Cyber Monday 2024! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Juniper Exam JN0-637 Topic 1 Question 5 Discussion

Actual exam question for Juniper's JN0-637 exam
Question #: 5
Topic #: 1
[All JN0-637 Questions]

Click the Exhibit button.

Referring to the exhibit. SRX-1 and SRX-3 have to be connected using EBGP. The BGP configuration on SRX-1 and SRX-3 is verified and correct.

Which configuration on SRX-2 would establish an EBGP connection successfully between SRX-1 and SRX-3?

Show Suggested Answer Hide Answer
Suggested Answer: D

Comprehensive Detailed Step-by-Step Explanation with All Juniper Security Reference

Understanding the Scenario:

SRX-1 and SRX-3:

Need to establish an EBGP session through SRX-2.

Issue:

BGP session is not coming up despite correct configurations on SRX-1 and SRX-3.

Option D: The security policy to allow SRX-1 and SRX-3 to communicate on TCP port 179 should be configured.

BGP uses TCP port 179 for establishing sessions.

SRX-2 must have a security policy allowing traffic between SRX-1 and SRX-3 on TCP port 179.


'Security policies must permit BGP traffic (TCP port 179) to allow BGP sessions through the SRX device.'

Source: Juniper TechLibrary - Configuring Security Policies for Transit Traffic

Why Other Options Are Incorrect:

Option A: Host-inbound-traffic affects traffic destined to SRX-2, not transit traffic.

Option B and C: TCP ports 79 and 169 are unrelated to BGP.

Conclusion:

The correct option is D, configuring a security policy to allow TCP port 179.

Contribute your Thoughts:

Lashawnda
11 days ago
I'm not sure, but I think option D makes sense based on the BGP protocol requirements.
upvoted 0 times
...
Louvenia
14 days ago
I agree with Rolland, because BGP uses TCP port 179 for communication.
upvoted 0 times
...
Moon
17 days ago
The answer is clearly D. The EBGP connection between SRX-1 and SRX-3 requires the security policy to allow them to communicate on TCP port 179, which is the standard BGP port.
upvoted 0 times
Kizzy
4 days ago
Thanks for the clarification. I will go with option D for the configuration on SRX-2.
upvoted 0 times
...
Jaleesa
6 days ago
I agree with you, D is the correct answer. TCP port 179 is used for BGP communication.
upvoted 0 times
...
Audra
8 days ago
No, I believe the correct answer is D. The security policy needs to allow communication on TCP port 179 for BGP.
upvoted 0 times
...
Luisa
9 days ago
I think the answer is A. The host-inbound-traffic statements on SRX-2 are blocking EBGP traffic.
upvoted 0 times
...
...
Rolland
19 days ago
I think the correct answer is D.
upvoted 0 times
...

Save Cancel
az-700  pass4success  az-104  200-301  200-201  cissp  350-401  350-201  350-501  350-601  350-801  350-901  az-720  az-305  pl-300  

Warning: Cannot modify header information - headers already sent by (output started at /pass.php:70) in /pass.php on line 77