Your SRX Series device has the following configuration:
user@host> show security policies
…
Policy: my-policy, State: enabled, Index: 5, Sequence number: 1
Source addresses: any
Destination addresses: any
Applications: snmp
Action: reject
From zone: trust, To zone: untrust
…
When traffic matches my-policy, you want the device to silently drop the traffic; however, you notice
that the device is replying with ICMP unreachable messages instead. What is causing this behavior?
A.
the snmp application
B.
the reject action
C.
the trust zone
D.
the untrust zone
Explanation: