Certbus > Juniper > Associate JNCIA-SEC > JN0-230 > JN0-230 Online Practice Questions and Answers

JN0-230 Online Practice Questions and Answers

Questions 4

BY default, revenue interface are placed into which system-defined security zone on an SRX series device?

A. Trust

B. Null

C. Junos-trust

D. untrust

Browse 82 Q&As
Questions 5

Which statements is correct about Junos security zones?

A. User-defined security must contain at least one interface.

B. Security policies are referenced within a user-defined security zone.

C. Logical interface are added to user defined security zones

D. User-defined security must contains the key word `'zone''

Browse 82 Q&As
Questions 6

On an SRX Series device, how should you configure your IKE gateway if the remote endpoint is a branch office-using a dynamic IP address?

A. Configure the IPsec policy to use MDS authentication.

B. Configure the IKE policy to use aggressive mode.

C. Configure the IPsec policy to use aggressive mode.

D. Configure the IKE policy to use a static IP address

Browse 82 Q&As
Questions 7

Which two notifications are available when the antivirus engine detects and infected file? (Choose two.)

A. e-mail notifications

B. SNMP notifications

C. SMS notifications

D. Protocol-only notification

Browse 82 Q&As
Questions 8

What are configuring the antispam UTM feature on an SRX Series device. Which two actions would be performed by the SRX Series device for e-mail that is identified as spam? (Choose two.)

A. Tag the e-mail

B. Queue the e-mail

C. Block the e-mail

D. Quarantine e-mail

Browse 82 Q&As
Questions 9

Which statements is correct about global security policies?

A. Global policies allow you to regulate traffic with addresses and applications, regardless of their security zones.

B. Traffic matching global is not added to the session table.

C. Global policies eliminate the need to assign interface to security zones.

D. Global security require you to identify a source and destination zone.

Browse 82 Q&As
Questions 10

Which security feature is applied to traffic on an SRX Series device when the device is running n packet mode?

A. Sky ATP

B. ALGs

C. Firewall filters

D. Unified policies

Browse 82 Q&As
Questions 11

Which security object defines a source or destination IP address that is used for an employee Workstation?

A. Zone

B. Screen

C. Address book entry

D. scheduler

Browse 82 Q&As
Questions 12

Which two statements are true regarding zone-based security policies? (Choose two.)

A. Zone-based policies must reference a source address in the match criteria.

B. Zone-based policies must reference a URL category in the match criteria.

C. Zone-based policies must reference a destination address in the match criteria

D. Zone-based policies must reference a dynamic application in the match criteria.

Browse 82 Q&As
Questions 13

Which statements about NAT are correct? (Choose two.)

A. When multiple NAT rules have overlapping match conditions, the rule listed first is chosen.

B. Source NAT translates the source port and destination IP address.

C. Source NAT translates the source IP address of packet.

D. When multiple NAT rules have overlapping match conditions, the most specific rule is chosen.

Browse 82 Q&As
Questions 14

Which management software supports metadata-based security policies that are ideal for cloud deployments?

A. Security Director

B. J-Web

C. Network Director

D. Sky Enterprise

Browse 82 Q&As
Questions 15

You have configured a Web filtering UTM policy?

Which action must be performed before the Web filtering UTM policy takes effect?

A. The UTM policy must be linked to an egress interface

B. The UTM policy be configured as a routing next hop.

C. The UTM policy must be linked to an ingress interface.

D. The UTM policy must be linked to a security policy

Browse 82 Q&As
Questions 16

Click the exhibit button

You are configuring an IPsec VPN for the network show in the exhibit Which feature must be enabled the VPN to established successfully?

A. Main mode must be configured on the IKE gateway

B. Main mode must be configured on the IPsec VPN

C. Aggressive mode must be configured on the IPsec VPN

D. Aggressive mode must be configured on IKE gateway

Browse 82 Q&As
Questions 17

What is a characteristic of the Junos enhanced Web filtering solution ?

A. The SRX series device intercepts HTTP and HTTPS request and send the source IP address to the on-premises Websense server

B. The Websense cloud resolves the categorized URLs to IP addresses by performing a DNS reverse loockup

C. The Websense cloud categorize the URLs and also provide site reputation information.

D. Junos Enhanced Web filtering allows the SRX series device to categorize URLs using an on- premises websense server.

Browse 82 Q&As
Questions 18

Which statements describes stateless firewalls on SRX series devices?

A. Each packet is analyzed by firewall filters

B. Each packet is analyzed based on application layer security

C. Each packet is analyzed based on source zone

D. Each packet is analyzed as part of a session.

Browse 82 Q&As
Exam Code: JN0-230
Exam Name: Security-Associate (JNCIA-SEC)
Last Update: Mar 19, 2024
Questions: 82 Q&As

PDF

$45.99

VCE

$49.99

PDF + VCE

$59.99