ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 58 - JN0-636 discussion

Report
Export

You want to use selective stateless packet-based forwarding based on the source address.

In this scenario, which command will allow traffic to bypass the SRX Series device flow daemon?

A.
set firewall family inet filter bypaa3_flowd term t1 then skip—services accept
Answers
A.
set firewall family inet filter bypaa3_flowd term t1 then skip—services accept
B.
set firewall family inet filter bypass_flowd term t1 then routing-instance stateless
Answers
B.
set firewall family inet filter bypass_flowd term t1 then routing-instance stateless
C.
set firewall family inet filter bypas3_flowd term t1 then virtual-channel stateless
Answers
C.
set firewall family inet filter bypas3_flowd term t1 then virtual-channel stateless
D.
set firewall family inet filter bypass__f lowd term t1 then packet—mode
Answers
D.
set firewall family inet filter bypass__f lowd term t1 then packet—mode
Suggested answer: D

Explanation:

The command that will allow traffic to bypass the SRX Series device flow daemon based on the source address is set firewall family inet filter bypass_flowd term t1 then packet-mode. This command configures a stateless firewall filter named bypass_flowd that has one term t1. The term t1 can match the traffic based on the source address or any other criteria. The term t1 then applies the action packet-mode, which means that the traffic will be forwarded using packet-based processing and will not be sent to the flow daemon for stateful inspection. This feature is known as selective stateless packet-based forwarding and it allows you to use both flow-based and packet-based forwarding on the same device for different types of traffic. You can apply the firewall filter to the input or output direction of an interface to enable selective stateless packet-based forwarding for the traffic passing through that interface. Reference: Juniper Security, Professional (JNCIP-SEC) Reference Materials source and documents:

https://www.juniper.net/documentation/en_US/junos/topics/concept/firewall-filter-option-filterbased-forwarding-overview.html

https://www.juniper.net/documentation/en_US/junos/topics/example/filter-based-forwardingexample.html

asked 18/09/2024
Krzychu Kn
42 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first