ExamGecko
Question list
Search
Search

List of questions

Search

Question 77 - JN0-335 discussion

Report
Export

Which sequence does an SRX Series device use when implementing stateful session security policies using Layer 3 routes?

A.
An SRX Series device will perform a security policy search before conducting a longest-match Layer 3 route table lookup.
Answers
A.
An SRX Series device will perform a security policy search before conducting a longest-match Layer 3 route table lookup.
B.
An SRX Series device performs a security policy search before implementing an ALG security check on the longest-match Layer 3 route.
Answers
B.
An SRX Series device performs a security policy search before implementing an ALG security check on the longest-match Layer 3 route.
C.
An SRX Series device will conduct a longest-match Layer 3 route table lookup before performing a security policy search.
Answers
C.
An SRX Series device will conduct a longest-match Layer 3 route table lookup before performing a security policy search.
D.
An SRX Series device conducts an ALG security check on the longest-match route before performing a security policy search.
Answers
D.
An SRX Series device conducts an ALG security check on the longest-match route before performing a security policy search.
Suggested answer: C

Explanation:

The sequence that an SRX Series device uses when implementing stateful session security policies using Layer 3 routes is:

An SRX Series device will conduct a longest-match Layer 3 route table lookup before performing a security policy search: When an SRX Series device receives a packet, it first looks up the destination IP address in the routing table and finds the longest matching route to forward the packet. Then, it performs a security policy search based on the source zone, destination zone, source address, destination address, protocol, and application of the packet. If there is a matching policy that allows the packet, it creates or updates a session entry for the packet and applies any security services configured in the policy.

asked 18/09/2024
DOMINIC FERNANDEZ
40 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first