XDR-Engineer Maintenance And Troubleshooting Practice Question
An administrator is troubleshooting a scenario where Cortex XDR Agent data is not appearing in the management console. Firewall rules restrict outbound traffic. Which destination port and protocol must be opened outbound from the endpoints to the Cortex XDR management console for agent telemetry?
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
TCP port 443
Cortex XDR agents communicate outbound to the Cortex XDR tenant over TCP port 443 (HTTPS).
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
TCP port 389 and 636
Why it's wrong here
Ports 389 and 636 are used for LDAP and LDAPS directory services.
- ✗
TCP port 22 and 8080
Why it's wrong here
SSH (port 22) and HTTP (port 8080) are not standard agent reporting ports.
- ✓
TCP port 443
Why this is correct
Cortex XDR agents use HTTPS over TCP port 443 for all communications and telemetry reporting to the cloud tenant.
- ✗
UDP port 514
Why it's wrong here
UDP port 514 is standard for syslog, not Cortex XDR agent telemetry.
About these practice questions
Courseiva writes every XDR-Engineer question from scratch — 226 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →
JA
Written and reviewed by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
Last reviewed August 2026 · checked against the official Palo Alto Networks exam blueprint
This XDR-Engineer practice question is part of Courseiva's free Palo Alto Networks certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the XDR-Engineer exam.