[Oct-2021] JN0-230 Pre-Exam Practice Tests Exam Questions and Answers for JNCIA-SEC Study Guide [Q26-Q41]

Share

[Oct-2021] JN0-230 Pre-Exam Practice Tests | Exam Questions and Answers for JNCIA-SEC Study Guide

Security, Associate (JNCIA-SEC) Certification Sample Questions


Understanding functional and technical aspects of Protocol-Independent Routing

The following will be discussed in JN0-362 dumps:

  • Load balancing
  • Filter-based forwarding
  • Filter-based forwarding
  • Martian addresses
  • Demonstrate knowledge of how to configure, monitor, or troubleshoot various protocol-independent routing components
  • Routing instances, including RIB groups
  • Identify the concepts, operation, or functionality of various protocol-independent routing components
  • Static, aggregate, and generated routes
  • Load balancing
  • Static, aggregate, and generated routes

How much JN0-362 Exam Cost

The price of the JN0-362 exam is $350 US-

 

NEW QUESTION 26
What is the behavior of an SRX series device when UDP and TCP is rejected by a security policy actions?
(choose two)

  • A. The reject action drops UDP packets and sends an ICMP message to the source
  • B. The reject actions drops TCP packets and sends an ICMP message to the source
  • C. The reject action drops UDP packets and does not send ant message to the source
  • D. The reject action drops TCP packets and send an RST message to the source.

Answer: A,D

 

NEW QUESTION 27
Which two statements are correct about global security policies? (choose two)

  • A. Global based policies must reference the source and destination zones
  • B. Global based policies can reference the destination zone
  • C. Global based policies can reference the source zone
  • D. Global based policies must reference a dynamic application

Answer: B,C

 

NEW QUESTION 28
You have configured antispam to allow e-mail from example.com, however the logs you see [email protected] blocked Referring to the exhibit.

What are two ways to solve this problem?

Answer: B

 

NEW QUESTION 29
Which two elements are needed on an SRX Series device to set up a remote syslog server? (Choose two.)

  • A. Data size
  • B. IP address
  • C. Data throughput
  • D. Data type

Answer: B,D

 

NEW QUESTION 30
By default, revenue interfaces are placed into which system-defined security zone on an SRX Series device?

  • A. untrust
  • B. trust
  • C. null
  • D. junos-trust

Answer: C

 

NEW QUESTION 31
You are asked to run a report to find the top talkers on your network in the past 48 hours.
In this scenario, the report will be in which format when the J-Web UI delivers it to you?

  • A. CSV
  • B. xls
  • C. HTML
  • D. JPG

Answer: C

 

NEW QUESTION 32
On an SRX Series device, how should you configure your IKE gateway if the remote endpoint is a branch office-using a dynamicIP address?

  • A. Configure the IPsec policy to use MDS authentication.
  • B. Configure the IKE policy to use aggressive mode.
  • C. Configure the IPsec policy to use aggressive mode.
  • D. Configure the IKE policy to use a static IP address

Answer: A

 

NEW QUESTION 33
Which two statements are true about security policy actions? (Choose two.)

  • A. The deny action silently drop the traffic.
  • B. The reject action silently drops the traffic.
  • C. The reject action drops the traffic and sends a message to the source device.
  • D. The deny action drops the traffic and sends a message to the source device.

Answer: A

 

NEW QUESTION 34
Which two statements describe IPsec VPNs? (Choose two.)

  • A. IPsec VPN traffic is always encrypted.
  • B. IPsec VPNs use security measures to secure traffic over a public network between two remote sites.
  • C. IPsec VPNs are dedicated physical connections between two private networks.
  • D. IPsec VPN traffic is always authenticated.

Answer: B,D

 

NEW QUESTION 35
On an SRX device, you want to regulate traffic base on network segments.
In this scenario, what do you configure to accomplish this task?

  • A. ALGs
  • B. Zones
  • C. NAT
  • D. Screens

Answer: B

 

NEW QUESTION 36
Host-inbound-traffic is configured on the DMZ zone and the ge-0/0/9.0 interface attached to that zone.
Referring to the exhibit,

which to types of management traffic would be performed on the SRX Series device? (Choose two.)

  • A. HTTPS
  • B. SSH
  • C. Finger
  • D. HTTP

Answer: B,D

 

NEW QUESTION 37
You are concerned that unauthorized traffic is using non-standardized ports on your network.
In this scenario, which type of security feature should you implement?

  • A. Sky ATP
  • B. Firewall filters
  • C. Application firewall
  • D. Zone-based policies

Answer: B

 

NEW QUESTION 38
You are configuring an IPsec VPN tunnel between two location on your network. Each packet must be encrypted and authenticated.
Which protocol would satisfy these requirements?

  • A. ESP
  • B. SHA
  • C. AH
  • D. MD5

Answer: A

 

NEW QUESTION 39
You are configuring an IPsec VPN tunnel between two location onyour network. Each packet must be encrypted and authenticated.
Which protocol would satisfy these requirements?

  • A. SHA
  • B. ESP
  • C. MD5
  • D. AH

Answer: D

 

NEW QUESTION 40
What are two characteristic of static NAT SRX Series devices? (Choose two.)

  • A. A reverse mapping rule is automatically created for the source translation.
  • B. Source and destination NAT rules take precedence over static NAT rules.
  • C. Static rules cannot coexist with destination NAT rules on the same SRX Series device configuration.
  • D. Static NAT rule take precedence over source and destination NAT rules.

Answer: A,D

 

NEW QUESTION 41
......

Juniper Exam Practice Test To Gain Brilliante Result: https://www.itpassleader.com/Juniper/JN0-230-dumps-pass-exam.html

0
0
0
0