フリー問題

Designing and Implementing Secure Cloud Access for Users and Endpoints v2.0 のフリー問題 15 / 20 問目

問題文

A firewall team runs a default-deny ruleset and asks what the roaming security module needs so that its DNS queries stay encrypted. What does the documentation state about those queries?

選択肢

  1. The module sends the queries in the clear to port 53, and relies on the TCP tunnel to the Secure Web Gateway (SWG) for confidentiality and integrity.
  2. The module encrypts the queries only when the endpoint is off the corporate network (roaming), and it falls back to the clear inside it.
  3. The module encrypts the queries on port 853 over TCP only, and an administrator has to enable that behavior in the profile before it takes effect.
  4. The module supports encryption of the queries on port 443 over TCP or UDP, and it turns encryption on by itself once it senses that 443 over UDP is open.

解答・解説を確認するには

正解と解説の確認、回答の記録には無料登録が必要です。登録すると演習モードでフリー問題に回答し、正誤と解説をその場で確認できます。