New Year Sale 2026! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Juniper JN0-637 Exam - Topic 1 Question 5 Discussion

Actual exam question for Juniper's JN0-637 exam
Question #: 5
Topic #: 1
[All JN0-637 Questions]

Click the Exhibit button.

Referring to the exhibit. SRX-1 and SRX-3 have to be connected using EBGP. The BGP configuration on SRX-1 and SRX-3 is verified and correct.

Which configuration on SRX-2 would establish an EBGP connection successfully between SRX-1 and SRX-3?

Show Suggested Answer Hide Answer
Suggested Answer: D

Comprehensive Detailed Step-by-Step Explanation with All Juniper Security Reference

Understanding the Scenario:

SRX-1 and SRX-3:

Need to establish an EBGP session through SRX-2.

Issue:

BGP session is not coming up despite correct configurations on SRX-1 and SRX-3.

Option D: The security policy to allow SRX-1 and SRX-3 to communicate on TCP port 179 should be configured.

BGP uses TCP port 179 for establishing sessions.

SRX-2 must have a security policy allowing traffic between SRX-1 and SRX-3 on TCP port 179.


'Security policies must permit BGP traffic (TCP port 179) to allow BGP sessions through the SRX device.'

Source: Juniper TechLibrary - Configuring Security Policies for Transit Traffic

Why Other Options Are Incorrect:

Option A: Host-inbound-traffic affects traffic destined to SRX-2, not transit traffic.

Option B and C: TCP ports 79 and 169 are unrelated to BGP.

Conclusion:

The correct option is D, configuring a security policy to allow TCP port 179.

Contribute your Thoughts:

0/2000 characters
Lashandra
3 months ago
Just to clarify, SRX-2 needs to allow traffic on port 179.
upvoted 0 times
...
Wava
3 months ago
B and C are definitely wrong, no doubt!
upvoted 0 times
...
Loreta
3 months ago
Wait, are we sure about that?
upvoted 0 times
...
Lawrence
4 months ago
Totally agree, D is the right choice!
upvoted 0 times
...
Yong
4 months ago
EBGP uses TCP port 179 for communication.
upvoted 0 times
...
Leoma
4 months ago
I think the security policy needs to allow communication on TCP port 179 for EBGP to work. That seems to align with what we practiced, but I hope I remember it correctly!
upvoted 0 times
...
Reta
4 months ago
I'm a bit confused about the host-inbound-traffic statements. I know they can block traffic, but I can't recall if that applies here.
upvoted 0 times
...
Annamae
4 months ago
I feel like we had a practice question about security policies allowing specific ports for BGP. I think it was definitely about port 179, but I could be mixing it up with something else.
upvoted 0 times
...
Arlette
5 months ago
I remember we discussed the importance of TCP port 179 for BGP. I think that's the right answer, but I'm not completely sure.
upvoted 0 times
...
Artie
5 months ago
Based on the options, it seems the security policy on SRX-2 needs to be configured to allow the EBGP traffic between SRX-1 and SRX-3. I'll carefully review the port numbers mentioned in the choices.
upvoted 0 times
...
Gerald
5 months ago
I'm a bit confused here. The host-inbound-traffic statements on SRX-2 could be the issue, but I'm not sure if that's the right approach. I'll need to double-check the BGP port requirements.
upvoted 0 times
...
Josephine
5 months ago
Okay, the question states the BGP config is already verified, so I should focus on the security policy on SRX-2. Looks like I need to allow the EBGP traffic to traverse SRX-2.
upvoted 0 times
...
Glynda
5 months ago
Hmm, this looks like a tricky one. I'll need to carefully review the BGP configuration on SRX-1 and SRX-3 to understand the expected traffic flow.
upvoted 0 times
...
Esteban
1 year ago
I'm feeling pretty confident about D. After all, when it comes to BGP, you can't go wrong with the good old port 179. Unless, of course, the exam writers are feeling particularly mischievous today. In that case, I might just have to roll the dice and hope for the best!
upvoted 0 times
Anika
1 year ago
I see your point. It's always good to double-check before making a decision.
upvoted 0 times
...
Jackie
1 year ago
I'm not so sure about D. Maybe we should consider the other options just to be safe.
upvoted 0 times
...
Mattie
1 year ago
Yeah, I agree. It's a standard port for BGP communication.
upvoted 0 times
...
Isaiah
1 year ago
I think D is the correct choice too. Port 179 is commonly used for BGP.
upvoted 0 times
...
...
Beckie
1 year ago
D, no doubt about it. Although I do wonder if the exam writers have a twisted sense of humor, throwing in those other port numbers just to see if we're paying attention. Jokes on them, I'm on to their tricks!
upvoted 0 times
...
Jarod
1 year ago
Ah, the age-old question of which port to open for BGP! I've got my money on D. Those other ports just sound made up to me.
upvoted 0 times
Elvis
1 year ago
Yeah, I agree. It's always best to stick with the standard ports for protocols.
upvoted 0 times
...
Selma
1 year ago
I think D is the correct answer too. Port 179 is the standard port for BGP.
upvoted 0 times
...
...
Melissia
1 year ago
Hmm, I'm not sure about this one. Maybe they're testing our knowledge of BGP port numbers? Or perhaps they're trying to trip us up with those other port options. Either way, I'm sticking with D.
upvoted 0 times
Katina
1 year ago
Let's go with D then, it seems like the most logical choice.
upvoted 0 times
...
Quiana
1 year ago
Yeah, D makes the most sense considering the BGP port number.
upvoted 0 times
...
Kimi
1 year ago
I agree, D is the best option for establishing the EBGP connection.
upvoted 0 times
...
Rory
1 year ago
I think D is the correct answer.
upvoted 0 times
...
...
Lashawnda
1 year ago
I'm not sure, but I think option D makes sense based on the BGP protocol requirements.
upvoted 0 times
...
Louvenia
1 year ago
I agree with Rolland, because BGP uses TCP port 179 for communication.
upvoted 0 times
...
Moon
1 year ago
The answer is clearly D. The EBGP connection between SRX-1 and SRX-3 requires the security policy to allow them to communicate on TCP port 179, which is the standard BGP port.
upvoted 0 times
Kizzy
1 year ago
Thanks for the clarification. I will go with option D for the configuration on SRX-2.
upvoted 0 times
...
Jaleesa
1 year ago
I agree with you, D is the correct answer. TCP port 179 is used for BGP communication.
upvoted 0 times
...
Audra
1 year ago
No, I believe the correct answer is D. The security policy needs to allow communication on TCP port 179 for BGP.
upvoted 0 times
...
Luisa
1 year ago
I think the answer is A. The host-inbound-traffic statements on SRX-2 are blocking EBGP traffic.
upvoted 0 times
...
...
Rolland
1 year ago
I think the correct answer is D.
upvoted 0 times
...

Save Cancel