JN0-231: Security, Associate (JNCIA-SEC)
Juniper
Exam Number: JN0-231
Exam Name: Security, Associate (JNCIA-SEC)
Length of test: 90 mins
Exam Format: Multiple-choice, Drag and Drop, and HOTSPOT questions.
Exam Language: English
Number of questions in the actual exam: 65 questions
Passing Score: 70%
Topics Covered:
-
SRX Series Devices: Concepts or general features of SRX Series devices, including interfaces, hardware, initial configuration, traffic flow, and security processing.
-
Junos OS Security Objects: Concepts or general functionality of security zone, screen, address, or services objects.
-
Security Policies: Concepts, benefits, or operation of security policies, including zone-based policies, global policies, application firewall, unified security policies, intrusion prevention system (IPS)/intrusion detection and prevention (IDP), and integrated user firewall.
-
Juniper Advanced Threat Protection: Concepts, benefits, or operation of Juniper ATP Cloud, including general operation, blocking mechanisms, and network address translation (NAT).
-
Network Address Translation (NAT): Concepts, benefits, or operation of NAT, including source NAT, destination NAT, static NAT, and IPsec.
-
IPsec: Concepts, benefits, or operation of IPsec VPNs, including IPsec tunnel establishment, IPsec traffic processing, and IPsec site-to-site VPNs.
-
Unified Threat Management (UTM): Concepts, benefits, or operation of UTM, including content filtering, web filtering, antivirus, antispam, and monitoring/reporting/logging for Juniper security solutions.
This study guide should help you understand what to expect on the JN0-231 exam and includes a summary of the topics the exam might cover and links to additional resources. The information and materials in this document should help you focus your studies as you prepare for the exam.
Related questions
When configuring antispam, where do you apply any local lists that are configured?
Explanation:
https://www.juniper.net/documentation/us/en/software/junos/utm/topics/topic-map/securitylocal-list-antispam-filtering.html
Which two IKE Phase 1 configuration options must match on both peers to successfully establish a tunnel? (Choose two.)
When are Unified Threat Management services performed in a packet flow?
Explanation:
https://iosonounrouter.wordpress.com/2018/07/07/how-does-a-flow-based-srx-work/
What does the number "2" indicate in interface ge-0/1/2?
What is the default timeout value for TCP sessions on an SRX Series device?
Which two statements are correct about screens? (Choose two.)
What is the number of concurrent Secure Connect user licenses that an SRX Series device has by default?
Which three operating systems are supported for installing and running Juniper Secure Connect client software? (Choose three.)
Which statement about service objects is correct?
Explanation:
"Service objects represent applications and services that can be assigned to a security policy rule.
Applications and services can either be predefined by Junos software or custom defined by the administrator."
Reference:
Juniper Networks JNCIA-SEC Exam Guide:
https://www.juniper.net/training/certification/certification-exam-guides/jncia-sec-exam-guide/
You are monitoring an SRX Series device that has the factory-default configuration applied.
In this scenario, where are log messages sent by default?
Question