500-560 · Question #110
What is one advantage of Umbrella branch package?
The correct answer is B. prevent guest or corporate users from connecting to malicious domains and IP addresses. Option B is correct because the Umbrella Branch package extends Cisco Umbrella's DNS-layer security to branch office networks, intercepting DNS queries from any device on the local network - whether it's a corporate laptop or a guest's personal phone - and blocking connections to
Question
What is one advantage of Umbrella branch package?
Options
- Aprevent already-infected devices from connecting to command and control
- Bprevent guest or corporate users from connecting to malicious domains and IP addresses
- Cdeploy the branch package on a Cisco ISR4K router in 4 easy steps
- Dno client side configuration required
How the community answered
(18 responses)- A6% (1)
- B94% (17)
Explanation
Option B is correct because the Umbrella Branch package extends Cisco Umbrella's DNS-layer security to branch office networks, intercepting DNS queries from any device on the local network - whether it's a corporate laptop or a guest's personal phone - and blocking connections to known malicious domains and IP addresses before they're ever established.
Option A is a distractor because blocking command-and-control (C2) traffic from already-infected devices describes a remediation/post-infection capability, which is more associated with Umbrella's broader threat intelligence features (like Investigate) rather than the branch package's core value proposition.
Option C is a distractor because ease of deployment (even if true) describes how you set it up, not an operational advantage of using it - exam questions about advantages focus on security or operational outcomes.
Option D is tempting but too narrow - while it's true that no endpoint agents are needed, that's the mechanism, not the advantage itself; B captures the full benefit that the mechanism enables.
Memory tip: Think "Branch = Blanket protection" - the branch package throws a security blanket over everyone at the branch (guests included) at the DNS layer, no client software needed. The advantage is what the blanket does (blocks malicious domains/IPs), not how it's stitched together.
Topics
Community Discussion
No community discussion yet for this question.