Juniper
JN0-633 · Question #89
Click the Exhibit button. You receive complaints from users that their Web browsing sessions keep dropping prematurely. Upon investigation, you find that the IDP policy shown in the exhibit is…
The correct answer is D. Modify the IDP policy to add an exempt rulebase rule to not inspect for this attack. See the full explanation below for the reasoning.
Question
Click the Exhibit button. You receive complaints from users that their Web browsing sessions keep dropping prematurely. Upon investigation, you find that the IDP policy shown in the exhibit is detecting the users' sessions as HTTP:WIN-CMD:WIN-CMD-EXE attacks, even though their sessions are not actual attacks. You must allow these sessions but still inspect for all other relevant attacks. How would you configure your SRX device to meet this goal?
Exhibit
Options
- ACreate a new security policy that allows HTTP for all users and does not apply IDP.
- BModify the security policy to add an application exception.
- CModify the IDP policy to delete this particular attack from the IDP rulebase.
- DModify the IDP policy to add an exempt rulebase rule to not inspect for this attack.
How the community answered
(43 responses)- A7% (3)
- B14% (6)
- C2% (1)
- D77% (33)
Community Discussion
No community discussion yet for this question.
