exam questions

Exam JN0-104 All Questions

View all questions & answers for the JN0-104 exam

Exam JN0-104 topic 1 question 11 discussion

Actual exam question from Juniper's JN0-104
Question #: 11
Topic #: 1
[All JN0-104 Questions]

You enable unicast reverse path forwarding on the ge-0/0/1.0 interface A packet is received on the ge-0/0/1.0 interface with a source address of 10.10.10.10. A route lookup determines that the next hop for the 10.10.10.10 address is the ge-0/0/1.0 interface. In this scenario which action is performed?

  • A. The packet is logged
  • B. The packet is forwarded
  • C. The packet is rejected
  • D. The packet is discarded
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
netoff
Highly Voted 2 years, 3 months ago
B: The packet it forwarded - https://www.juniper.net/documentation/us/en/software/junos/security-services/topics/topic-map/interfaces-configuring-unicast-rpf.html
upvoted 11 times
...
Styles
Highly Voted 2 years, 3 months ago
B. Packet is forwarded not discarded.
upvoted 8 times
...
kinqxzz
Most Recent 4 months, 2 weeks ago
Selected Answer: D
Packet is Discarded. FIB Source address is 10.10.10.10 on ge0/0/1.0 Next hop cannot be to the interface it is receiving the source IP on - 10.10.10.10 should have the next hop of a different outgoing interface Therefor, FIB entry does not mach incoming interface and packet is dropped
upvoted 1 times
...
certmaster23
6 months ago
Selected Answer: B
B is the correct answer.
upvoted 1 times
...
Clover_RU
11 months, 2 weeks ago
Selected Answer: B
B: The packet it forwarded - https://www.juniper.net/documentation/us/en/software/junos/security-services/topics/topic-map/interfaces-configuring-unicast-rpf.html
upvoted 1 times
...
KevA_Kev
1 year, 3 months ago
B is the correct answer If a device running Junos OS receives a packet with a source address of 10.10.10.10 on interface ge-0/0/1.0 and the you configured the device to perform the unicast RPF check on that interface, it examines its routing table for the best route to 10.10.10.10. If the route lookup returns a route for 10.10.10.0/24 with a next hop of interface ge-0/0/1.0, the packet passes the unicast RPF check and is accepted.
upvoted 1 times
...
Muste
1 year, 3 months ago
Selected Answer: D
the provided answer is Correct uRPF checks the source address, and interface
upvoted 1 times
...
[Removed]
1 year, 4 months ago
Selected Answer: B
B: The packet it forwarded - https://www.juniper.net/documentation/us/en/software/junos/security-services/topics/topic-map/interfaces-configuring-unicast-rpf.html
upvoted 1 times
...
GordonEmmanuel
1 year, 9 months ago
Key phrase to take note off : A ROUTE LOOKUP determines that THE NEXT HOP for the 10.10.10.10 address "IS" the ge-0/0/1.0 interface. So the packet in question, which was received on the ge-0/0/1.0 interface had a "fake" source IP address, meaning it's likely a spoofing attack. Hence the packet is not only rejected but discarded (silently dropped, with no ICMP sent back)
upvoted 4 times
...
Rac_123
1 year, 9 months ago
Selected Answer: B
interface is same for lookup as where the packet is received.
upvoted 4 times
...
Rac_123
1 year, 9 months ago
Packet is Forwarded
upvoted 1 times
...
gumeni
1 year, 10 months ago
Selected Answer: B
return traffic would go through the same interface and that is allowed for rpf. So this packet is forwarded.
upvoted 2 times
...
Anneil
1 year, 10 months ago
D is your answer. This is because Unicast Reverse Path Forwarding (RPF) is used to prevent the spread of network misconfigurations and malicious traffic, such as spoofed IP addresses. When RPF is enabled on an interface, it checks the source address of incoming packets against the routing table to verify if the incoming interface is the expected path for that source address. If the incoming interface is not the expected path, the packet is discarded. In this scenario, the route lookup determines that the next hop for the source address 10.10.10.10 is the same interface the packet was received on, which is the ge-0/0/1.0 interface. This means the source address is not reachable through another interface, therefore the packet is considered to be a spoofed packet and is discarded
upvoted 4 times
Jienex
8 months, 4 weeks ago
That's the thing. An IP is expected to be received on an interface where it is also used as the primary route to the same IP. Imagine this scenario with a simple diagram of PC1 > R1 > R2 > R3. If PC1 spoofed its IP to the same IP as R2, then R3 receives the packet from R1>R2, it would then reply back to R2 itself (as this is the source IP that was spoofed by PC1). R2 would then reply back as it would think that it's an initiated ICMP from R3. Now imagine this with 1000000 ICMP being sent from PC1. DOS attack would occur on R2 and R3. Hence, URPF can be used and configured on R1's interface facing PC1 so that it would check if the source of PC1 is reachable to the interface on where its connected to prevent this.
upvoted 1 times
...
...
[Removed]
2 years ago
Selected Answer: B
Ref: Understanding How Unicast Reverse Path Forwarding Prevents Spoofed IP Packet Forwarding - TechLibrary - Juniper Networks "Understanding How Unicast Reverse Path Forwarding Prevents Spoofed IP Packet Forwarding ... A unicast reverse-path-forwarding (RPF) check is a tool to reduce forwarding of IP packets that might be spoofing an address. A unicast RPF check performs a forwarding table lookup on an IP packet’s source address, and checks the incoming interface. The router or switch determines whether the packet is arriving from a path that the sender would use to reach the destination. If the packet is from a valid path, the router or switch forwards the packet to the destination address. If it is not from a valid path, the router or switch discards the packet. ..."
upvoted 1 times
...
FathySalah
2 years ago
b is the correct answer
upvoted 1 times
...
_muxa_
2 years, 1 month ago
Selected Answer: B
Answer B
upvoted 2 times
...
aisa007
2 years, 1 month ago
It’s B
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago