[Dec 12, 2021] Juniper JN0-230 Real Exam Questions and Answers FREE
Pass Juniper JN0-230 Exam Info and Free Practice Test
What is the duration of the JN0-362 Exam
- Length of Examination: 90 minutes
- Passing Score: 60%
- Number of Questions: 65
- Format: Multiple choices, multiple answers
Understanding functional and technical aspects of Protocol-Independent Routing
The following will be discussed in JN0-362 dumps:
- Demonstrate knowledge of how to configure, monitor, or troubleshoot various protocol-independent routing components
- Static, aggregate, and generated routes
- Martian addresses
- Routing instances, including RIB groups
- Load balancing
- Filter-based forwarding
- Identify the concepts, operation, or functionality of various protocol-independent routing components
- Filter-based forwarding
- Static, aggregate, and generated routes
- Load balancing
NEW QUESTION 10
Which two statements are correct about security zones? (Choose two.)
- A. Security zones use security policies that enforce rules for the transit traffic.
- B. Security zones use address books to link usernames to IP addresses.
- C. Security zones use a stateful firewall to provide secure network connections.
- D. Security zones use packet filters to prevent communication between management ports.
Answer: B,D
NEW QUESTION 11
Which statements about NAT are correct? (Choose two.)
- A. Source NAT translates the source port and destination IP address.
- B. When multiple NAT rules have overlapping match conditions, the most specific rule is chosen.
- C. Source NAT translates the source IP address of packet.
- D. When multiple NAT rules have overlapping match conditions, the rule listed first is chosen.
Answer: C,D
NEW QUESTION 12
Which type of security policy protect restricted services from running on non-standard ports?
- A. Sky ATP
- B. antivirus
- C. Application firewall
- D. IDP
Answer: D
NEW QUESTION 13
Which two private cloud solution support vSRX devices? (Choose two.)
- A. Amazon Web Services (AWS)
- B. VMware NSX
- C. Contrail Cloud
- D. Microsoft Azure
- E. VMware Web Services (AWS)
Answer: A,D
NEW QUESTION 14
Which statement about IPsec is correct?
- A. IPsec is used to provide data replication
- B. IPsec can provide encapsulation but not encryption
- C. IPsec can be used to transport native Layer 2 packets.
- D. IPsec is a standards-based protocol.
Answer: A
NEW QUESTION 15
Which security feature is applied to traffic on an SRX Series device when the device is running n packet mode?
- A. Unified policies
- B. ALGs
- C. Sky ATP
- D. Firewall filters
Answer: A
NEW QUESTION 16
Which source NAT rule set would be used when a packet matches the conditions in multiple rule sets?.
- A. The most specific rule set will be used
- B. The last rule set matched will be used
- C. The least specific rule set will be used
- D. The first rule set matched will be used
Answer: D
NEW QUESTION 17
The Sky ATP premium or basic-Threat Feed license is needed fort which two features? (Choose two.)
- A. Outbound protection
- B. C&C feeds
- C. Custom feeds
- D. Executable inspection
Answer: B,C
NEW QUESTION 18
Users should not have access to Facebook, however, a recent examination of the logs security show that users are accessing Facebook.
Referring to the exhibit,
what should you do to solve this problem?
- A. Change the Internet-Access rule from a zone policy to a global policy
- B. Move the Block-Facebook-Access rule before the Internet-Access rule
- C. Move the Block-Facebook-Access rule from a zone policy to a global policy
- D. Change the source address for the Block-Facebook-Access rule to the prefix of the users
Answer: D
NEW QUESTION 19
Users should not have access to Facebook, however, a recent examination of the logs security show that users are accessing Facebook.
Referring to the exhibit,
what should you do to solve this problem?
- A. Change the Internet-Access rule from a zone policy to a global policy
- B. Change the source address for the Block-Facebook-Access rule to the prefix of the users
- C. Move the Block-Facebook-Access rule before the Internet-Access rule
- D. Move the Block-Facebook-Access rule from a zone policy to a global policy
Answer: C
NEW QUESTION 20
Exhibit.
Which two statements are true? (Choose two.)
- A. Logs for this security policy are not generated.
- B. Traffic static for this security policy are not generated.
- C. Traffic statistics for this security policy are generated.
- D. Logs for this security policy are generated.
Answer: B,D
NEW QUESTION 21
You want to integrate an SRX Series device with SKY ATP.
What is the first action to accomplish task?
- A. Create the SSL VPN tunnel between the SRX Series device and Sky ATP.
- B. Copy the operational script from the Sky ATP Web UI.
- C. Issue the commit script to register the SRX Series device.
- D. Create an account with the Sky ATP Web UI.
Answer: A
NEW QUESTION 22
A new SRX Series device has been delivered to your location. The device has the factory-default configuration loaded. You have powered on the device and connected to the console port.
What would you use to log into the device to begin the initial configuration?
- A. Root with a password of juniper''
- B. Admin with password
- C. Root with no password
- D. Admin with a password ''juniper''
Answer: A
NEW QUESTION 23
Click the Exhibit button.
Referring to the exhibit, which type of NAT is being performed?
- A. source NAT with PAT
- B. source NAT without PAT
- C. destination NAT with PAT
- D. destination NAT without PAT
Answer: A
NEW QUESTION 24
You have created a zones-based security policy that permits traffic to a specific webserver for the marketing team. Other groups in the company are not permitted to access the webserver. When marketing users attempt to access the server they are unable to do so.
What are two reasons for this access failure? (Choose two.)
- A. You failed to position the policy before the policy that denies access the webserver
- B. You failed to change the source zone to include any source zone.
- C. You failed to commit the policy change.
- D. You failed to position the policy after the policy that denies access to the webserver.
Answer: A,C
NEW QUESTION 25
Which two statements are true about security policy actions? (Choose two.)
- A. The deny action silently drop the traffic.
- B. The reject action silently drops the traffic.
- C. The deny action drops the traffic and sends a message to the source device.
- D. The reject action drops the traffic and sends a message to the source device.
Answer: A,B
NEW QUESTION 26
Which two statements are correct about global security policies? (choose two)
- A. Global based policies can reference the source zone
- B. Global based policies must reference the source and destination zones
- C. Global based policies can reference the destination zone
- D. Global based policies must reference a dynamic application
Answer: A,C
NEW QUESTION 27
Which two elements are needed on an SRX Series device to set up a remote syslog server? (Choose two.)
- A. Data size
- B. IP address
- C. Data type
- D. Data throughput
Answer: B,C
NEW QUESTION 28
Which statement is correct about global security policies?
- A. Global policies allow you to regulate traffic with addresses and applications, regardless of their security zones.
- B. Global security policies require you to identify a source and destination zone.
- C. Global policies eliminate the need to assign logical interfaces to security zones.
- D. Traffic matching global policies is not added to the session table.
Answer: A
Explanation:
Explanation/Reference:
NEW QUESTION 29
......
Latest JN0-230 Exam Dumps Juniper Exam: https://www.testvalid.com/JN0-230-exam-collection.html