exam questions

Exam 200-901 All Questions

View all questions & answers for the 200-901 exam

Exam 200-901 topic 1 question 137 discussion

Actual exam question from Cisco's 200-901
Question #: 137
Topic #: 1
[All 200-901 Questions]

Which tool is used to block all traffic to the domain by using a single API call?

  • A. Cisco Firepower
  • B. Cisco AMP
  • C. Cisco Umbrella
  • D. Cisco ISE
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Frank338
Highly Voted 10 months, 3 weeks ago
Cisco Umbrella is a Domain Name System (DNS)-based security mechanism that can provide common security for both on-premises and off-premises to provide endpoint security. Cisco Umbrella on-premises deployments do not require an agent to be installed on the endpoint. The firewall is good for blocking inbound threats, but consider threats that originate inside the network. These threats cannot be stopped by perimeter security because they are already behind the firewall. Cisco Umbrella can block client connections at the application layer, regardless of network connection or perimeter security, by preventing the client from resolving DNS for the remote destination. If the client cannot resolve DNS for the remote destination, it cannot establish a connection and download the malware. Cisco Umbrella can be used to prevent connections to malicious websites or to websites that violate corporate security policy.
upvoted 12 times
...
ThePokemonNuzlockingMaster
Most Recent 7 months, 1 week ago
Selected Answer: C
Definitely Umbrella
upvoted 1 times
...
anonymous1966
8 months ago
Selected Answer: C
KeyWord = domain Umbrella blocks access to malicious domains, URLs, IPs, and files. The system looks at the nature of any DNS requests and takes an action based on its threat intelligence, which is a large-scale repository of historical data about threats. In turn, Umbrella is building models that classify requests so that you build on its threat intelligence. These requests can be safe and allowed, malicious and blocked, or deemed "risky" and sent to a proxy for deeper inspection.
upvoted 1 times
...
anagy11
9 months ago
Selected Answer: C
I think it should be C - Umbrella but I think Firepower can also do that sort of deny action
upvoted 1 times
...
sds85
9 months, 2 weeks ago
Selected Answer: C
Umbrella works with URLs and Firepower with ACLs. https://developer.cisco.com/docs/cloud-security/#!enforcement-introduction-overview/overview
upvoted 2 times
...
king_ragnar
11 months, 2 weeks ago
Why not Umbrella?
upvoted 4 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...