Referring to the configuration shown in the exhibit, which statement explains why traffic matching the IDP signature DNS:OVERFLOW:TOO-LONG-TCP-MSG is not being stopped by the SRX Series device?

Click the Exhibit button.

Referring to the configuration shown in the exhibit, which statement explains why traffic matching the IDP signature DNS:OVERFLOW:TOO-LONG-TCP-MSG is not being stopped by the SRX Series device?
A . The security policy dmz-pol1 has an action of permit.
B . The IDP policy idp-pol1 is not configured as active.
C . The IDP rule r2 has an ip-action value of notify.
D . The IDP rule r1 has an action of ignore-connection.

Answer: B

Subscribe
Notify of
guest
0 Comments
Inline Feedbacks
View all comments