JN0-332 Exam Questions
472 real JN0-332 exam questions with expert-verified answers and explanations. Page 8 of 10.
- Question #384
Referring to the exhibit, which two statements are true? (Choose two.) [edit security nat source] user@srx# show pool A { address { 172.16.52.94/32; } } rule-set 1A { from zone tru...
- Question #385
Click the Exhibit button.You have implemented source NAT using a source pool for address translation. However, traffic destined for 192.150.2.140 should not have NAT applied to it....
- Question #386
A PC in the trust zone is trying to ping a host in the untrust zone. Referring to the exhibit, which type of NAT is configured?
- Question #387
Your network management station has generated an alarm regarding NAT utilization based on an SNMP trap received from an SRX Series device. Referring to the exhibit, which statement...
- Question #388
Referring to the exhibit, which three statements are correct? (Choose three.)
- Question #389
You are troubleshooting an IPsec VPN connection between a local SRX Series device using IP address 192.168.1.100 and a remote SRX device using IP address 192.168.2.100. A VPN conne...
- Question #390
You are implementing a new route-based IPsec VPN on an SRX Series device and the tunnel will not establish. What needs to be modified in the configuration shown in the exhibit? sec...
- Question #391
Referring to the exhibit, which statement is correct about the IPsec configuration?
- Question #392
Referring to the exhibit, which statement is correct about the IPsec configuration?
- Question #393
Referring to the exhibit, you are setting up the hub in a hub-and-spoke IPsec VPN. You have verified that all configured parameters are correct at all sites, but your IPsec VPN is...
- Question #394
You have created an IPsec VPN on an SRX Series device. You believe the tunnel is configured correctly, but traffic from a host with the IP address of 10.12.1.10 cannot reach a remo...
- Question #395
The exhibit shows output from two show commands. What are two conclusions about the VPN tunnel from the output? (Choose two.) user@host> show security ipsec security-associations T...
- Question #396
Click the Exhibit button. Server A is communicating with Server B directly over the Internet. The servers now must begin exchanging additional information through an unencrypted pr...
- Question #397
Referring to the exhibit, you have built a chassis cluster, set up a reth, and put interfaces into the reth. However, when you try to commit the configuration, you receive the erro...
- Question #398
Referring to the exhibit, failover to Node 0 occurred for Redundancy Group 2 because of an interface failure. The interface has since been restored, but Node 0 is still the primary...
- Question #399
Referring to the exhibit, you have two SRX Series devices in a chassis cluster, and Node 0 is currently the primary node. You want to ensure that traffic using those interfaces fai...
- Question #400
Referring to the exhibit, you have two SRX Series devices in a chassis cluster, and Node 0 is currently the primary node. You want to ensure that traffic, using those interfaces, f...
- Question #401
Referring to the exhibit, with Node 0 as primary for Redundancy Group (RG) 1, which action will the Junos OS chassis cluster take if interface ge-1/0/0 goes down?
- Question #402
You have configured antispam on your SRX Series device as shown in the exhibit. Assuming the antispam profile has been properly applied, what happens when an e-mail message arrives...
- Question #403
Click the Exhibit button. Your SRX Series device includes the content filtering configuration shown in the exhibit. Assuming the content filtering profile has been properly applied...
- Question #404
You have configured antispam on your SRX Series device as shown in the exhibit. Assuming the antispam profile has been properly applied, what happens when an e-mail message arrives...
- Question #405
What does a zone contain?
- Question #406
Referring to the exhibit, you have just committed the UTM configuration. Which statement is correct?
- Question #407
Click the Exhibit button. Your SRX Series device includes the Web filtering configuration shown in the exhibit. Assuming the Web filtering profile has been properly applied, what h...
- Question #408
Which three IP option fields can an attacker exploit to cause problems in a network? (Choose three.)
- Question #409
You want to configure a security policy that allows traffic to a particular host. Which step must you perform before committing a configuration with the policy?
- Question #410
Which three match criteria must each security policy include? (Choose three.)
- Question #411
Which operational command produces the output shown in the exhibit?
- Question #412
For a route-based VPN, which statement is true?
- Question #413
Which three components can be downloaded and installed directly from Juniper Networks update server to an SRX Series device? (Choose three.)
- Question #414
Which type of logging is supported for UTM logging to an external syslog server on branch SRX Series devices?
- Question #415
To which depth of compressed (Zip) files can the Junos full antivirus feature scan?
- Question #416
Which two statements describe full file-based antivirus protection? (Choose two.)
- Question #417
Which function does Diffie-Hellman exchange perform for IPsec VPN?
- Question #418
Referring to the exhibit, which two statements are correct? (choose two) [edit security zones] user@host#show security-zone untrust { screen untrust-screen host-inbound-traffic { s...
- Question #419
Which statement is true about implementing IP spoofing protection as a Junos Screen option?
- Question #420
Referring to the exhibit, which two statements are correct about IPsec configuration? (choose two)
- Question #421
You have a chassis cluster established between two SRX Series devices. You re monitoring the status of the cluster and notice that some redundancy groups show disabled. What are tw...
- Question #422
Referring to the exhibit, you see that Node 0 is currently primary for redundancy Group 0. You have not yet configured any chassis cluster parameters. You want to ensure that Node...
- Question #423
Referring to the exhibit, you have just committed the UTM antivirus configuration. You notice that the SRX Series device shows that Kaspersky scanning is being used instead of expr...
- Question #424
Which statement is true about a logical interface?
- Question #425
Which three functions are provided by JUNOS Software for security platforms? (Choose three.)
- Question #426
Which two functions of JUNOS Software are handled by the data plane? (Choose two.)
- Question #427
In JUNOS Software, which three packet elements can be inspected to determine if a session already exists? (Choose three.)
- Question #428
By default, which condition would cause a session to be removed from the session table?
- Question #429
What is the purpose of a zone in JUNOS Software?
- Question #430
You want to limit attacks on TCP ports. Which two scans should you be concerned about? (Choose two)
- Question #431
An attacker from IP address 1.1.1.2 is filling your SRX Series device's session table with TCP sessions that have all completed a legitimate three-way handshake. What will help thr...
- Question #432
A security analyst at your company wants to make sure packets coming from the Internet accessing your public Web servers are protected from HTTP packets that do not meet standards....
- Question #433
A site-to-site VPN is configured between the main office and a remote office. An administrator wants to keep track of the VPN tunnel. Which feature is used to verify that the VPN t...