Juniper
JN0-332 · Question #318
You have just added the policy deny-host-a to prevent traffic from Host A that was previously allowed by the policy permit-all. After committing the changes, you notice that all traffic, including…
The correct answer is D. insert security policies from-zone trust to-zone untrust policy deny-host-a before policy permit- all. See the full explanation below for the reasoning.
Question
You have just added the policy deny-host-a to prevent traffic from Host A that was previously allowed by the policy permit-all. After committing the changes, you notice that all traffic, including traffic from Host A, is still allowed. Which configuration statement will prevent traffic from Host A, while still allowing other hosts to send traffic?
Options
- Aactivate security policies from-zone trust to-zone untrust policy deny-host-a
- Bdeactivate security policies from-zone trust to-zone untrust policy permit-all
- Cdelete security policies from-zone trust to-zone untrust policy permit-all
- Dinsert security policies from-zone trust to-zone untrust policy deny-host-a before policy permit- all
How the community answered
(37 responses)- A8% (3)
- B3% (1)
- C5% (2)
- D84% (31)
Community Discussion
No community discussion yet for this question.