nerdexam
Juniper

JN0-632 · Question #75

A user residing in the trust zone of the SRX Series device cannot access a Web page hosted on a server in the DMZ zone. You verity that an active security policy exists on the SRX device that allows…

The correct answer is B. No route exists on the SRX device to the destination server. See the full explanation below for the reasoning.

Question

A user residing in the trust zone of the SRX Series device cannot access a Web page hosted on a server in the DMZ zone. You verity that an active security policy exists on the SRX device that allows the user's PC to access the Web server with the application HTTP. However, you do not see the security policy access counter increment, nor do you see any information in the log file associated with the security policy. What is causing the problem?

Options

  • AA security policy exists further down the list that is denying the user access to Web server traffic
  • BNo route exists on the SRX device to the destination server.
  • CA firewall filter is applied to the egress interface.
  • DThe policy rematch option is disabled for the session configuration

How the community answered

(26 responses)
  • A
    8% (2)
  • B
    77% (20)
  • C
    4% (1)
  • D
    12% (3)

Community Discussion

No community discussion yet for this question.

Full JN0-632 Practice