PrepAway - Latest Free Exam Questions & Answers

which three (3) items?

Ac Access Policy must contain which three (3) items?

PrepAway - Latest Free Exam Questions & Answers

A.
Service

B.
Authentication

C.
Source address

D.
Firewall settings

E.
Action (permit, deny, tunnel)

Explanation:
A policy permits, denies, or tunnels specified types of traffic unidirectionally between two points. The type of traffic (or "service"), the location of the two endpoints, and the invoked action compose the basic elements of a policy. Although there can be other components, the required elements, which together constitute the core section of a policy, are as follows:
Direction – The direction of traffic between two security zones (from a source zone to a destination zone)
Source address – The address from which traffic initiates Destination address – The address to which traffic is sent Service – The type of traffic transmitted
Action – The action that the NetScreen device performs when it receives traffic meeting the first four criteria: deny, permit, reject, or tunnel For example, the policy stated in the following CLI command permits FTP traffic from any address in the Trust zone to an FTP server named "server1" in the DMZ zone:
set policy from trust to untrust any server1 ftp permit Direction: from trust to untrust (that is, from the Trust zone to the Untrust zone) Source Address: any (that is, any address in the Trust zone. The term "any" stands for a predefined
address that applies to any address in a zone)
Destination Address: server1 (a user-defined address in the Untrust zone address book)
Service: ftp (File Transfer Protocol)
Action: permit (that NetScreen device permits this traffic to traverse its firewall)


Leave a Reply