JNCIP-DC: Juniper Networks Certified Professional – Data Center (2024) — Question 24
You are adding a server to a tenant’s network within your data center and must limit access to a specific traffic type within the tenant network without pushing all tenant traffic through a firewall.
What will satisfy this requirement?
Answer options
- A. Use filter-based forwarding.
- B. Put the new server on a unique subnet within the tenant’s network.
- C. Use route leaking with EVPN and a routing policy.
- D. Use a static route in the tenant VRF with a firewall as the next hop for traffic to the new server.
Correct answer: A
Explanation
The correct answer is A, as filter-based forwarding allows for directing specific types of traffic without the need to reroute all traffic through a firewall. Option B does not provide the necessary traffic control, while C involves more complexity and may not meet the requirement as directly as A. Option D would redirect all traffic through a firewall, which contradicts the requirement to limit access without involving a firewall.