PrepAway - Latest Free Exam Questions & Answers

What will occur if Drop Packet is selected?

An SRX Series device is configured for inline tap mode. What will occur if Drop Packet is
selected?

PrepAway - Latest Free Exam Questions & Answers

A.
The SRX Series device drops a matching packet associated with the connection,
preventing traffic for the connection from reaching its destination.

B.
The SRX Series device drops a matching packet before it can reach its destination but
does not close the connection.

C.
The SRX Series device will ignore the action Drop Packet.

D.
The SRX Series device closes the connection and sends an RST packet to both the
client and the server.

12 Comments on “What will occur if Drop Packet is selected?

  1. ati says:

    Drop-Packet

    Drop-Packet will drop an individual offending packet, but not the rest of the session. Typically, you want to use the Drop-Connection action when malicious activity is detected on a flow, but in some cases, you might just want to prevent a particular activity that might be contained within a session (e.g., a file transfer) without dropping the entire session. Of course, this is highly dependent on the application’s architecture, so when in doubt, either research the application or just use Drop-Connection. Drop-Packet might be useful for attacks that consist of only a single packet (e.g., SQL Slammer), but this isn’t very common. Note that Drop-Packet will not have any impact in inline tap mode, as the original packet (not the copied one to the IPS engine) has already made it through the SRX and will be recorded as action DISMISS in the logs.




    0



    0
  2. Mr_Cas says:

    For those studying this dump, you had better correct many answers. I used this dump, made some corrections to it, and made a whopping 69 on the exam. Granted I passed as you only need 63 to pass, but to miss about 20 questions….OMG. So out of the 175 questions out here, I’m pretty sure almost 1/3rd of them are wrong. So again, I squeaked by, but for others using this dump, be forewarned….check your answers before studying or you’ll be studying wrong answers.




    0



    0

Leave a Reply