nerdexam
Juniper

JN0-637 · Question #35

You are deploying threat remediation to endpoints connected through third-party devices. In this scenario, which three statements are correct? (Choose three.)

The correct answer is A. All third-party switches must support AAA/RADIUS and Dynamic Authorization Extensions to the B. The connector uses an API to gather endpoint MAC address information from the RADIUS D. The connector queries the RADIUS server for the infected host endpoint details and initiates a. For threat remediation in a third-party network, the RADIUS protocol is necessary to communicate with the RADIUS server for details about infected hosts. CoA enables security measures to be enforced based on endpoint information provided by the RADIUS server. Details on this…

Advanced Threat Prevention

Question

You are deploying threat remediation to endpoints connected through third-party devices. In this scenario, which three statements are correct? (Choose three.)

Options

  • AAll third-party switches must support AAA/RADIUS and Dynamic Authorization Extensions to the
  • BThe connector uses an API to gather endpoint MAC address information from the RADIUS
  • CAll third-party switches in the specified network are automatically mapped and registered with the
  • DThe connector queries the RADIUS server for the infected host endpoint details and initiates a
  • EThe RADIUS server sends Status-Server messages to update infected host information to the

How the community answered

(31 responses)
  • A
    71% (22)
  • C
    19% (6)
  • E
    10% (3)

Explanation

For threat remediation in a third-party network, the RADIUS protocol is necessary to communicate with the RADIUS server for details about infected hosts. CoA enables security measures to be enforced based on endpoint information provided by the RADIUS server. Details on this setup can be found in Juniper RADIUS and AAA Documentation. When deploying threat remediation to endpoints connected through third-party devices, such as switches, the following conditions must be met for proper integration and functioning: Explanation of Answer A (Support for AAA/RADIUS and Dynamic Authorization Extensions): Third-party switches must support AAA (Authentication, Authorization, and Accounting) and RADIUS with Dynamic Authorization Extensions. These extensions allow dynamic updates to be made to a session's authorization parameters, which are essential for enforcing access control based on threat detection. The connector uses an API to gather MAC address information from the RADIUS server. This MAC address data is necessary to identify and take action on infected hosts or endpoints. The connector queries the RADIUS server for infected host details and triggers a Change of Authorization (CoA) for the infected host. The CoA allows the connector to dynamically alter the host's access permissions or isolate the infected host based on its threat status.

Topics

#threat remediation#RADIUS#third-party switches#Dynamic Authorization

Community Discussion

No community discussion yet for this question.

Full JN0-637 Practice