nerdexam
Palo_Alto_Networks

PSE-PLATFORM · Question #32

Which configuration creates the most comprehensive "best-practice" Anti Spyware profile to prevent command and Control traffic?

The correct answer is A. Clone the Strict Anti-Spyware Profile, enable DNS Sinkholing and Passive DNS Monitoring, and deploy this customized clone. Explanation/Reference:

Threat Prevention

Question

Which configuration creates the most comprehensive "best-practice" Anti Spyware profile to prevent command and Control traffic?

Options

  • AClone the Strict Anti-Spyware Profile, enable DNS Sinkholing and Passive DNS Monitoring, and deploy this customized clone
  • BClone the Default Anti-Spyware Profile and enable DNS Sinkholing and Passive DNS Monitoring, and deploy this customized clone
  • CEdit and deploy the Default Anti-Spyware Profile (DNS Sinkholing and Passive DNS Monitoring is already enabled)
  • DEdit and deploy the Strict Anti-Spyware Profile Profile (DNS Sinkholing and Passive DNS Monitoring is already enabled)

How the community answered

(20 responses)
  • A
    75% (15)
  • B
    5% (1)
  • C
    15% (3)
  • D
    5% (1)

Explanation

Explanation/Reference:

Topics

#Anti-Spyware#DNS Sinkholing#Passive DNS Monitoring#C&C prevention

Community Discussion

No community discussion yet for this question.

Full PSE-PLATFORM Practice