Labour Day Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: 70percent

Juniper JN0-230 Security-Associate (JNCIA-SEC) Exam Practice Test

Demo: 12 questions
Total 1 questions

Security-Associate (JNCIA-SEC) Questions and Answers

Question 1

Which two notifications are available when the antivirus engine detects and infected file? (Choose two.)

Options:

A.

e-mail notifications

B.

SNMP notifications

C.

SMS notifications

D.

Protocol-only notification

Question 2

Which two elements are needed on an SRX Series device to set up a remote syslog server? (Choose two.)

Options:

A.

Data type

B.

Data throughput

C.

IP address

D.

Data size

Question 3

What are two characteristic of static NAT SRX Series devices? (Choose two.)

Options:

A.

Source and destination NAT rules take precedence over static NAT rules.

B.

A reverse mapping rule is automatically created for the source translation.

C.

Static NAT rule take precedence over source and destination NAT rules.

D.

Static rules cannot coexist with destination NAT rules on the same SRX Series device configuration.

Question 4

Which two private cloud solution support vSRX devices? (Choose two.)

Options:

A.

Microsoft Azure

B.

Amazon Web Services (AWS)

C.

VMware Web Services (AWS)

D.

VMware NSX

E.

Contrail Cloud

Question 5

Which two segments describes IPsec VPNs? (Choose two.)

Options:

A.

IPsec VPN traffic is always authenticated.

B.

IPsec VPN traffic is always encrypted.

C.

IPsec VPNs use security to secure traffic over a public network between two remote sites.

D.

IPsec VPNs are dedicated physical connections between two private networks.

Question 6

You have created a zones-based security policy that permits traffic to a specific webserver for the marketing team. Other groups in the company are not permitted to access the webserver. When marketing users attempt to access the server they are unable to do so.

What are two reasons for this access failure? (Choose two.)

Options:

A.

You failed to change the source zone to include any source zone.

B.

You failed to position the policy after the policy that denies access to the webserver.

C.

You failed to commit the policy change.

D.

You failed to position the policy before the policy that denies access the webserver

Question 7

Which statements about NAT are correct? (Choose two.)

Options:

A.

When multiple NAT rules have overlapping match conditions, the rule listed first is chosen.

B.

Source NAT translates the source port and destination IP address.

C.

Source NAT translates the source IP address of packet.

D.

When multiple NAT rules have overlapping match conditions, the most specific rule is chosen.

Question 8

Which two match conditions would be used in both static NAT and destination NAT rule sets? (Choose two.)

Options:

A.

Destination zone

B.

Destination interface

C.

Source interface

D.

Source zone

Question 9

You want to generate reports from the l-Web on an SRX Series device.

Which logging mode would you use in this scenario?

Options:

A.

Syslog

B.

Stream

C.

Event

D.

local

Question 10

Referring to the exhibit.

****Exhibit is Missing****

Which type of NAT is performed by the SRX Series device?

Options:

A.

Source NAT with PAT

B.

Source Nat without PAT

C.

Destination NAT without PAT

D.

Destination NAT with PAT

Question 11

You are designing a new security policy on an SRX Series device. You must block an application and log all occurrence of the application access attempts.

In this scenario, which two actions must be enabled in the security policy? (Choose two.)

Options:

A.

Log the session initiations

B.

Enable a reject action

C.

Log the session closures

D.

Enable a deny action

Question 12

You are configuring an IPsec VPN tunnel between two location on your network. Each packet must be encrypted and authenticated.

Which protocol would satisfy these requirements?

Options:

A.

MD5

B.

ESP

C.

AH

D.

SHA

Demo: 12 questions
Total 1 questions