nerdexam
Juniper

JN0-696 · Question #26

Your SRX Series device has the following configuration: user@host> show security policies ... Policy: my-policy, State: enabled, Index: 5, Sequence number: 1 Source addresses: any Destination…

The correct answer is B. the reject action. See the full explanation below for the reasoning.

Question

Your SRX Series device has the following configuration:

user@host> show security policies ... Policy: my-policy, State: enabled, Index: 5, Sequence number: 1 Source addresses: any Destination addresses: any Applications: snmp Action: reject From zone: trust, To zone: untrust ... When traffic matches my-policy, you want the device to silently drop the traffic; however, you notice that the device is replying with ICMP unreachable messages instead. What is causing this behavior?

Options

  • Athe snmp application
  • Bthe reject action
  • Cthe trust zone
  • Dthe untrust zone

How the community answered

(43 responses)
  • A
    7% (3)
  • B
    74% (32)
  • C
    5% (2)
  • D
    14% (6)

Community Discussion

No community discussion yet for this question.

Full JN0-696 Practice