Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

CheckPoint 156-590 Exam - Topic 9 Question 11 Discussion

Which DNS Protection mechanism has been introduced with R81.20?
C) ThreatCloud DNS Tunneling Protection.
A) Propagation of a Bogus IP as a response to a DNS request.
B) Malware DNS Trap.
D) Synchronization of the /etc/hosts file from Protection servers.

CheckPoint 156-590 Exam - Topic 9 Question 11 Discussion

Actual exam question for CheckPoint's 156-590 exam
Question #: 11
Topic #: 9
[All 156-590 Questions]

Which DNS Protection mechanism has been introduced with R81.20?

Show Suggested Answer Hide Answer
Suggested Answer: C

The correct answer is C. ThreatCloud DNS Tunneling Protection. Check Point R81.20 introduced major Advanced Threat Prevention enhancements, including AI Deep Learning improvements for DNS attacks. The R81.20 Release Notes state that AI Deep Learning prevents more DNS attacks in real time and specifically reference ThreatCloud DNS tunneling protection as part of the DNS Security enhancements.

DNS tunneling protection is distinct from Malware DNS Trap. Malware DNS Trap returns a false or bogus IP address for known malicious hosts and domains, and it can help identify compromised clients by observing connection attempts to the false trap address. That mechanism is represented by option A/B, but it is not the R81.20-introduced DNS protection being tested here. ThreatCloud DNS Tunneling Protection targets a different technique: abuse of DNS as a covert channel for command-and-control, data exfiltration, or tunneling traffic through recursive DNS infrastructure. Option D is unrelated to Check Point DNS Threat Prevention architecture. Reference topics: R81.20 Advanced Threat Prevention, DNS Security, ThreatCloud DNS Tunneling Protection, Malware DNS Trap, Anti-Bot and Anti-Virus DNS protections.


Contribute your Thoughts:

0/2000 characters

Currently there are no comments in this discussion, be the first to comment!


Save Cancel