nerdexam
Juniper

JN0-231 · Question #108

An application firewall processes the first packet in a session for which the application has not yet been identified. In this scenario, which action does the application firewall take on the packet?

The correct answer is D. It holds the first packet until the application is identified. This is necessary to ensure that the application firewall can properly identify the application and the correct security policies can be applied before allowing any traffic to pass through. If the first packet was allowed to pass without first being identified, then the…

Security Policies

Question

An application firewall processes the first packet in a session for which the application has not yet been identified. In this scenario, which action does the application firewall take on the packet?

Options

  • AIt allows the first packet.
  • BIt denies the first packet and sends an error message to the user.
  • CIt denies the first packet.
  • DIt holds the first packet until the application is identified.

How the community answered

(46 responses)
  • A
    13% (6)
  • B
    4% (2)
  • C
    9% (4)
  • D
    74% (34)

Explanation

This is necessary to ensure that the application firewall can properly identify the application and the correct security policies can be applied before allowing any traffic to pass through. If the first packet was allowed to pass without first being identified, then the application firewall would not know which security policies to apply - and this could potentially lead to security vulnerabilities or breaches. So it's important that the first packet is held until the application is identified.

Topics

#application firewall#AppFW#session identification#packet buffering

Community Discussion

No community discussion yet for this question.

Full JN0-231 Practice