Palo_Alto_Networks
PCNSE7 · Question #132
What happens when the traffic log shows an internal host attempting to open a session to a properly configured sinkhole address?
The correct answer is D. The internal host attempted to use DNS to resolve a known malicious domain into an IP address. See the full explanation below for the reasoning.
Question
What happens when the traffic log shows an internal host attempting to open a session to a properly configured sinkhole address?
Options
- AThe internal host tried to resolve a DNS query by connecting to a rogue DNS server.
- BA malicious domain tried to contact an internal DNS server.
- CA rogue DNS server used the sinkhole address to direct traffic to a known malicious domain.
- DThe internal host attempted to use DNS to resolve a known malicious domain into an IP address.
How the community answered
(35 responses)- A3% (1)
- B9% (3)
- C11% (4)
- D77% (27)
Community Discussion
No community discussion yet for this question.