ExamGecko
Question list
Search
Search

List of questions

Search

Question 7 - JN0-335 discussion

Report
Export

You administer a JSA host and want to include a rule that sets a threshold for excessive firewall denies and sends an SNMP trap after receiving related syslog messages from an SRX Series firewall.

Which JSA rule type satisfies this requirement?

A.
common
Answers
A.
common
B.
offense
Answers
B.
offense
C.
flow
Answers
C.
flow
D.
event
Answers
D.
event
Suggested answer: D

Explanation:

To include a rule that sets a threshold for excessive firewall denies and sends an SNMP trap after receiving related syslog messages from an SRX Series firewall, you need to use an event rule type in JSA. An event rule type allows you to create custom rules based on the events that are collected and normalized by JSA from various sources, such as firewalls, routers, switches, servers, and so on. You can define the conditions, tests, and actions for an event rule, such as matching a specific event name, setting a threshold for the number of occurrences, and sending an SNMP trap to a specified host.Reference:=Creating a Custom Rule,Customizing the SNMP Trap Output

asked 18/09/2024
Maria Deras
40 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first