Exit JN0-634 Security, Professional (JNCIP-SEC)
Question 2 of 5
0% complete
Q2 Single choice

Click the Exhibit button.

Referring to the configuration shown in the exhibit, which statement explains why traffic matching the IDP signature DNS:OVERFLOW:TOO-LONG-TCP-MSG is not being stopped by the SRX Series device?

  • A

    The security policy dmz-pol1 has an action of permit.

  • B

    The IDP policy idp-pol1 is not configured as active.

  • C

    The IDP rule r2 has an ip-action value of notify.

  • D

    The IDP rule r1 has an action of ignore-connection.