nerdexam
Juniper

JN0-533 · Question #83

FTP connections from host 10.20.1.10 to server 192.168.1.100 are not working. You produce the output shown in the exhibit. What is causing the traffic problem? ssg20-> set address "Trust"…

The correct answer is B. The policy's destination address is incorrect. See the full explanation below for the reasoning.

Question

FTP connections from host 10.20.1.10 to server 192.168.1.100 are not working. You produce the output shown in the exhibit. What is causing the traffic problem? ssg20-> set address "Trust" "192.168.1.0/32" 10.20.1.0 255.255.255.0 ssg20-> set address "Untrust" "10.204.1.0/24" 10.204.1.0 255.255.255.0 ssg20-> set address "Untrust" "192.168.1.0/24" 192.168.1.0 255.255.255.255 ssg20-> get policy id 1 name:"none" (id 1), zone Trust -> Untrust,action Permit, status "enabled" src "192.168.1.0/32", dst "192.168.1.0/24", serv "FTP" Rules on this VPN policy: 0 nat off, Web filtering : disabled vpn unknown vpn, policy flag 00000000, session backup: on, idle reset:

on traffic shaping off, scheduler n/a, serv flag 00 log no, log count 0, alert no, counter no(0) byte rate(sec/min) 0/0 total octets 0, counter(session/packet/octet) 0/0/0 priority 7, diffserv marking Off tadapter: state off, gbw/mbw 0/0 policing (no) No Authentication No User, User Group or Group expression set

Options

  • AThe policy's source address is incorrect.
  • BThe policy's destination address is incorrect.
  • CThe policy's service is incorrect.
  • DThe policy does not have the FTP ALG enabled.

How the community answered

(28 responses)
  • A
    4% (1)
  • B
    79% (22)
  • C
    7% (2)
  • D
    11% (3)

Community Discussion

No community discussion yet for this question.

Full JN0-533 Practice