sent to the syslog server. Other options, such as Built-in Actions and Logging and Reporting Settings, do not provide the same level of customization for log content, while Data Patterns are not relevant to log forwarding configurations.