You are asked to change the configuration of your company’s SRX device so that you can
block nested traffic from certain Web sites, but the main pages of these Web sites must
remain available to users. Which two methods will accomplish this goal? (Choose two.)
A.
Configure an application firewall rule set.
B.
Enable the HTTP ALG.
C.
Implement a firewall filter for Web traffic.
D.
Use an IDP policy to inspect the Web traffic.
Explanation:
A & D
A & C are correct why D?
I think A and C are Correct, check this link :
https://forums.juniper.net/jnet/attachments/jnet/srx/35518/1/How%20to%20block%20specific%20HTTPS%20URLs%20through%20Application%20Firewall.pdf
for god sake , how firewall filter will be able to accomplish this task ????????????????
The JNCIP-SEC JN0-633 exam End of Life (EOL) on July 1, 2017, now the new exam is JN0-634.
The newest JN0-634 dumps are available here FYI:
http://www.juniperbraindumps.com/category/juniper-junos-security-certification/jn0-634-dumps
Good Luck!!!