Q: 12
Which two components of a Security policy, when configured, allow third-party contractors access to
internal applications outside business hours? (Choose two.)
Options
Discussion
C and D imo, User-ID lets you specify the contractor group and Schedule covers the time restriction (outside business hours). That lines up with what the official Palo Alto study guides mention for controlling both who and when. Seen this in practice exams too, but let me know if I’m missing something.
Guessing C and D are correct, not B. B is a classic distractor but doesn't handle who or when access happens.
C and D. User-ID lets you specify the contractors, Schedule limits access to outside business hours. Makes sense based on policy usage.
Does Service (B) ever help with time or user restriction, or is it always just protocol/port?
C/D tbh, Service is tempting but that's only if the question said something about ports or protocols. User-ID and Schedule control user/time, so those are key. Seen similar in practice sets.
I don’t think it’s A. C and D make more sense since User-ID handles the contractor group and Schedule covers the "outside business hours" part. Not totally sure if Service would ever fit here, but looks like C/D is correct for this scenario.
C/D? Service (B) is tempting but doesn’t control access by user or time, just port/protocol. User-ID (C) and Schedule (D) together lock it down to who and when, which matches the scenario. Seen similar on practice so pretty sure it’s these two.
Seriously Palo Alto wording always messes with me-why not A? App-ID feels like it fits since apps are in scope.
C/D? User-ID (C) lets the policy target just the third-party contractors, while Schedule (D) sets the after-hours part. I remember similar practice questions focused on these fields in the official study guide. Pretty sure these two are what you need for user/time-based restriction.
C D tbh. User-ID is for identifying those contractors by user, and Schedule limits it to after-hours-so both fit exactly what they're asking. No need for App-ID or Service here since it's about who and when, not what or how. Anyone see it differently?
Be respectful. No spam.