UPDATE (ALREADY GRADED A+)
Role-Based Profile Roles
Role Based profile roles: These are custom roles you can configure for more granular access control over
the functional areas of the web interface, CLI, and XML API.
Admin Role Profile
You can create an Admin Role profile role for your operations staff that provides access to the firewall
and network configuration areas of the web interface.
Access for Virtual Systems
On a firewall with multiple virtual systems, you can select whether the role defines access for all virtual
systems or specific virtual systems.
Updating Role Definitions
After new features are added to the product, you must update the roles with corresponding access
privileges; the firewall does not automatically add new features to custom role definitions.
Dynamic DNS Updates
It eliminates the need for dynamic DNS updates.
DNS Entry Limit
It removes the 100K limit for DNS entries for the downloaded DNS updates.
delivered-dns-signatures
Locally available, downloadable DNS signature sets (packaged with the antivirus and WildFire updates)
come with a hard-coded capacity limitation of 100k signatures and do not include signatures generated
through advanced analysis.
cloud-based signature database
Provides users with instant access to newly added DNS signatures without the need to download
updates.
restrict access to the management interface
Settings that allow you to restrict access include enabling the Content-ID filter and permitted IP
addresses.
source NAT
A policy required to enable source NAT on the firewall includes a NAT policy with source zone and
destination zone specified.
Best Practice Assessment