Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Broadcom 250-586 Exam - Topic 2 Question 27 Discussion

Which two options are available when configuring DNS change detected for SONAR? (Select two.)
A) Block and D) Log
B) Active Response
C) Quarantine
E) Trace

Broadcom 250-586 Exam - Topic 2 Question 27 Discussion

Actual exam question for Broadcom's 250-586 exam
Question #: 27
Topic #: 2
[All 250-586 Questions]

Which two options are available when configuring DNS change detected for SONAR? (Select two.)

Show Suggested Answer Hide Answer
Suggested Answer: A, D

When configuring DNS change detection for SONAR, two available options are Block and Log. These options allow administrators to define how SONAR should respond to unexpected or suspicious DNS changes.

Block: This option enables SONAR to immediately block DNS changes that it detects as potentially malicious, preventing suspicious DNS redirections that could expose endpoints to threats like phishing or malware sites.

Log: Selecting Log allows SONAR to record DNS changes without taking direct action. This option is useful for monitoring purposes, providing a record of changes for further analysis.

Explanation of Why Other Options Are Less Likely:

Option B (Active Response) and Option C (Quarantine) are generally associated with threat responses but are not specific to DNS change detection.

Option E (Trace) is not an available response option for DNS changes in SONAR.

Therefore, the correct options for configuring DNS change detected for SONAR are Block and Log.


Contribute your Thoughts:

0/2000 characters
Paola
1 month ago
I practiced a similar question, and I think "Log" was mentioned as a possible action for DNS changes.
upvoted 0 times
...
Karl
1 month ago
I feel like "Quarantine" might be an option too, but I could be mixing it up with something else we studied.
upvoted 0 times
...
Paola
1 month ago
I think I remember that "Active Response" is definitely one of the options, but I'm not sure about the second one.
upvoted 0 times
...

Save Cancel