350-701 · Question #779
Which security category does Cisco Umbrella use to block DNS requests that have not been seen in Umbrella before or have not yet had a client lookup?
The correct answer is B. Newly Seen Domains. The Newly Seen Domains category in Cisco Umbrella is used to block DNS requests for domains that have not been observed in Umbrella's global DNS traffic before. These domains are typically less than 24 hours old and may not yet have a reputation score. Blocking newly seen…
Question
Which security category does Cisco Umbrella use to block DNS requests that have not been seen in Umbrella before or have not yet had a client lookup?
Options
- ADynamic DNS
- BNewly Seen Domains
- CPotentially Harmful Domains
- DMalware
How the community answered
(33 responses)- A6% (2)
- B91% (30)
- D3% (1)
Explanation
The Newly Seen Domains category in Cisco Umbrella is used to block DNS requests for domains that have not been observed in Umbrella's global DNS traffic before. These domains are typically less than 24 hours old and may not yet have a reputation score. Blocking newly seen domains helps mitigate risks from malicious domains used in phishing or malware attacks that are quickly created and discarded by attackers.
Topics
Community Discussion
No community discussion yet for this question.