Palo_Alto_Networks
PSE-PLATFORM · Question #32
Which configuration creates the most comprehensive "best-practice" Anti Spyware profile to prevent command and Control traffic?
The correct answer is A. Clone the Strict Anti-Spyware Profile, enable DNS Sinkholing and Passive DNS Monitoring, and deploy this customized clone. Explanation/Reference:
Threat Prevention
Question
Which configuration creates the most comprehensive "best-practice" Anti Spyware profile to prevent command and Control traffic?
Options
- AClone the Strict Anti-Spyware Profile, enable DNS Sinkholing and Passive DNS Monitoring, and deploy this customized clone
- BClone the Default Anti-Spyware Profile and enable DNS Sinkholing and Passive DNS Monitoring, and deploy this customized clone
- CEdit and deploy the Default Anti-Spyware Profile (DNS Sinkholing and Passive DNS Monitoring is already enabled)
- DEdit and deploy the Strict Anti-Spyware Profile Profile (DNS Sinkholing and Passive DNS Monitoring is already enabled)
How the community answered
(20 responses)- A75% (15)
- B5% (1)
- C15% (3)
- D5% (1)
Explanation
Explanation/Reference:
Topics
#Anti-Spyware#DNS Sinkholing#Passive DNS Monitoring#C&C prevention
Community Discussion
No community discussion yet for this question.