nerdexam
Juniper

JN0-332 · Question #381

A server in the DMZ of your company is under attack. The attacker is opening a large number of TCP connections to your server which causes resource utilization problems on the server. All of the…

The correct answer is A. Apply the Junos Screen option limit-session source-based-ip to the Untrust security zone. See the full explanation below for the reasoning.

Question

A server in the DMZ of your company is under attack. The attacker is opening a large number of TCP connections to your server which causes resource utilization problems on the server. All of the connections from the attacker appear to be coming from a single IP address. Referring to the exhibit, which Junos Screen option should you enable to limit the effects of the attack while allowing legitimate traffic?

Exhibit

JN0-332 question #381 exhibit

Options

  • AApply the Junos Screen option limit-session source-based-ip to the Untrust security zone.
  • BApply the Junos Screen option limit-session source-based-ip to the DMZ security zone.
  • CApply the Junos Screen option limit-session destination-based-ip to the Untrust security zone.
  • DApply the Junos Screen option limit-session destination-based-ip to the DMZ security zone.

How the community answered

(40 responses)
  • A
    75% (30)
  • B
    5% (2)
  • C
    15% (6)
  • D
    5% (2)

Community Discussion

No community discussion yet for this question.

Full JN0-332 Practice