Using content filtering on an SRX Series device, which three types of HTTP content are able to be blocked? (Choose three.)
A. PDF files
B. ZIP files
C. Java applets
D. Active X
E. Flash
Which AppSecure feature identifies applications that are present in traffic?
A. AppID
B. AppTrack
C. AppFW
D. AppQoS
You are using IDP on your SRX Series device and are asked to ensure that the SRX Series device has the latest IDP database, as well as the latest application signature database.
In this scenario, which statement is true?
A. The application signature database cannot be updated on a device with the IDP database installed.
B. You must download each database separately.
C. The IDP database includes the latest application signature database.
D. You must download the application signature database before installing the IDP database.
Which two parameters are required to match in an IDP rule for the terminal option to take effect? (Choose two.)
A. attacks custom-attacks
B. attacks predefined-attacks
C. application
D. source-address
Click the Exhibit button.

Referring to the exhibit, which statement is true?
A. E-mails from the user@example.com address are marked with SPAM in the subject line by the spam block list server.
B. E-mails from the user@example.com address are blocked by the spam list server.
C. E-mails from the user@example.com address are blocked by the reject blacklist.
D. E-mails from the user@example.com address are allowed by the allow whitelist.
SRX Series devices with AppSecure support which three custom signatures? (Choose three.)
A. MAC address-based mapping
B. latency detection mapping
C. IP protocol-based mapping
D. ICMP-based mapping
E. Layer 7-based signatures
Which IDP rule configuration will send an RST to any new session that meets the action criteria?
A. ip-action block
B. action close-client-and-server
C. ip-action close
D. action drop-connection
Your network includes SRX Series devices configured with AppSecure.
Which two statements regarding the application identification engine are true? (Choose two.)
A. Applications are only matched in traffic flows associated with client-to-server sessions.
B. Applications are matched in traffic flows associated with client-to-server and server-to-client sessions.
C. If the packets entering the engine match a known application, then processing continues.
D. If the packets entering the engine match a known application, then processing stops.
Click the Exhibit button.

Security Director is reporting the events shown in the exhibit.
If the fallback parameter is set to pass traffic, what would cause the events?
A. The files are too large for the antivirus engine to process.
B. The files are not scanned because they were permitted by a security policy.
C. The files are not scanned because they are the wrong file format.
D. The antivirus engine is unable to re-encrypt the files.
Your network includes SRX Series devices at all headquarter, data center, and branch locations. The headquarter and data center locations use high-end SRX Series devices, and the branch locations use branch SRX Series devices. You are asked to deploy IPS on the SRX Series devices using one of the available IPS deployment modes.
In this scenario, which two statements are true? (Choose two.)
A. Inline tap mode provides enforcement.
B. Inline tap mode can be used at all locations.
C. Integrated mode can be used at all locations.
D. Integrated mode provides enforcement.