nerdexam
Juniper

JN0-632 · Question #133

You are having problems with SYN flood attacks against your network. You administered the TCP syn-flood options on your SRX device to block these attacks, but internal hosts are still seeing floods…

The correct answer is A. set security flow syn-flood-protection-mode syn-proxy D. set security flow syn-flood-protection-mode syn-cookie. See the full explanation below for the reasoning.

Question

You are having problems with SYN flood attacks against your network. You administered the TCP syn-flood options on your SRX device to block these attacks, but internal hosts are still seeing floods that fall just under the threshold you have set for blocking SYN floods. You cannot set the threshold any lower without impacting legitimate traffic. What are two SYN flood protection commands that you can use to resolve the problem? (Choose two.) Juniper JN0-632 Exam

Options

  • Aset security flow syn-flood-protection-mode syn-proxy
  • Bdisable security flow syn-flood-protection-mode syn-flood
  • Cset security flow syn-flood-protection-mode [syn-proxy syn-cookie]
  • Dset security flow syn-flood-protection-mode syn-cookie

How the community answered

(52 responses)
  • A
    73% (38)
  • B
    8% (4)
  • C
    19% (10)

Community Discussion

No community discussion yet for this question.

Full JN0-632 Practice