Palo Alto Networks SD-WAN Engineer — Question 8
Which statement is valid when integrating Prisma SD-WAN with Prisma Access remote networks?
Answer options
- A. Security policies for remote networks are configured in Prisma Access and pushed to Prisma SD-WAN for enforcement on the branch ION devices.
- B. Easy onboarding automatically recommends the closest preconfigured remote network security processing nodes and can be overridden manually.
- C. A branch with multiple internet circuits will automatically connect to Prisma Access on each circuit and will be used in an active/standby manner for internet-bound traffic.
- D. Bandwidth must be allocated to each Prisma Access remote network compute location, and this bandwidth is shared between all branches that terminate on this remote network node.
Correct answer: B
Explanation
Option B is correct because easy onboarding does indeed recommend the closest security processing nodes and allows for manual overrides. Option A is incorrect as it misrepresents the direction of policy configuration; policies are set in Prisma SD-WAN. Option C is wrong because the connection method described does not reflect how branches utilize multiple circuits with Prisma Access. Option D is also inaccurate since bandwidth allocation does not function as stated; it does not imply shared bandwidth in this context.