nerdexam
Juniper

JN0-633 · Question #105

You are asked to change the configuration of your company's SRX device so that you can block nested traffic from certain Web sites, but the main pages of these Web sites must remain available to…

The correct answer is B. Implement a firewall filter for Web traffic. D. Configure an application firewall rule set. An application layer gateway (ALG) is a feature on ScreenOS gateways that enables the gateway to parse application layer payloads and take decisions on them.ALGs are typically employedto support applications that use the application layer payload to communicate the dynamic…

Advanced Security Services (IDP, UTM)

Question

You are asked to change the configuration of your company's SRX device so that you can block nested traffic from certain Web sites, but the main pages of these Web sites must remain available to users. Which two methods will accomplish this goal? (Choose two.)

Options

  • AEnable the HTTP ALG.
  • BImplement a firewall filter for Web traffic.
  • CUse an IDP policy to inspect the Web traffic.
  • DConfigure an application firewall rule set.

How the community answered

(35 responses)
  • A
    6% (2)
  • B
    83% (29)
  • C
    11% (4)

Explanation

An application layer gateway (ALG) is a feature on ScreenOS gateways that enables the gateway to parse application layer payloads and take decisions on them.ALGs are typically employedto support applications that use the application layer payload to communicate the dynamic Transmission Control Protocol (TCP) or User Datagram Protocol (UDP) ports on which the applications open data connections IDP policy defines the rule for defining the type of traffic permittedon swconfig-security/enable-idp-security-policy-section.html)

Topics

#nested traffic blocking#application firewall#IDP policy#web filtering

Community Discussion

No community discussion yet for this question.

Full JN0-633 Practice