Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Juniper Exam JN0-231 Topic 4 Question 33 Discussion

Actual exam question for Juniper's JN0-231 exam
Question #: 33
Topic #: 4
[All JN0-231 Questions]

Which security policy type will be evaluated first?

Show Suggested Answer Hide Answer
Suggested Answer: D

By default, TCP has a 30-minute idle timeout, and UDP has a 60-second idle timeout. Additionally, known IP protocols have a 30-minute timeout, whereas unknown ones have a 60-second timeout. Setting the inactivity timeout is very useful, particularly if you are concerned about applications either timing out or remaining idle for too long and filling up the session table. According to the Juniper SRX Series Services Guide, this can be configured using the 'timeout inactive' statement for the security policy.


Contribute your Thoughts:

Rachael
3 days ago
Hmm, I'm thinking it's gotta be the zone policy with no dynamic application set. That sounds like the most basic and straightforward option, right?
upvoted 0 times
...
Myra
10 days ago
But the zone policy is more specific, so it should take precedence.
upvoted 0 times
...
Leonida
12 days ago
I disagree, I believe a global policy with a dynamic application set will be evaluated first.
upvoted 0 times
...
Myra
17 days ago
I think the zone policy with a dynamic application set will be evaluated first.
upvoted 0 times
...

Save Cancel
az-700  pass4success  az-104  200-301  200-201  cissp  350-401  350-201  350-501  350-601  350-801  350-901  az-720  az-305  pl-300  

Warning: Cannot modify header information - headers already sent by (output started at /pass.php:70) in /pass.php on line 77