Juniper
JN0-637 · Question #59
Referring to the exhibit, you are attempting to set up a remote access VPN on your SRX series devices. However you are unsure of which system services you should allow and in which zones they should…
The correct answer is A. You should add the host-inbound-traffic system-service ike statement to the Untrust zone. C. You should add the host-inbound-traffic system-service tcp-encap statement to the Untrust zone. You've hit your limit · resets 4am (America/New_York)
Site-to-Site and Remote Access VPNs
Question
Referring to the exhibit, you are attempting to set up a remote access VPN on your SRX series devices. However you are unsure of which system services you should allow and in which zones they should be allowed to correctly finish the remote access VPN configuration Which two statements are correct? (Choose two.)
Exhibit
Options
- AYou should add the host-inbound-traffic system-service ike statement to the Untrust zone.
- BYou should add the host-inbound-traffic system-service ike statement to the VPN zone.
- CYou should add the host-inbound-traffic system-service tcp-encap statement to the Untrust zone
- DYou should add the host-inbound-traffic system-service tcp-encap statement to the VPN zone
How the community answered
(48 responses)- A73% (35)
- B8% (4)
- D19% (9)
Explanation
You've hit your limit · resets 4am (America/New_York)
Topics
#remote access VPN#host-inbound-traffic#IKE system service#tcp-encap
Community Discussion
No community discussion yet for this question.
