Referring to the configuration shown in the exhibit, which statement explains why traffic matching the IDP signature DNS:OVERFLOW:TOO-LONG-TCP-MSG is not being stopped by the SRX Series device?

Posted by: Pdfprep Category: JN0-634 Tags: , ,

Click the Exhibit button.

Referring to the configuration shown in the exhibit, which statement explains why traffic matching the IDP signature DNS:OVERFLOW:TOO-LONG-TCP-MSG is not being stopped by the SRX Series device?
A . The security policy dmz-pol1 has an action of permit.
B . The IDP policy idp-pol1 is not configured as active.
C . The IDP rule r2 has an ip-action value of notify.
D . The IDP rule r1 has an action of ignore-connection.

Answer: B

Leave a Reply

Your email address will not be published.