When is the content inspection performed in the packet flow process?
An administrator would like to use App-ID's deny action for an application and would like that action updated with dynamic updates as new content becomes available.
Which security policy action causes this?
An administrator notices that protection is needed for traffic within the network due to malicious lateral movement activity. Based on the image shown, which traffic would the administrator need to monitor and block to mitigate the malicious activity?
Match the Cyber-Attack Lifecycle stage to its correct description.

An administrator would like to override the default deny action for a given application, and instead would like to block the traffic and send the ICMP code
"communication with the destination is administratively prohibited".
Which security policy action causes this?
Enter your email address to download PaloAltoNetworks.PCNSA.v2023-01-08.q162 Dumps