Which SD-WAN security feature blocks malware, phishing, and other unacceptable DNS requests to improve user Internet access performance?
Choose an answer
Tap an option to check your answer.
Correct answer: DNS-layer enforcement.
Why this is the answer
DNS-layer enforcement blocks malicious domains at the DNS resolution stage, preventing connections to known bad sites for malware, phishing, and other threats. This improves security and user experience by stopping threats before they reach the user's device and by reducing unnecessary traffic. SaaS usage controls manage access to specific cloud applications, not general threat blocking. A cloud-delivered firewall provides broader network security, including intrusion prevention and advanced threat protection, but DNS-layer enforcement is a specific, efficient method for blocking at the DNS level. Correlated threat intel is data used to identify threats, not a security feature itself.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed