Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Palo Alto Networks Exam NetSec-Pro Topic 2 Question 7 Discussion

Actual exam question for Palo Alto Networks's NetSec-Pro exam
Question #: 7
Topic #: 2
[All NetSec-Pro Questions]

A network administrator obtains Palo Alto Networks Advanced Threat Prevention and Advanced DNS Security subscriptions for edge NGFWs and is setting up security profiles. Which step should be included in the initial configuration of the Advanced DNS Security service?

Show Suggested Answer Hide Answer
Suggested Answer: C

Advanced DNS Security uses a signature policy to sinkhole malicious DNS queries and prevent them from resolving.

''The DNS Security service integrates with Anti-Spyware profiles, and you must configure signature policy settings to sinkhole malicious queries. This proactively stops traffic to known malicious domains.''

(Source: Configure DNS Security)

Sinkholing ensures that DNS queries to malicious FQDNs are redirected to a safe IP, preventing compromise.


Contribute your Thoughts:

Denna
6 days ago
I think C is the right answer. Sinkholing malicious DNS queries is key to the Advanced DNS Security service.
upvoted 0 times
Darci
2 days ago
I agree, sinkholing malicious DNS queries is crucial for security.
upvoted 0 times
...
...
Cristy
6 days ago
I disagree, I believe the answer is A.
upvoted 0 times
...
Johnson
10 days ago
I think the answer is C.
upvoted 0 times
...

Save Cancel