Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Cisco 350-701 Exam - Topic 4 Question 74 Discussion

What are two recommended approaches to stop DNS tunneling for data exfiltration and command and control call backs? (Choose two.)
C) Enforce security over port 53.
A) Use intrusion prevention system.
B) Block all TXT DNS records.
D) Use next generation firewalls.
E) Use Cisco Umbrella.

Cisco 350-701 Exam - Topic 4 Question 74 Discussion

Actual exam question for Cisco's 350-701 exam
Question #: 74
Topic #: 4
[All 350-701 Questions]

What are two recommended approaches to stop DNS tunneling for data exfiltration and command and control call backs? (Choose two.)

Show Suggested Answer Hide Answer
Suggested Answer: C

Contribute your Thoughts:

0/2000 characters
Taryn
9 months ago
Enforcing security over port 53 is a must!
upvoted 0 times
...
Dortha
10 months ago
Surprised that blocking all TXT records is even suggested.
upvoted 0 times
...
Claribel
10 months ago
Totally agree with using next-gen firewalls!
upvoted 0 times
...
Krissy
10 months ago
Blocking TXT records might be too extreme.
upvoted 0 times
...
Margret
10 months ago
A and D are solid choices!
upvoted 0 times
...
Paris
11 months ago
I think using next generation firewalls is a solid approach, but I’m not entirely confident about the specifics on how they handle DNS tunneling.
upvoted 0 times
...
Franchesca
11 months ago
I feel like enforcing security over port 53 was mentioned in a practice question, but I can't recall the details.
upvoted 0 times
...
Shelton
11 months ago
Blocking TXT DNS records sounds familiar; I think we practiced that in a lab scenario. It could help with data exfiltration.
upvoted 0 times
...
Ona
11 months ago
I remember studying about using intrusion prevention systems, but I'm not sure if that's the best option for DNS tunneling specifically.
upvoted 0 times
...
Reita
11 months ago
Enforcing security over port 53 and using a tool like Cisco Umbrella seem like solid options to address this issue.
upvoted 0 times
...
Robt
11 months ago
I'm a bit unsure about the specifics here. I'll need to review my notes on DNS tunneling and network security best practices.
upvoted 0 times
...
Glory
11 months ago
Okay, I've got this. Blocking TXT DNS records and using next-gen firewalls are the two best ways to stop DNS tunneling.
upvoted 0 times
...
Millie
11 months ago
Hmm, I think I know the right approaches, but I want to double-check my understanding to be sure.
upvoted 0 times
...
Rodolfo
11 months ago
This question seems straightforward, but I want to make sure I understand the key concepts before answering.
upvoted 0 times
...
Chanel
11 months ago
This is a great question. I think the key is to use a combination of approaches, like blocking TXT records and using a solution like Cisco Umbrella to get comprehensive visibility and control over DNS traffic.
upvoted 0 times
...
Polly
11 months ago
Okay, I've got a plan. I'll focus on using security measures like an IPS and next-gen firewalls to monitor and block suspicious DNS traffic. Enforcing security on port 53 is also key.
upvoted 0 times
...
Graciela
11 months ago
This is a tricky one, but I think I can handle it. I'll need to really focus on the key points about DNS tunneling and how to stop it.
upvoted 0 times
...
Pete
11 months ago
Hmm, I'm a bit unsure about this one. I know DNS tunneling is a way to exfiltrate data, but I'm not totally clear on the best ways to prevent it. I'll have to think this through carefully.
upvoted 0 times
...
Shannon
11 months ago
This seems like a straightforward question about privacy. I'm pretty confident that the answer is A, Information Privacy.
upvoted 0 times
...
Tammara
11 months ago
This looks like a straightforward question about the functions of Action elements in OmniScript. I'll review the options carefully and select the three that best match the description.
upvoted 0 times
...
Jolanda
11 months ago
I've got this! Logic gates are fundamental to digital electronics and computer science. The answer is definitely A.
upvoted 0 times
...
Mitsue
11 months ago
Wasn't there a practice question about capability mapping? I'm kind of leaning toward that one, but it feels a bit shaky.
upvoted 0 times
...
Cecily
1 year ago
Wait, are we actually talking about DNS tunneling? I thought this was a question about making the perfect grilled cheese sandwich. Rookie mistake.
upvoted 0 times
...
Estrella
1 year ago
Hmm, B and D sound good in theory, but I'd be worried about false positives. C and E are probably the safer bets here.
upvoted 0 times
Carri
1 year ago
It's important to weigh the pros and cons of each approach before implementing.
upvoted 0 times
...
My
1 year ago
C and E are definitely safer options to consider.
upvoted 0 times
...
Juliana
1 year ago
I agree, false positives can be a concern with B and D.
upvoted 0 times
...
...
Ciara
1 year ago
Hah, blocking all TXT records? What is this, the '90s? Next-gen firewalls and Cisco Umbrella are definitely the way to go. Security-conscious and future-proof.
upvoted 0 times
Susy
1 year ago
E) Use Cisco Umbrella.
upvoted 0 times
...
Rozella
1 year ago
D) Use next generation firewalls.
upvoted 0 times
...
Mozell
1 year ago
A) Use intrusion prevention system.
upvoted 0 times
...
...
Marti
1 year ago
I'm not sure about blocking all TXT records, that could have some unintended consequences. I'd go with C and E - enforcing security on port 53 and using a solution like Cisco Umbrella.
upvoted 0 times
Tricia
1 year ago
I think using intrusion prevention system and next generation firewalls could also be effective in stopping DNS tunneling.
upvoted 0 times
...
Pamella
1 year ago
I agree, blocking all TXT records could cause issues. Enforcing security on port 53 and using Cisco Umbrella seems like a better approach.
upvoted 0 times
...
...
Teddy
1 year ago
B and D seem like the most straightforward options. Blocking all TXT DNS records and using next-gen firewalls should help mitigate DNS tunneling.
upvoted 0 times
...
Camellia
1 year ago
Enforcing security over port 53 is also important to stop DNS tunneling.
upvoted 0 times
...
Bulah
1 year ago
I agree with Erinn, blocking all TXT DNS records can also help.
upvoted 0 times
...
Erinn
1 year ago
I think using intrusion prevention system is a good approach.
upvoted 0 times
...

Save Cancel