Pre-Summer Sale Limited Time Flat 70% Discount offer - Ends in 0d 00h 00m 00s - Coupon code: 70spcl

Juniper JN0-336 Security, Specialist (JNCIS-SEC) Exam Practice Test

Page: 1 / 7
Total 66 questions

Security, Specialist (JNCIS-SEC) Questions and Answers

Question 1

Which IDP action is also referred to as a silent discard?

Options:

A.

no action

B.

close client and server

C.

ignore connection

D.

drop packet

Question 2

You are asked to set up SSL proxy in SRX Series devices. An SSL proxy profile is already defined for you.

Which two steps are required to complete the setup? (Choose two.)

Options:

A.

Enable host-inbound-traffic HTTPS in the security zone in which SSL proxy is referenced.

B.

Reference the SSL proxy profile in a security zone.

C.

Reference the SSL proxy profile in a security policy.

D.

Enable any Layer 7 services in the security policy in which SSL proxy is referenced.

Question 3

You are asked to use Junos Space Security Director to download the latest application signatures in the AppID database.

In this scenario, which two statements are correct? (Choose two.)

Options:

A.

The AppID database is stored in Junos Space Security Director.

B.

The AppID database is stored on the managed SRX Series device.

C.

The AppID database is maintained by a third-party host.

D.

The AppID database is stored on a local storage server in the management network.

Question 4

Your manager asks you to update your SRX Series device’s IDP security package. You perform the required steps; however, when you attempt to install the package, you receive an error.

Question # 4

Referring to the exhibit, which two statements are correct about this error? (Choose two.)

Options:

A.

IDP stops inspecting traffic.

B.

The IDP license has expired.

C.

IDP continues to inspect traffic only using the installed signatures.

D.

The IDP license is missing/not installed.

Question 5

Which two statements are correct about IDP policy templates? (Choose two.)

Options:

A.

They are provided by Juniper Networks.

B.

They are not customizable.

C.

They are available on a “factory-default config.”

D.

They must be installed.

Question 6

What is a function of the Juniper Identity Management Service?

Options:

A.

encrypting user e-mail

B.

logging malicious code sent through ingress and egress ports

C.

encrypting network data traffic

D.

maintaining a centralized authentication table

Question 7

Which two statements about PC probes sent by the JIMS server are correct? (Choose two.)

Options:

A.

PC probes are triggered only when there is no IP-to-username mapping present in the event log.

B.

PC probes are sent by the JIMS server to domain PCs every 30 seconds.

C.

PC probes are sent by the JIMS server to domain PCs every 60 seconds.

D.

If a probe is successful, the authentication entry is updated on the JIMS server and pushed to the SRX.

Question 8

Which two statements about proxy IDs are correct? (Choose two.)

Options:

A.

Proxy IDs cannot override default Junos behavior.

B.

By default, for a route-based IPsec VPN, a Junos security device sets the proxy ID to 0.0.0.0/0.

C.

Proxy IDs must match on both peers for a Phase 2 tunnel to establish.

D.

Proxy IDs are created during IKE Phase 1.

Question 9

You are implementing an SRX Series device at a branch office that has low bandwidth and also uses a cloud-based VoIP solution with an outbound policy that permits all traffic.

Which service would you implement at your edge device to prioritize VoIP traffic in this scenario?

Options:

A.

AppFW

B.

SIP ALG

C.

AppQoE

D.

AppQoS

Question 10

Which protocol does the SRX Series Firewall use to communicate with a Windows domain controller?

Options:

A.

SSH

B.

LDAP

C.

DNS

D.

NETCONF

Question 11

Which action will the SRX Series device take if traffic matches the custom attack object shown in the exhibit?

Question # 11

Options:

A.

the action taken is defined in the IDP policy that includes this attack object.

B.

the action taken is defined by the security policy.

C.

The SRX Series device will reject the traffic.

D.

The SRX series device will drop the traffic.

Question 12

Which three different objects would be created, modified, cloned, and deleted in the Shared Objects workspace of Junos Space Security Director? (Choose three.)

Options:

A.

geo IP

B.

IP address

C.

audit logs

D.

policy enforcement groups

E.

policy rules

Question 13

You are asked to ensure that traffic that matches an IDP policy is not impacted until administrators have a chance to evaluate it.

In this scenario, which IP action should be configured for the policy?

Options:

A.

ip-block

B.

ip-notify

C.

ip-connection-rate-limit

D.

ip-close

Question 14

You are asked to configure a cluster between SRX1 and SRX2.

Which two commands must be used to accomplish this task? (Choose two.)

Options:

A.

user@SRX2# set chassis cluster cluster-id 0 node 1

B.

user@SRX1 > set chassis cluster cluster-id 1 node 0

C.

user@SRX2 > set chassis cluster cluster-id 1 node 1

D.

user@SRX1# set chassis cluster cluster-id 0 node 2

Question 15

You need to secure communications from a mobile command center which uses a 5G mobile ISP behind CGNAT to an SRX Series Firewall at headquarters.

Which two actions should be performed on the SRX Series Firewall in this scenario? (Choose two.)

Options:

A.

Configure the IPsec VPN to use NAT-T.

B.

Configure the IPsec VPN to use IKEv1 aggressive mode.

C.

Configure the IPsec VPN to use IKEv2 aggressive mode.

D.

Configure the IPsec VPN to use DPD.

Question 16

Which two statements are correct about fabric interfaces on an SRX Series Firewall? (Choose two.)

Options:

A.

In an active/active configuration, inter-chassis traffic uses the fab link.

B.

In an active/passive configuration, inter-chassis traffic uses the fab link.

C.

The node ID is reflected in the fabric interface name.

D.

The cluster ID is reflected in the fabric interface name.

Question 17

You need to set up a forward proxy on your SRX Series device.

In this scenario, which two statements are correct? (Choose two.)

Options:

A.

The forward proxy uses the managed SRX as a trusted certificate authority (CA).

B.

The forward proxy forwards the server certificate.

C.

The forward proxy looks like a client to the servers to which it communicates.

D.

The forward proxy uses Encrypted Traffic Insights to monitor traffic.

Question 18

How does the SSL proxy detect if a particular session is SSL encrypted?

Options:

A.

It uses AppID services.

B.

It verifies the length of the packet.

C.

It looks at the destination port number.

D.

It uses a certificate authority (CA).

Question 19

You are asked to onboard an SRX Series device to Junos Space Security Director, but it is not working.

In this scenario, what are three areas that should be reviewed? (Choose three.)

Options:

A.

chassis serial number

B.

SSH port number

C.

active security policies

D.

authentication credentials

E.

IP address

Page: 1 / 7
Total 66 questions