問題文
An administrator is reviewing an IDP policy in which several entries can match the same flow of user traffic. The team wants to know how much of the policy the SRX Series Firewall keeps evaluating after the first match is found. Which behavior applies here?
選択肢
- Matching ends when the terminal rule is hit, so later checks for the renewed session do not run.
- Matching ends when the terminal rule is hit, so later checks for the active session do not run.
- Matching ends when the nested rule is hit, so later checks for the active session do not run.
- Matching ends when the nested rule is hit, so later checks for the renewed session do not run.