Which two statements are correct about security zones on an SRX Series device? (Choose two.)
A.
Security zones can be shared between routing instances.
B.
Security zones cannot be shared between routing instances.
C.
Intrazone and interzone traffic both require security policies.
D.
Multiple security zones cannot be configured on an SRX Series device.
The Answer Is:
B, C
This question includes an explanation.
Explanation:
Routing instances:Security zones are local to their routing instance. Theycannot be shared between routing instances(Option B is correct). Each routing instance must define its own zones.
Intrazone and interzone traffic:Both types of traffic require policies in Junos OS. Intrazone traffic must have an explicit intra-zone policy to be controlled (Option C is correct).
Sharing zones:Option A is incorrect, as zones cannot span routing instances.
Multiple zones:SRX devices fully support multiple security zones (trust, untrust, DMZ, etc.). Option D is incorrect.
Correct Statements:B and C
[Reference:Juniper Networks –Security Zones and Routing Instances, Junos OS Security Fundamentals., ]
JN0-232 PDF/Engine
Printable Format
Value of Money
100% Pass Assurance
Verified Answers
Researched by Industry Experts
Based on Real Exams Scenarios
100% Real Questions
Get 75% Discount on All Products,
Use Coupon: "ac75sure"