JN0-634 Exam Questions
84 real JN0-634 exam questions with expert-verified answers and explanations. Page 2 of 2.
- Question #52
What are three components of Software-Defined Secure Networks? (Choose three.)
- Question #53
Which AppSecure feature identifies applications that are present in traffic?
- Question #54
Which three components are part of the AppSecure services suite? (Choose three.)
- Question #55
Referring to the exhibit, a user with IP address 10.1.1.85 generates a request that triggers the HTTP:EXT:DOT-LNK IDP signature that is a member of the "HTTP - All" predefined atta...
- Question #56
What is a function of UTM?
- Question #57
Which two parameters are required to match in an IDP rule for the terminal option to take effect? (Choose two.)
- Question #58
You are implementing user authentication on your network using an SRX Series device and want to ensure that there are redundant forms of authentication for users to access the netw...
- Question #59
You are configuring transparent mode on an SRX Series device. You must permit IP-based traffic only, and BPDUs must be restarted to the VLANs from which they originate. Which confi...
- Question #60
Click the Exhibit button. Referring to the exhibit, you have expanded the disk storage size in ESXi for your log collector from 500 GB to 600 GB. However, your log collector's disk...
- Question #61
You are scanning files that are being transferred from the Internet to hosts on your internal network with Sky ATP. However, you notice that files that are 1 GB in size are not bei...
- Question #62
Your manager has notices a drop in productivity and believes it is due to employees checking their social media feeds too frequently. You are asked to provide analytical statistics...
- Question #63
What is the required when deploying a log collector in Junos Space?
- Question #64
Click the Exhibit button. been blocked. Referring to the log message shown in the exhibit, why was access blocked?
- Question #65
Using the Policy Controller API, which configuration would post Sky ATP with PE mode to the Policy Enforcer controller configuration?
- Question #66
Click the Exhibit button. [edit security] user@host# show policies global { policy new-policy { match { source-address any; destination-address any; application junos-https; } then...
- Question #67
The IPsec VPN on your SRX Series device establishes both the Phase 1 and Phase 2 security associations. Users are able to pass traffic through the VPN. During peak VPN usage times,...
- Question #68
You have initiated the download of the IPS signature database on your SRX Series device. Which command would you use to confirm the download has completed?
- Question #69
You are asked to implement a Dynamic IPsec VPN on your new SRX240. You are required to facilitate up to 5 simultaneous users. Which two statements must be considered when accomplis...
- Question #70
Click the Exhibit button. user @host> show bgp summary logical-system LSYS1 Groups : 11 Peers : 10 Down peers: 1 Table Tot. Paths Act Paths Suppressed History Damp State Pending in...
- Question #71
Your manager asks you to show which attacks have been detected on your SRX Series device using the IPS feature. Which command would you use to accomplish this task?
- Question #72
Click the Exhibit button. user@key-server> show security group-vpn server ike security- associations Index State Initiator cookie Responder cookie Mode Remote Address 97 UP bb22440...
- Question #73
You are using destination NAT to translate the address of your HTTPS server to a private address on your SRX Series device. You have decided to implement IDP SSL decryption. Upon e...
- Question #74
You are asked to ensure that your IPS engine blocks attacks. You must ensure that your system continues to drop additional malicious traffic without additional IPS processing for u...
- Question #75
You are asked to implement the AppFW feature on an SRX Series device. Which three tasks must be performed to make the feature work? (Choose three.)
- Question #76
You must ensure that your Layer 2 traffic is secured on your SRX Series device in transparent mode. What must be considered when accomplishing this task?
- Question #77
What is a secure key management protocol used by IPsec?
- Question #78
You want to route traffic between two newly created virtual routers without the use of logical systems using the configuration options on the SRX5800. Which two methods of forwardi...
- Question #79
As an SRX administrator, you must find all encrypted sessions on an SRX Series device. Which command would you use to accomplish this task?
- Question #80
Which configurable SRX Series device feature allows you to capture transit traffic?
- Question #81
Which two statements about AppQoS are true? (Choose two.)
- Question #82
Click the Exhibit button. [edit protocols ospf area 0.0.0.0] user@host# run show security ike security-associations Index State Initiator cookie Responder cookie Mode Remote Addres...
- Question #83
A local user complains that they cannot connect to an FTP server on the DMZ network. You investigate and confirm that the security policy allows FTP traffic from the trust zone to...
- Question #84
Click the Exhibit button. IPv6 to IPv4 addresses are not being translated as shown in the exhibit. Which two configurations would resolve the problem? (Choose two.)
- Question #85
Click the Exhibit button. userehost# run show route inet.0: 4 destinations, 4 routes (4 active, 0 holddown, 0 hidden) + = Active Route, - = Last Active, * = Both 0.0.0.0/0 *[Static...