700-765 · Question #100
What are two core functionalities of DNS-layer security? (Choose two.)
The correct answer is B. Real-time sandboxing E. URL filtering. DNS-layer security solutions like Cisco Umbrella protect users before a connection is established, with URL filtering and real-time sandboxing as two of its core enforcement capabilities.
Question
What are two core functionalities of DNS-layer security? (Choose two.)
Options
- ALive threat intelligence
- BReal-time sandboxing
- CProxy and file inspection
- DData analytics and monitoring
- EURL filtering
How the community answered
(31 responses)- B94% (29)
- C3% (1)
- D3% (1)
Why each option
DNS-layer security solutions like Cisco Umbrella protect users before a connection is established, with URL filtering and real-time sandboxing as two of its core enforcement capabilities.
Live threat intelligence is an underlying data source that enables DNS-layer security, but it is a supporting component rather than a core functional capability of the service itself.
Real-time sandboxing is a core DNS-layer security capability that detonates suspicious files and URLs in an isolated environment to identify malicious behavior before content reaches the end user.
Proxy and file inspection describes secure web gateway (SWG) functionality, which is a distinct inspection layer separate from the core DNS-layer security mechanism.
Data analytics and monitoring are reporting and SIEM-adjacent features that supplement DNS-layer security rather than define its core protective functions.
URL filtering is a foundational DNS-layer security function that evaluates and blocks requests to known malicious or policy-violating URLs at the DNS and HTTP layers, preventing users from reaching harmful destinations.
Concept tested: Core functionalities of DNS-layer security solutions
Source: https://docs.umbrella.com/
Topics
Community Discussion
No community discussion yet for this question.