試験NetSec-Analyst トピック2 問題19 スレッド
Palo Alto Networks NetSec-Analystのリアル試験問題集
問題 #: 19
トピック #: 2
問題 #: 19
トピック #: 2
An organization is deploying a new custom application that runs over QUIC (Quick UDP Internet Connections) protocol, primarily for performance reasons. The firewall team needs to create a security policy to allow this application while ensuring it adheres to content inspection requirements, including SSL decryption. Currently, the firewall's default settings block unknown UDP traffic. Which configuration steps are necessary for the Palo Alto Networks firewall to successfully identify, decrypt, and apply content-ID to this QUIC application?
おすすめの解答:D 解答を投票する
Option D correctly identifies the challenge with QUIC. QUIC (HTTP/3) integrates TLS 1.3 directly into the UDP transport layer, making it fundamentally different from how traditional SSL/TLS (over TCP) is decrypted by firewalls. Standard SSL decryption profiles are designed for TCP sessions and will not directly decrypt QUIC. While Palo Alto Networks continues to enhance its App-ID and threat prevention for QUIC, explicit SSL decryption as applied to TCP-based traffic is not typically done in the same manner. The firewall will primarily rely on App-Ld for identification and then apply other Content-ID profiles like Antivirus, Anti-Spyware, and WildFire based on the identified application. Option E implies a direct native decryption feature which, while evolving, isn't the standard approach for custom QUIC apps in the same way as TCP SSL. Options A and C are incorrect in assuming standard SSL decryption or application override for decryption functionality will work directly. Option B is partially correct in stating SSL decryption is not applicable, but then implies standard content-ID would just work without acknowledging the encryption.
田中** 2026-03-03 09:20:48
コメント
他人の解答コメントを賛成するのも、その解答に一票を入れることになります。したがって、すでに同じ意見の投票コメントが存在する場合、新規コメントをする代わりに賛成することもできます。
コメントを通報する
コメント中
今すぐ 新規登録 / ログイン (無料です)。