JN0-541 Exam Questions
194 real JN0-541 exam questions with expert-verified answers and explanations. Page 2 of 4.
- Question #53
Within the SYN protector rule base, what is the function of relay action?
- Question #54
Which sensor process handles policy installation?
- Question #55
Which two statements are true? (Choose two.)
- Question #56
Which two statements describe action versus IP action? (Choose two.)
- Question #57
In order to obtain attack information so that you can create a new attack object definition, you must follow certain steps. Given the steps in the exhibit, assume you have acquired...
- Question #58
If the power is lost to an IDP sensor, which feature allows the traffic to continue to flow through the device?
- Question #59
You implement Traffic Anomaly detection and you find numerous alerts of port scans from your security auditing team that you want to ignore. You create an address book entry for th...
- Question #60
Which three actions should be taken on a rule in the IDP rule base when the sensor is in transparent mode? (Choose three.)
- Question #61
What contains instructions on how the sensor should decode protocols?
- Question #62
In the exhibit, which command would have produced this output?
- Question #63
What is the function of Terminate Match?
- Question #64
When creating a new signature-based attack object, which four components must be specified? (Choose four.)
- Question #65
Which OSI layer(s) of a packet does the IDP sensor examine?
- Question #66
When configuring a honeypot rule, which three fields must you specify? (Choose three.)
- Question #67
Which statement is true about packet capture in the IDP sensor?
- Question #68
Which sensor utility is used to decode the contexts of a sequence of packets? Juniper JN0-541 Exam
- Question #69
Which sensor command will capture packets on a particular interface?
- Question #70
What is the function of a compound attack object?
- Question #71
How does the IDP sensor emulate a honeypot?
- Question #72
Which two attack detection methods are unique to Juniper NetScreenIDP? (Choose two.)
- Question #73
Which three statements are true about Dynamic Groups? (Choose three.)
- Question #74
What is the default admin account password on the sensor?
- Question #75
How do you access the ACM interface on an IDP sensor?
- Question #76
In which two ways can you view the IP address of a sensor's eth0 interface? (Choose two.)
- Question #77
What is a TCP connect scan?
- Question #78
Which three devices support clustering? (Choose three.)
- Question #79
On a sensor in transparent mode, how many virtual circuits are assigned to a virtual router?
- Question #80
Which three columns can be seen in the Network View of the Enterprise Security Profiler? (Choose three.)
- Question #81
What does the action "close client" instruct the sensor to do?
- Question #82
Which three functions does the IDP sensor perform? (Choose three.)
- Question #83
Given the information in the exhibit. What is the proper order when fine tuning a policy?
- Question #84
What is the function of a dynamic attack object group?
- Question #85
Which two tasks can be performed using the ACM? (Choose two.)
- Question #86
When the action "close client" is performed by an IDP sensor on an FTP session, which message will be displayed to the client when using FTP on the command line?
- Question #87
You implement backdoor detection and you notice that an alert is generated each time an SSH session is established with the protected servers. What must you do to correct the situa...
- Question #88
Which interface does IDP use to communicate with Security Manager?
- Question #89
Within the SYN protector rule base, what is the function of relay action?
- Question #90
In the exhibit, which rule base would have generated the log message? Juniper JN0-541 Exam
- Question #91
Assume that Enterprise Security Profiler (ESP) has already captured data for your network. You want to view traffic that does not match the following protocols: HTTP, HTTPS, DNS. W...
- Question #92
In the exhibit both firewalls are active/active, which two statements are true for this scenario? (Choose two.)
- Question #93
What is "the location of an attack pattern protocol stream"?
- Question #94
What does the action "drop packet" instruct the sensor to do?
- Question #95
What is "a signature or protocol anomaly combined with context information"?
- Question #96
In order to obtain attack information so that you can create a new attack object definition, you must follow certain steps. Given the steps displayed in the exhibit, assume you hav...
- Question #97
Which two statements are true? (Choose two.)
- Question #98
You want Enterprise Security Profiler (ESP) to generate a message when a new host is detected on a network. Which two steps must you perform? (Choose two.)
- Question #99
In the exhibit, which SYN protector mode is the IDP using?
- Question #100
How can you monitor real-time IP flows through the IDP sensor? Juniper JN0-541 Exam
- Question #101
If an IDP sensor finds that a packet matchesa particular IDP rule, and then finds a matching exempt rule, what does the sensor do?
- Question #102
Which two tasks can be performed using the ACM? (Choose two.)