Summer Certification Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: force70

Paloalto Networks Palo Alto Networks Security Service Edge Engineer SSE-Engineer Question # 8 Topic 1 Discussion

Paloalto Networks Palo Alto Networks Security Service Edge Engineer SSE-Engineer Question # 8 Topic 1 Discussion

SSE-Engineer Exam Topic 1 Question 8 Discussion:
Question #: 8
Topic #: 1

A malicious user is attempting to connect to a blocked website by crafting a packet using a fake SNI and the correct website in the HTTP host header. Which option will prevent this form of attack?


A.

Advanced Threat Prevention option to block " Domain Fronting "


B.

Advanced URL Filtering and block the " Malicious Behavior " category


C.

Advanced URL Filtering and block " SNI mismatch with Server Certificate (SAN/CN) "


D.

SSL Decryption to " Block sessions on SNI mismatch with Server Certificate (SAN/CN) "


Get Premium SSE-Engineer Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.