ExamGecko
Home Home / Juniper / JN0-1332

Juniper JN0-1332 Practice Test - Questions Answers, Page 3

Question list
Search
Search

List of questions

Search

Related questions











Exhibit.

In the 3-tier VPN design shown in the exhibit, which function are the Campus A and Campus B SRX Series devices performing?

A.
Internet security gateway
A.
Internet security gateway
Answers
B.
data center firewall
B.
data center firewall
Answers
C.
WAN aggregation
C.
WAN aggregation
Answers
D.
VPN bridging
D.
VPN bridging
Answers
Suggested answer: A

You are designing a security solution for an existing data center. All traffic most be secured using SRX Series devices, however, you are unable to change the existing IP addressing scheme. Which firewall deployment method satisfies this requirement?

A.
transparent deployment
A.
transparent deployment
Answers
B.
two-arm deployment
B.
two-arm deployment
Answers
C.
one-arm deployment
C.
one-arm deployment
Answers
D.
inline deployment
D.
inline deployment
Answers
Suggested answer: A

Refer to the Exhibit.

You are asked to provide a proposal for security elements in the service provider network shown in the exhibit. You must provide DOoS protection for Customer A from potential upstream attackers.

Which statements correct in this scenario?

A.
You should implement DDoS protection to drop offending traffic on the edge devices closest to the destination of the attack.
A.
You should implement DDoS protection to drop offending traffic on the edge devices closest to the destination of the attack.
Answers
B.
You should implement DDoS protection to drop offending traffic on the edge devices closest to the source of the attack.
B.
You should implement DDoS protection to drop offending traffic on the edge devices closest to the source of the attack.
Answers
C.
You should implement DDoS protection to drop offending traffic on the core devices.
C.
You should implement DDoS protection to drop offending traffic on the core devices.
Answers
D.
You should implement DDoS protection to drop offending traffic on the customer edge device.
D.
You should implement DDoS protection to drop offending traffic on the customer edge device.
Answers
Suggested answer: C

You must implement a security solution that uses a central database to authenticate devices without EAP-M05 based on their network interface address. Which solution will accomplish this task'?

A.
static MAC bypass
A.
static MAC bypass
Answers
B.
MAC RADIUS
B.
MAC RADIUS
Answers
C.
802.1X single secure
C.
802.1X single secure
Answers
D.
802.1X multiple
D.
802.1X multiple
Answers
Suggested answer: C

You are asked to design an automated vulnerability scanner that can actively check to see which ports are open and report on the findings. Which Junker Networks product would you use in this scenario7

A.
Security Director
A.
Security Director
Answers
B.
Log Director
B.
Log Director
Answers
C.
Policy Enforcer
C.
Policy Enforcer
Answers
D.
JSA
D.
JSA
Answers
Suggested answer: C

When using Contra! networking, security policies are distributed as access control list to which component?

A.
vSwith
A.
vSwith
Answers
B.
vSRX
B.
vSRX
Answers
C.
vMX
C.
vMX
Answers
D.
vRouter
D.
vRouter
Answers
Suggested answer: D

Which automation language would you use to create on-box and off-box scripts for SRX Series devices?

A.
Python
A.
Python
Answers
B.
Pert
B.
Pert
Answers
C.
Java
C.
Java
Answers
D.
Ruby
D.
Ruby
Answers
Suggested answer: D

When designing security for the service provider WAN. you are asked to implement unicast reverse path forwarding (uRPF) in this scenario. on which interfaces would you choose to implement loose mode uRPF?

A.
On interfaces where the best forwarding path fee routes is through the receiving interface
A.
On interfaces where the best forwarding path fee routes is through the receiving interface
Answers
B.
On interfaces that are user access interfaces
B.
On interfaces that are user access interfaces
Answers
C.
On interfaces where all data originates on the same network as that of the router interface
C.
On interfaces where all data originates on the same network as that of the router interface
Answers
D.
On interfaces that participate in multihomes environments
D.
On interfaces that participate in multihomes environments
Answers
Suggested answer: B

You are asked to enable denial of service protection for a webserver behind an SRX Series device In this scenario, which feature would you enable?

A.
screens
A.
screens
Answers
B.
App Secure
B.
App Secure
Answers
C.
Web filtering
C.
Web filtering
Answers
D.
Juniper ATP
D.
Juniper ATP
Answers
Suggested answer: D

As part of a design requirement you are asked to allow users in a specific department to authenticate only on their laptops and no other devices on the same network port. Which mode of 802 .1X authentication will you use to satisfy this requirement?

A.
multiple
A.
multiple
Answers
B.
single-secure
B.
single-secure
Answers
C.
single
C.
single
Answers
D.
MAC RADIUS
D.
MAC RADIUS
Answers
Suggested answer: A
Total 65 questions
Go to page: of 7