Juniper
JN0-632 · Question #133
You are having problems with SYN flood attacks against your network. You administered the TCP syn-flood options on your SRX device to block these attacks, but internal hosts are still seeing floods…
The correct answer is A. set security flow syn-flood-protection-mode syn-proxy D. set security flow syn-flood-protection-mode syn-cookie. See the full explanation below for the reasoning.
Question
You are having problems with SYN flood attacks against your network. You administered the TCP syn-flood options on your SRX device to block these attacks, but internal hosts are still seeing floods that fall just under the threshold you have set for blocking SYN floods. You cannot set the threshold any lower without impacting legitimate traffic. What are two SYN flood protection commands that you can use to resolve the problem? (Choose two.) Juniper JN0-632 Exam
Options
- Aset security flow syn-flood-protection-mode syn-proxy
- Bdisable security flow syn-flood-protection-mode syn-flood
- Cset security flow syn-flood-protection-mode [syn-proxy syn-cookie]
- Dset security flow syn-flood-protection-mode syn-cookie
How the community answered
(52 responses)- A73% (38)
- B8% (4)
- C19% (10)
Community Discussion
No community discussion yet for this question.