JNCIP-SP: Juniper Networks Certified Professional – Service Provider (2023) — Question 78
You are asked to protect your company's customers from amplification attacks.
In this scenario, what is Juniper's recommended protection method?
Answer options
- A. ASN prepending
- B. BGP FlowSpec
- C. destination-based Remote Triggered Black Hole
- D. unicast Reverse Path Forwarding
Correct answer: B
Explanation
The correct answer is B, BGP FlowSpec, which allows for the dissemination of flow specification rules to mitigate DDoS attacks, including amplification attacks. The other options, while relevant for general routing and security, do not specifically address the mitigation of amplification attacks in the same effective manner as BGP FlowSpec.