nerdexam
Juniper

JN0-522 · Question #141

Your security policy requires you to block DNS zone transfers (TCP port 53) while permitting DNS queries (UDP port 53). Which step must you complete before creating the policy?

The correct answer is D. Create a custom service using TCP port 53 as the destination port. See the full explanation below for the reasoning.

Question

Your security policy requires you to block DNS zone transfers (TCP port 53) while permitting DNS queries (UDP port 53). Which step must you complete before creating the policy?

Options

  • AModify the predefined DNS service to remove TCP port 53.
  • BModify the predefined DNS application to remove TCP port 53.
  • CCreate a custom service using UDP port 53 as the source port.
  • DCreate a custom service using TCP port 53 as the destination port.

How the community answered

(36 responses)
  • A
    3% (1)
  • B
    8% (3)
  • C
    6% (2)
  • D
    83% (30)

Community Discussion

No community discussion yet for this question.

Full JN0-522 Practice