Palo Alto Networks Certified Network Security Administrator (PCNSA)Security Policy ConfigurationMedium
A company is concerned about employees accidentally or maliciously uploading sensitive customer data (e.g., credit card numbers, social security numbers) to unapproved cloud storage services. Which security profile, when applied to a security policy, can detect and prevent the transfer of such specific patterns of sensitive information?
- AData Filtering Profile
- BThreat Prevention Profile
- CFile Blocking Profile
- DURL Filtering Profile
Show answer & explanationAnswer & explanation
Correct answer: A. Data Filtering Profile
The Data Filtering Profile is specifically designed to identify and control the transfer of sensitive data patterns such as credit card numbers or social security numbers, preventing data exfiltration.
Why the other options are wrong
- B. Threat Prevention Profile detects and blocks known threats like viruses, spyware, and exploits, not sensitive data patterns.
- C. File Blocking Profile prevents the upload/download of specific file types, not content patterns within files.
- D. URL Filtering Profile controls access to websites based on categories or specific URLs, not the data being transferred.
Data Filtering Profile
A Data Filtering Profile in Palo Alto Networks firewalls is used to detect and prevent the transfer of sensitive information based on predefined or custom data patterns (e.g., credit card numbers, SSNs) within network traffic.
- Prevents data exfiltration.
- Uses data patterns (regex) for detection.
- Can be applied to various traffic types (HTTP, FTP, SMB, SMTP).
Memory trick: Data Filtering, Not Just File Blocking.