[Oct-2021] JN0-230 Pre-Exam Practice Tests | Exam Questions and Answers for JNCIA-SEC Study Guide
Security, Associate (JNCIA-SEC) Certification Sample Questions
Understanding functional and technical aspects of Protocol-Independent Routing
The following will be discussed in JN0-362 dumps:
- Load balancing
- Filter-based forwarding
- Filter-based forwarding
- Martian addresses
- Demonstrate knowledge of how to configure, monitor, or troubleshoot various protocol-independent routing components
- Routing instances, including RIB groups
- Identify the concepts, operation, or functionality of various protocol-independent routing components
- Static, aggregate, and generated routes
- Load balancing
- Static, aggregate, and generated routes
How much JN0-362 Exam Cost
The price of the JN0-362 exam is $350 US-
NEW QUESTION 26
What is the behavior of an SRX series device when UDP and TCP is rejected by a security policy actions?
(choose two)
- A. The reject action drops UDP packets and sends an ICMP message to the source
- B. The reject actions drops TCP packets and sends an ICMP message to the source
- C. The reject action drops UDP packets and does not send ant message to the source
- D. The reject action drops TCP packets and send an RST message to the source.
Answer: A,D
NEW QUESTION 27
Which two statements are correct about global security policies? (choose two)
- A. Global based policies must reference the source and destination zones
- B. Global based policies can reference the destination zone
- C. Global based policies can reference the source zone
- D. Global based policies must reference a dynamic application
Answer: B,C
NEW QUESTION 28
You have configured antispam to allow e-mail from example.com, however the logs you see [email protected] blocked Referring to the exhibit.
What are two ways to solve this problem?
- A. [email protected] the profile antispam address whitelist
- B. [email protected] the profile antispam address whitelist.
- C. [email protected] the profile antispam address blacklist
- D. Verify connectivity with the SBL server.
Answer: B
NEW QUESTION 29
Which two elements are needed on an SRX Series device to set up a remote syslog server? (Choose two.)
- A. Data size
- B. IP address
- C. Data throughput
- D. Data type
Answer: B,D
NEW QUESTION 30
By default, revenue interfaces are placed into which system-defined security zone on an SRX Series device?
- A. untrust
- B. trust
- C. null
- D. junos-trust
Answer: C
NEW QUESTION 31
You are asked to run a report to find the top talkers on your network in the past 48 hours.
In this scenario, the report will be in which format when the J-Web UI delivers it to you?
- A. CSV
- B. xls
- C. HTML
- D. JPG
Answer: C
NEW QUESTION 32
On an SRX Series device, how should you configure your IKE gateway if the remote endpoint is a branch office-using a dynamicIP address?
- A. Configure the IPsec policy to use MDS authentication.
- B. Configure the IKE policy to use aggressive mode.
- C. Configure the IPsec policy to use aggressive mode.
- D. Configure the IKE policy to use a static IP address
Answer: A
NEW QUESTION 33
Which two statements are true about security policy actions? (Choose two.)
- A. The deny action silently drop the traffic.
- B. The reject action silently drops the traffic.
- C. The reject action drops the traffic and sends a message to the source device.
- D. The deny action drops the traffic and sends a message to the source device.
Answer: A
NEW QUESTION 34
Which two statements describe IPsec VPNs? (Choose two.)
- A. IPsec VPN traffic is always encrypted.
- B. IPsec VPNs use security measures to secure traffic over a public network between two remote sites.
- C. IPsec VPNs are dedicated physical connections between two private networks.
- D. IPsec VPN traffic is always authenticated.
Answer: B,D
NEW QUESTION 35
On an SRX device, you want to regulate traffic base on network segments.
In this scenario, what do you configure to accomplish this task?
- A. ALGs
- B. Zones
- C. NAT
- D. Screens
Answer: B
NEW QUESTION 36
Host-inbound-traffic is configured on the DMZ zone and the ge-0/0/9.0 interface attached to that zone.
Referring to the exhibit,
which to types of management traffic would be performed on the SRX Series device? (Choose two.)
- A. HTTPS
- B. SSH
- C. Finger
- D. HTTP
Answer: B,D
NEW QUESTION 37
You are concerned that unauthorized traffic is using non-standardized ports on your network.
In this scenario, which type of security feature should you implement?
- A. Sky ATP
- B. Firewall filters
- C. Application firewall
- D. Zone-based policies
Answer: B
NEW QUESTION 38
You are configuring an IPsec VPN tunnel between two location on your network. Each packet must be encrypted and authenticated.
Which protocol would satisfy these requirements?
- A. ESP
- B. SHA
- C. AH
- D. MD5
Answer: A
NEW QUESTION 39
You are configuring an IPsec VPN tunnel between two location onyour network. Each packet must be encrypted and authenticated.
Which protocol would satisfy these requirements?
- A. SHA
- B. ESP
- C. MD5
- D. AH
Answer: D
NEW QUESTION 40
What are two characteristic of static NAT SRX Series devices? (Choose two.)
- A. A reverse mapping rule is automatically created for the source translation.
- B. Source and destination NAT rules take precedence over static NAT rules.
- C. Static rules cannot coexist with destination NAT rules on the same SRX Series device configuration.
- D. Static NAT rule take precedence over source and destination NAT rules.
Answer: A,D
NEW QUESTION 41
......
Juniper Exam Practice Test To Gain Brilliante Result: https://www.itpassleader.com/Juniper/JN0-230-dumps-pass-exam.html