ExamGecko
Question list
Search
Search

List of questions

Search

Question 25 - JN0-335 discussion

Report
Export

Which two statements are correct about security policy changes when using the policy rematch feature? (Choose two.)

A.
When a policy change includes changing the policy's action from permit to deny, all existing sessions are maintained
Answers
A.
When a policy change includes changing the policy's action from permit to deny, all existing sessions are maintained
B.
When a policy change includes changing the policy's source or destination address match condition, all existing sessions are dropped.
Answers
B.
When a policy change includes changing the policy's source or destination address match condition, all existing sessions are dropped.
C.
When a policy change includes changing the policy's action from permit to deny, all existing sessions are dropped.
Answers
C.
When a policy change includes changing the policy's action from permit to deny, all existing sessions are dropped.
D.
When a policy change includes changing the policy's source or destination address match condition, all existing sessions are reevaluated.
Answers
D.
When a policy change includes changing the policy's source or destination address match condition, all existing sessions are reevaluated.
Suggested answer: C, D

Explanation:

policy rematch is a feature that enables the device to reevaluate an active session when its associated security policy is modified. The session remains open if it still matches the policy that allowed the session initially.The session is closed if its associated policy is renamed, deactivated, or deleted1.

asked 18/09/2024
RJ MOTAUNG
36 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first