You need to control SSH, HTTP, and Telnet access to an MX240 router through any interface. You have decided to use a firewall filter. How should you apply the firewall filter?
A.
as an outbound filter on interface fxp0
B.
as an outbound filter on interface lo0
C.
as an inbound filter on interface fxp0
D.
as an inbound filter on interface lo0
D.
as an inbound filter on interface lo0
All management traffic destined to local device must to be applied on Lo0
check this article at the end of it for a brief answer http://kb.juniper.net/InfoCenter/index?page=content&id=KB21326&actp=RSS