NETSEC-ANALYST · Question #146
Which Security profile would you apply to identify infected hosts on the protected network using DNS traffic?
The correct answer is C. anti-spyware. In addition, you can enable the DNS Sinkholing action in Anti-Spyware profiles to enable the firewall to forge a response to a DNS query for a known malicious domain, causing the malicious domain name to resolve to an IP address that you define. This feature helps to identify inf
Question
Which Security profile would you apply to identify infected hosts on the protected network using DNS traffic?
Options
- AURL traffic
- Bvulnerability protection
- Canti-spyware
- Dantivirus
How the community answered
(32 responses)- A9% (3)
- B16% (5)
- C72% (23)
- D3% (1)
Explanation
In addition, you can enable the DNS Sinkholing action in Anti-Spyware profiles to enable the firewall to forge a response to a DNS query for a known malicious domain, causing the malicious domain name to resolve to an IP address that you define. This feature helps to identify infected hosts on the protected network using DNS traffic.
Topics
Community Discussion
No community discussion yet for this question.