nerdexam
Juniper

JN0-635 · Question #41

Click the Exhibit button. Which statement explains the current state value of the command output shown in the exhibit?

The correct answer is D. The user-to-address mapping was successfully read from the domain controller event logs, and. The integrated user firewall feature gathers user and group information for Active Directory authentication by reading domain controller event logs, probing domain PCs, and querying Lightweight Directory Access Protocol (LDAP) services within the configured Windows domain. Up…

Advanced Security Zones and Policies

Question

Click the Exhibit button. Which statement explains the current state value of the command output shown in the exhibit?

Exhibit

JN0-635 question #41 exhibit

Options

  • AA valid response was received from a domain PC probe, and the user is a valid domain user
  • BAn invalid response was received from a domain PC probe, and the user is an invalid domain
  • CA probe event generated an entry in the authentication table, but no probe response has been
  • DThe user-to-address mapping was successfully read from the domain controller event logs, and

How the community answered

(36 responses)
  • A
    8% (3)
  • B
    6% (2)
  • C
    3% (1)
  • D
    83% (30)

Explanation

The integrated user firewall feature gathers user and group information for Active Directory authentication by reading domain controller event logs, probing domain PCs, and querying Lightweight Directory Access Protocol (LDAP) services within the configured Windows domain. Up to two Windows domains are supported. From the user and group information, the integrated user firewall feature generates an Active Directory authentication table on the Routing Engine of the SRX Series device, which then pushes the authentication table to the Packet Forwarding Engine. Security policies use the information in the table to authenticate users and to provide access control for traffic through the

Topics

#user firewall#authentication table#domain controller event logs#identity-based policy

Community Discussion

No community discussion yet for this question.

Full JN0-635 Practice