Courseiva

PCNSA Device Management and Services Practice Question

What is the purpose of the 'Telemetry' feature in PAN-OS?

⚠ Common exam trap

Watch out — candidates often confuse Telemetry with log forwarding or Panorama integration, assuming it is used for centralized management or log collection, when in fact it is solely for anonymous data sharing to improve Palo Alto Networks' services.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

✓

To send anonymous device health and usage data to Palo Alto Networks

The Telemetry feature in PAN-OS sends anonymous device health and usage data to Palo Alto Networks to help improve product development and threat detection. This data includes information such as system resource utilization, feature usage statistics, and aggregate threat information, but does not include sensitive or personally identifiable information. It is an opt-in feature that enhances Palo Alto Networks' ability to provide proactive support and security updates.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • ✓

    To send anonymous device health and usage data to Palo Alto Networks

    Why this is correct

    Telemetry periodically transmits anonymised device health, configuration and usage statistics to Palo Alto Networks, enabling proactive support and product improvement. It satisfies the stem's purpose by describing outbound vendor data sharing, not local logging or policy enforcement.

  • ✗

    To send logs to Panorama

    Why it's wrong here

    Telemetry sends anonymised usage and threat statistics to Palo Alto Networks, not logs to Panorama; log forwarding to Panorama uses a Log Forwarding profile on a collector group. Panorama log forwarding is correct when centralised logging and correlation across firewalls is required.

  • ✗

    To enable DNS proxy

    Why it's wrong here

    Telemetry forwards anonymised usage and threat data to Palo Alto Networks; DNS proxy is configured separately under a DNS proxy object to resolve or sinkhole DNS requests. Enabling DNS proxy is correct when you need to intercept client DNS queries for policy or sinkholing.

  • ✗

    To configure User-ID agent

    Why it's wrong here

    Telemetry streams anonymised usage and threat statistics to Palo Alto Networks for product improvement; it does not configure User-ID agents, which map IP addresses to users via agent-to-firewall communication. User-ID agent setup is the right task when you need user-based policy enforcement, not telemetry.

About these practice questions

Courseiva writes every PCNSA question from scratch — 385 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This PCNSA practice question is part of Courseiva's free Palo Alto Networks certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the PCNSA exam.