nerdexam
Juniper

JN0-696 · Question #51

Click the Exhibit button. A customer has a problem connecting to an SRX Series device from the untrust zone using SSH only. Referring to the exhibit, which action will solve the problem?

The correct answer is B. Configure the ssh parameter under the [edit security zones security-zone untrust hostinbound-. Assume that inbound ssh, ftp, and ping traffic should be permitted from the untrusted zone. Then you should do the following: [edit security zones] root# set security zone untrust host-inbound-traffic ssh root# set security zone untrust host- inbound-traffic ftp root# set…

Troubleshooting Zones and Screen Options

Question

Click the Exhibit button. A customer has a problem connecting to an SRX Series device from the untrust zone using SSH only. Referring to the exhibit, which action will solve the problem?

Exhibit

JN0-696 question #51 exhibit

Options

  • AConfigure the ssh parameter under the [edit security zones security-zone trust interfaces ge-
  • BConfigure the ssh parameter under the [edit security zones security-zone untrust hostinbound-
  • CConfigure the ssh parameter under the [edit security zones security-zone untrust hostinbound-
  • DConfigure the ssh parameter under the [edit security zones security-zone trust hostinbound-traffic

How the community answered

(45 responses)
  • A
    2% (1)
  • B
    82% (37)
  • C
    11% (5)
  • D
    4% (2)

Explanation

Assume that inbound ssh, ftp, and ping traffic should be permitted from the untrusted zone. Then you should do the following: [edit security zones] root# set security zone untrust host-inbound-traffic ssh root# set security zone untrust host- inbound-traffic ftp root# set security zone untrust host-inbound-traffic ping Note: For SRX Series branch devices, a factory default security policy is provided that: Allows all traffic from the trust zone to the untrust zone. Allows all traffic between trusted zones, that is from the trust zone to intrazone trusted zones. to/content/how-to-configure-srx-security-zones-with-junos.html zone-and-policyunderstanding.html

Topics

#host-inbound-traffic#SSH#untrust zone#security zones

Community Discussion

No community discussion yet for this question.

Full JN0-696 Practice