Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Cisco Exam 350-701 Topic 4 Question 74 Discussion

Actual exam question for Cisco's 350-701 exam
Question #: 74
Topic #: 4
[All 350-701 Questions]

What are two recommended approaches to stop DNS tunneling for data exfiltration and command and control call backs? (Choose two.)

Show Suggested Answer Hide Answer
Suggested Answer: C

Contribute your Thoughts:

Ciara
9 days ago
Hah, blocking all TXT records? What is this, the '90s? Next-gen firewalls and Cisco Umbrella are definitely the way to go. Security-conscious and future-proof.
upvoted 0 times
...
Marti
14 days ago
I'm not sure about blocking all TXT records, that could have some unintended consequences. I'd go with C and E - enforcing security on port 53 and using a solution like Cisco Umbrella.
upvoted 0 times
Pamella
2 days ago
I agree, blocking all TXT records could cause issues. Enforcing security on port 53 and using Cisco Umbrella seems like a better approach.
upvoted 0 times
...
...
Teddy
18 days ago
B and D seem like the most straightforward options. Blocking all TXT DNS records and using next-gen firewalls should help mitigate DNS tunneling.
upvoted 0 times
...
Camellia
24 days ago
Enforcing security over port 53 is also important to stop DNS tunneling.
upvoted 0 times
...
Bulah
25 days ago
I agree with Erinn, blocking all TXT DNS records can also help.
upvoted 0 times
...
Erinn
30 days ago
I think using intrusion prevention system is a good approach.
upvoted 0 times
...

Save Cancel
az-700  pass4success  az-104  200-301  200-201  cissp  350-401  350-201  350-501  350-601  350-801  350-901  az-720  az-305  pl-300  

Warning: Cannot modify header information - headers already sent by (output started at /pass.php:70) in /pass.php on line 77