nerdexam
Juniper

JN0-637 · Question #106

Referring to the exhibit, which statement about TLS 1.2 traffic is correct?

The correct answer is B. TLS 1.2 traffic will be sent to routing instance R1 and forwarded to next hop 10.1.0.1. The configuration in the image is using Advance Policy-Based Routing (APBR) to steer traffic based on application type. Profile profile1 has two rules: - Web-Proxy matches dynamic-application [ junos:HTTP junos:HTTPS ] and routes to routing- - DNS matches…

Granular Security Policies

Question

Referring to the exhibit, which statement about TLS 1.2 traffic is correct?

Exhibit

JN0-637 question #106 exhibit

Options

  • ATLS 1.2 traffic will be sent to routing instance R1 but not forwarded to the next hop.
  • BTLS 1.2 traffic will be sent to routing instance R1 and forwarded to next hop 10.1.0.1.
  • CTLS 1.2 traffic will be sent to routing instance R2 but not forwarded to the next hop.
  • DTLS 1.2 traffic will be sent to routing instance R2 and forwarded to next hop 10.2.0.1.

How the community answered

(43 responses)
  • A
    9% (4)
  • B
    70% (30)
  • C
    19% (8)
  • D
    2% (1)

Explanation

The configuration in the image is using Advance Policy-Based Routing (APBR) to steer traffic based on application type. Profile profile1 has two rules: - Web-Proxy matches dynamic-application [ junos:HTTP junos:HTTPS ] and routes to routing- - DNS matches dynamic-application-group junos:DNS and routes to routing-instance R2. TLS 1.2 is based on HTTPS. TLS 1.2 traffic matches junos:HTTPS, which is covered under the Web-Proxy rule. This traffic is routed to routing-instance R1. R1 has a static route: route 192.168.0.0/16 next-hop 10.1.0.1;

Topics

#TLS 1.2#APBR#routing instance#next hop

Community Discussion

No community discussion yet for this question.

Full JN0-637 Practice