The compliance officer requests that all evasive applications need to be blocked on all perimeterfirewalls out to the internet The firewall is configured with two zones;1. trust for internal networks2. untrust to the internetBased on the capabilities of the Palo Alto Networks NGFW, what are two ways to configure a security
policy using App-ID to comply with this request? (Choose two )