nerdexam
Juniper

JN0-635 · Question #55

Referring to the exhibit, a user with IP address 10.1.1.85 generates a request that triggers the HTTP:EXT:DOT-LNK IDP signature that is a member of the "HTTP - All" predefined attack group. In this…

The correct answer is A. The session will be closed and a reset sent to the client and server. The actions are listed in the ascending order of severity from low to high. The most severe action is used when there are multiple rule hits for a single session. statement/security-edit-action.html

Unified Threat Management (UTM) and IDP

Question

Referring to the exhibit, a user with IP address 10.1.1.85 generates a request that triggers the HTTP:EXT:DOT-LNK IDP signature that is a member of the "HTTP - All" predefined attack group. In this scenario, which statement is true?

Exhibit

JN0-635 question #55 exhibit

Options

  • AThe session will be closed and a reset sent to the client and server.
  • BA Differentiated Services code point value of 8 will be applied.
  • CNo action will be taken and the attack information will be logged.
  • DThe session will be dropped with no reset sent to the client or server.

How the community answered

(36 responses)
  • A
    81% (29)
  • B
    6% (2)
  • C
    11% (4)
  • D
    3% (1)

Explanation

The actions are listed in the ascending order of severity from low to high. The most severe action is used when there are multiple rule hits for a single session. statement/security-edit-action.html

Topics

#IDP signatures#attack groups#session actions#IDP policy

Community Discussion

No community discussion yet for this question.

Full JN0-635 Practice