PCNSE · Question #107
A file sharing application is being permitted and no one knows what this application is used for. How should this application be blocked?
The correct answer is C. Create a File Blocking Profile that blocks Layer 4 and Layer 7 attacks.. When a file sharing application is already permitted by a security policy and administrators want to neutralize its primary function, attaching a File Blocking Profile to that permitting security policy blocks the actual file transfers traversing the application. This effectively
Question
A file sharing application is being permitted and no one knows what this application is used for. How should this application be blocked?
Options
- ABlock all unauthorized applications using a security policy.
- BBlock all known internal custom applications.
- CCreate a File Blocking Profile that blocks Layer 4 and Layer 7 attacks.
- DCreate a WildFire Analysis Profile that blocks Layer4 and Layer 7 attacks.
How the community answered
(25 responses)- A8% (2)
- B4% (1)
- C84% (21)
- D4% (1)
Explanation
When a file sharing application is already permitted by a security policy and administrators want to neutralize its primary function, attaching a File Blocking Profile to that permitting security policy blocks the actual file transfers traversing the application. This effectively stops the application's core capability without requiring a blanket security policy denial. Option A is too broad and indiscriminate. Options B and D address threat detection workflows (custom apps, WildFire analysis) rather than directly blocking file transfer activity through an already-permitted application.
Topics
Community Discussion
No community discussion yet for this question.