nerdexam
Juniper

JN0-332 · Question #431

An attacker from IP address 1.1.1.2 is filling your SRX Series device's session table with TCP sessions that have all completed a legitimate three-way handshake. What will help throttle the attack?

The correct answer is D. limit-session source-ip-based. See the full explanation below for the reasoning.

Question

An attacker from IP address 1.1.1.2 is filling your SRX Series device's session table with TCP sessions that have all completed a legitimate three-way handshake. What will help throttle the attack?

Options

  • Asyn-flood destination-threshold
  • Bsyn-ack-ack-proxy
  • Climit-session destination-ip-based
  • Dlimit-session source-ip-based

How the community answered

(70 responses)
  • A
    4% (3)
  • B
    3% (2)
  • C
    13% (9)
  • D
    80% (56)

Community Discussion

No community discussion yet for this question.

Full JN0-332 Practice