Q: 3
Which two statements are correct about App-ID content updates? (Choose two.)
Options
Discussion
B
I don’t think it’s A here. App-ID is for identifying applications, not devices. Device-ID does the device discovery/classification, which is what IoT security profiles need. Sometimes easy to mix them up because both are core Palo Alto features! Pretty sure B is correct but open to other thoughts if I missed something.
I don’t think it’s A here. App-ID is for identifying applications, not devices. Device-ID does the device discovery/classification, which is what IoT security profiles need. Sometimes easy to mix them up because both are core Palo Alto features! Pretty sure B is correct but open to other thoughts if I missed something.
Similar question came up in a practice exam, it's B. Check the official guide if you want to double-check.
Its A and D. Updates can affect how existing rules work and also auto-identify new apps, not manual. Pretty confident here.
C or D? But after looking again, B is a trap. New app signatures let the firewall classify traffic automatically, so D fits. And A makes sense because updated content can change how security rules hit. Not totally sure but that's what I'd pick.
D imo, App-ID updates can definitely change how policy rules are matched and let the firewall spot new applications right away.
Pretty sure it's A here since App-ID does all the application classification, and I think IoT profiles would use that to identify devices. Device-ID sounds more about user logins to me. If the question's really asking about device types on the network, seems like App-ID could fit too.
ABe respectful. No spam.