If the matched term does not include the next term action, evaluation of the packet against the given firewall filter ends at this term. The device does not evaluate the packet against any subsequent terms in this filter.
Can someone explain to me how firewall filters are applied in the above perspective let say for MX routers (because SRX and EX are ... different creatures) ?
Sorry for asking obvious questions but no option to test in real or in a lab
"Nonterminating actions carry the implicit terminating action of accept. When applied to a firewall filter term without an explicit terminating action, the default action of accept will be used. This could cause unintended packet processing side effects if you are just looking to sample or log a packet. To avoid the implicit accept action, use the next term action to allow further processing of the packets within the firewall filter"
I verified your example in my lab and it works as mentioned in the answer. (There are some syntax issues in the given example, but the logic is right)
Just a reminder that "Brain Dumps" are cheating and using them can make you ineligiable to hold any Juniper certification.
Brain dumps are created by people making copies of the actual certification questions in order to pre-share those questions with correct answers that people then memorize rather than learn the underlying concepts.
You seem to be approaching the process correctly by tyring to understand why answers are correct. But downloading and using brain dumps put your ability to hold Juniper certifcations at risk. I encourage you to delete them and use other study methods instead.
Steve Puluka BSEET - Juniper Ambassador IP Architect - DQE Communications Pittsburgh, PA (Metro Ethernet & ISP) http://puluka.com/home
We all knew that even more - holding certification without knowledge and XP is like visit dentist to fix your liver but I don't care I'm trying to create internal assessment tests and brain dumps sounds like the easiest way in addition of company-specific questions and tasks
Since you want to create your own tests then a better source of questions would be the offical Junos genius application. this gives both the questions and answers and does not violate any of the NDA or cheating policies. The free version has a number of example exams.
No one uses such configuration. This is only going to cause confusion. To be frank, in my experience with Juniper exams of any level, I don't recall similar tricky questions. As other experts suggested, good job done and keep the momentum to your next level certificate.