You want to control bursts of HTTP traffic entering your SRX Series Gateway. To support varying
requirements, interfaces ge-0/0/0 through ge-0/0/3 should each be rate-limited separately, using
the same parameters.
What is the correct way to meet these requirements?
A.
Configure a single policer and apply it directly on the appropriate interfaces.
B.
Configure four policers and apply each one directly on the appropriate interface.
C.
Configure a policer and reference it in a firewall filter that uses the interface-specific option;
apply the filter to the appropriate interfaces.
D.
Configure four policers and reference them all in a firewall filter; apply the filter to the
appropriate interfaces.
I think A. matches the requirements but not 100% sure.
C – correct
http://www.juniper.net/documentation/en_US/junos15.1/topics/concept/firewall-filter-option-interface-specific-instances-overview.html