700-765 · Question #84
Which are two main features of DDoS Attack Prevention? (Choose two)
The correct answer is A. Block or allow traffic automatically D. Stop attacks within seconds of detection. Cisco DDoS Attack Prevention is designed to automatically block malicious traffic and respond within seconds of detecting an attack, without redirecting traffic back to attackers or relying on ThreatGrid malware sandboxing.
Question
Which are two main features of DDoS Attack Prevention? (Choose two)
Options
- ABlock or allow traffic automatically
- BRedirects DDoS traffic back to attacker
- CLeveraging AMP ThreatGrid technology
- DStop attacks within seconds of detection
How the community answered
(31 responses)- A90% (28)
- B3% (1)
- C6% (2)
Why each option
Cisco DDoS Attack Prevention is designed to automatically block malicious traffic and respond within seconds of detecting an attack, without redirecting traffic back to attackers or relying on ThreatGrid malware sandboxing.
Automatically blocking or allowing traffic is a core DDoS prevention capability - the solution uses behavioral analysis and traffic scrubbing to distinguish attack traffic from legitimate traffic and enforce allow/block decisions without manual intervention.
Redirecting DDoS traffic back to an attacker is not a feature of Cisco DDoS prevention - traffic is scrubbed or dropped, not reflected back toward the source.
AMP ThreatGrid is a file sandboxing and malware analysis technology used for endpoint and network threat detection, and is not a component of DDoS attack prevention.
Stopping attacks within seconds of detection is a critical design goal of DDoS prevention, achieved through real-time traffic analysis and automated mitigation that activates immediately upon attack signature identification.
Concept tested: Cisco DDoS attack prevention automated mitigation features
Source: https://www.cisco.com/c/en/us/products/security/guide-to-ddos-attacks.html
Topics
Community Discussion
No community discussion yet for this question.