PCNSA · Question #289
In which threat profile object would you configure the DNS Security service?
The correct answer is A. Anti-Spyware. The DNS Security service, which detects and blocks known and unknown malicious DNS queries, is configured within the Anti-Spyware profile.
Question
In which threat profile object would you configure the DNS Security service?
Options
- AAnti-Spyware
- BURL Filtering
- CAntivirus
- DWildFire
How the community answered
(24 responses)- A88% (21)
- C4% (1)
- D8% (2)
Why each option
The DNS Security service, which detects and blocks known and unknown malicious DNS queries, is configured within the Anti-Spyware profile.
The DNS Security service, a component of Palo Alto Networks' Subscription Services, is configured within the Anti-Spyware profile because it specifically targets the detection and blocking of malicious DNS requests commonly used by spyware, malware, and other advanced threats to establish command-and-control communications.
URL Filtering profiles are designed to control access to web content based on categories, not to analyze DNS query patterns for security threats.
Antivirus profiles focus on detecting and blocking known malware files transmitted over various protocols, not on securing DNS traffic.
WildFire is a cloud-based threat analysis service for identifying unknown malware, but its integration points for DNS Security are managed through the Anti-Spyware profile, not as a standalone profile type for DNS security configuration.
Concept tested: DNS Security configuration in Anti-Spyware profile
Source: https://docs.paloaltonetworks.com/pan-os/10-2/pan-os-admin/dns-security/configure-dns-security/configure-an-anti-spyware-profile-with-dns-security
Topics
Community Discussion
No community discussion yet for this question.