Juniper
JN0-332 · Question #381
A server in the DMZ of your company is under attack. The attacker is opening a large number of TCP connections to your server which causes resource utilization problems on the server. All of the…
The correct answer is A. Apply the Junos Screen option limit-session source-based-ip to the Untrust security zone. See the full explanation below for the reasoning.
Question
A server in the DMZ of your company is under attack. The attacker is opening a large number of TCP connections to your server which causes resource utilization problems on the server. All of the connections from the attacker appear to be coming from a single IP address. Referring to the exhibit, which Junos Screen option should you enable to limit the effects of the attack while allowing legitimate traffic?
Exhibit
Options
- AApply the Junos Screen option limit-session source-based-ip to the Untrust security zone.
- BApply the Junos Screen option limit-session source-based-ip to the DMZ security zone.
- CApply the Junos Screen option limit-session destination-based-ip to the Untrust security zone.
- DApply the Junos Screen option limit-session destination-based-ip to the DMZ security zone.
How the community answered
(40 responses)- A75% (30)
- B5% (2)
- C15% (6)
- D5% (2)
Community Discussion
No community discussion yet for this question.
