nerdexam
Juniper

JN0-343 · Question #434

JN0-343 Question #434: Real Exam Question with Answer & Explanation

Sign in or unlock JN0-343 to reveal the answer and full explanation for question #434. The question stem and answer options stay visible for context.

Question

You have a device that is sending a malicious packet to other devices in your Layer 2 network. You are asked to ensure that packets sent from this device are not allowed to enter your network. You must also keep track of the number of packets that are being received. The device's IP address is 10.100.0.254. You have created and applied the firewall filter shown in the exhibit to the correct port. However, traffic is still being forwarded into the network. {master:0}[edit] user@switch# show firewall family ethernet-switching { filter block-traffic { term count { from { source-address { 10.100.0.254/32; } } then count blocked-subnet; } term reject-traffic { from { source-address { 10.100.0.254/32; } } then discard; } term accept-rest { then accept; } } } What is causing the problem?

Options

  • AThe reject-traffic term must be placed before the count term.
  • BThe filter family is incorrect for a port based filter.
  • CLayer 2 firewall filters do not have visibility to the Layer 3 header information.
  • DThe count term is implicitly accepting the traffic.

Unlock JN0-343 to see the answer

You've previewed enough free JN0-343 questions. Unlock JN0-343 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Full JN0-343 Practice