Palo_Alto_Networks
PCNSE6 · Question #65
What has happened when the traffic log shows an internal host attempting to open a session to a properly configured sinkhole address?
The correct answer is B. The internal host attempted to use DNS to resolve a known malicious domain into an IP address. com/en_US/assets/pdf/framemaker/pan-os/NewFeaturesGuide.pdf page 14
Module 1: Introduction to Python and Computer Programming
Question
What has happened when the traffic log shows an internal host attempting to open a session to a properly configured sinkhole address?
Options
- AThe internal host is trying to resolve a DNS query by connecting to a rogue DNS server.
- BThe internal host attempted to use DNS to resolve a known malicious domain into an IP address.
- CA rogue DNS server is now using the sinkhole address to direct traffic to a known malicious
- DA malicious domain is trying to contact an internal DNS server.
How the community answered
(24 responses)- A13% (3)
- B75% (18)
- C4% (1)
- D8% (2)
Explanation
com/en_US/assets/pdf/framemaker/pan-os/NewFeaturesGuide.pdf page 14
Topics
#DNS sinkhole#malicious domain#DNS security#threat intelligence
Community Discussion
No community discussion yet for this question.