nerdexam
Juniper

JN0-637 · Question #59

Referring to the exhibit, you are attempting to set up a remote access VPN on your SRX series devices. However you are unsure of which system services you should allow and in which zones they should…

The correct answer is A. You should add the host-inbound-traffic system-service ike statement to the Untrust zone. C. You should add the host-inbound-traffic system-service tcp-encap statement to the Untrust zone. You've hit your limit · resets 4am (America/New_York)

Site-to-Site and Remote Access VPNs

Question

Referring to the exhibit, you are attempting to set up a remote access VPN on your SRX series devices. However you are unsure of which system services you should allow and in which zones they should be allowed to correctly finish the remote access VPN configuration Which two statements are correct? (Choose two.)

Exhibit

JN0-637 question #59 exhibit

Options

  • AYou should add the host-inbound-traffic system-service ike statement to the Untrust zone.
  • BYou should add the host-inbound-traffic system-service ike statement to the VPN zone.
  • CYou should add the host-inbound-traffic system-service tcp-encap statement to the Untrust zone
  • DYou should add the host-inbound-traffic system-service tcp-encap statement to the VPN zone

How the community answered

(48 responses)
  • A
    73% (35)
  • B
    8% (4)
  • D
    19% (9)

Explanation

You've hit your limit · resets 4am (America/New_York)

Topics

#remote access VPN#host-inbound-traffic#IKE system service#tcp-encap

Community Discussion

No community discussion yet for this question.

Full JN0-637 Practice