Transit traffic is defined as traffic passing through the SRX firewall (from one interface/zone to another). To allow transit traffic:
Interfaces must be placed into a user-defined security zone (Option C).
Policies between zones are then applied to control traffic.
The null zone (Option A) discards all traffic.
The Junos-host zone (Option B) is used for traffic destined to the SRX itself, not transit.
Functional zones (Option D) are predefined and used for special purposes (like management), not for transit traffic.
Correct Configuration: User-defined security zone
[Reference: Juniper Networks – Security Zones and Transit Traffic, Junos OS Security Fundamentals., ]
Contribute your Thoughts:
Chosen Answer:
This is a voting comment (?). You can switch to a simple comment. It is better to Upvote an existing comment if you don't have anything to add.
Submit