Click the Exhibit button.
Referring to the configuration shown in the exhibit, which statement explains why traffic matching the IDP signature DNS:OVERFLOW:TOO-LONG-TCP-MSG is not being stopped by the SRX Series device?
A . The security policy dmz-pol1 has an action of permit.
B . The IDP policy idp-pol1 is not configured as active.
C . The IDP rule r2 has an ip-action value of notify.
D . The IDP rule r1 has an action of ignore-connection.
Answer: B