A.security B.functional C.user D.system
单项选择题The SRX device receives a packet and determines that it does not match an existing session.After SCREEN options are evaluated, what is evaluated next?()
A. source NAT B. destination NAT C. route lookup D. zone lookup
多项选择题Which two parameters are configured in IPsec policy? ()(Choose two.)
A. mode B. IKE gateway C. security proposal D. Perfect Forward Secrecy
多项选择题At which two levels of the Junos CLI hierarchy is the host-inbound-traffic command configured? ()(Choose two.)
A. [edit security idp] B. [edit security zones security-zone trust interfaces ge-0/0/0.0] C. [edit security zones security-zone trust] D. [edit security screen]
单项选择题Which statement is true regarding the Junos OS for security platforms?()
A. SRX Series devices can store sessions in a session table. B. SRX Series devices accept all traffic by default. C. SRX Series devices must operate only in packet-based mode. D. SRX Series devices must operate only in flow-based mode.
多项选择题Which three advanced permit actions within security policies are valid?() (Choose three.)
A. Mark permitted traffic for firewall user authentication. B. Mark permitted traffic for SCREEN options. C. Associate permitted traffic with an IPsec tunnel. D. Associate permitted traffic with a NAT rule. E. Mark permitted traffic for IDP processing.