ExamGecko
Home Home / Juniper / JN0-636

Juniper JN0-636 Practice Test - Questions Answers, Page 8

Question list
Search
Search

List of questions

Search

Related questions











You issue the command shown in the exhibit.

Which policy will be active for the identified traffic?

A.
Policy p4
A.
Policy p4
Answers
B.
Policy p7
B.
Policy p7
Answers
C.
Policy p1
C.
Policy p1
Answers
D.
Policy p12
D.
Policy p12
Answers
Suggested answer: B

You have designed the firewall filter shown in the exhibit to limit SSH control traffic to yours SRX Series device without affecting other traffic.

Which two statement are true in this scenario? (Choose two.)

A.
The filter should be applied as an output filter on the loopback interface.
A.
The filter should be applied as an output filter on the loopback interface.
Answers
B.
Applying the filter will achieve the desired result.
B.
Applying the filter will achieve the desired result.
Answers
C.
Applying the filter will not achieve the desired result.
C.
Applying the filter will not achieve the desired result.
Answers
D.
The filter should be applied as an input filter on the loopback interface.
D.
The filter should be applied as an input filter on the loopback interface.
Answers
Suggested answer: C, D

Explanation:

https://www.juniper.net/documentation//en_US/junos/topics/concept/firewall-filter-ex-seriesevaluation-understanding.html

You have noticed a high number of TCP-based attacks directed toward your primary edge device. You are asked to configure the IDP feature on your SRX Series device to block this attack.

Which two IDP attack objects would you configure to solve this problem? (Choose two.)

A.
Network
A.
Network
Answers
B.
Signature
B.
Signature
Answers
C.
Protocol anomaly
C.
Protocol anomaly
Answers
D.
host
D.
host
Answers
Suggested answer: B, C

Which two log format types are supported by the JATP appliance? (Choose two.)

A.
YAML
A.
YAML
Answers
B.
XML
B.
XML
Answers
C.
CSV
C.
CSV
Answers
D.
YANG
D.
YANG
Answers
Suggested answer: B, C

Explanation:

https://www.juniper.net/documentation/en_US/release-independent/jatp/topics/topic-map/jatpcustom-log-ingestion.html

Exhibit.

A hub member of an ADVPN is not functioning correctly.

Referring the exhibit, which action should you take to solve the problem?

A.
[edit interfaces]root@vSRX-1# delete st0.0 multipoint
A.
[edit interfaces]root@vSRX-1# delete st0.0 multipoint
Answers
B.
[edit interfaces]user@hub-1# delete ipsec vpn advpn-vpn traffic-selector
B.
[edit interfaces]user@hub-1# delete ipsec vpn advpn-vpn traffic-selector
Answers
C.
[edit security]user@hub-1# set ike gateway advpn-gateway advpn suggester disable
C.
[edit security]user@hub-1# set ike gateway advpn-gateway advpn suggester disable
Answers
D.
[edit security]user@hub-1# delete ike gateway advpn-gateway advpn partner
D.
[edit security]user@hub-1# delete ike gateway advpn-gateway advpn partner
Answers
Suggested answer: B

Your organization has multiple Active Directory domain to control user access. You must ensure that security polices are passing traffic based upon the user's access rights.

What would you use to assist your SRX series devices to accomplish this task?

A.
JIMS
A.
JIMS
Answers
B.
Junos Space
B.
Junos Space
Answers
C.
JSA
C.
JSA
Answers
D.
JATP Appliance
D.
JATP Appliance
Answers
Suggested answer: A

Explanation:

https://www.juniper.net/documentation/en_US/junos/topics/topic-map/security-user-authconfigure-jims.html

According to the log shown in the exhibit, you notice the IPsec session is not establishing.

What is the reason for this behavior?

A.
Mismatched proxy ID
A.
Mismatched proxy ID
Answers
B.
Mismatched peer ID
B.
Mismatched peer ID
Answers
C.
Mismatched preshared key
C.
Mismatched preshared key
Answers
D.
Incorrect peer address.
D.
Incorrect peer address.
Answers
Suggested answer: B

Explanation:

https://www.juniper.net/documentation/en_US/release-independent/nce/topics/example/policybased-vpn-using-j-series-srxseries-device-configuring.html

Exhibit.

Referring to the exhibit, which two statements are true? (Choose two.)

A.
The configured solution allows IPv6 to IPv4 translation.
A.
The configured solution allows IPv6 to IPv4 translation.
Answers
B.
The configured solution allows IPv4 to IPv6 translation.
B.
The configured solution allows IPv4 to IPv6 translation.
Answers
C.
The IPv6 address is invalid.
C.
The IPv6 address is invalid.
Answers
D.
External hosts cannot initiate contact.
D.
External hosts cannot initiate contact.
Answers
Suggested answer: A, C

You opened a support ticket with JTAC for your Juniper ATP appliance. JTAC asks you to set up access to the device using the reverse SSH connection.Which three setting must be configured to satisfy this request?

(Choose three.)

A.
Enable JTAC remote access
A.
Enable JTAC remote access
Answers
B.
Create a temporary root account.
B.
Create a temporary root account.
Answers
C.
Enable a JATP support account.
C.
Enable a JATP support account.
Answers
D.
Create a temporary admin account.
D.
Create a temporary admin account.
Answers
E.
Enable remote support.
E.
Enable remote support.
Answers
Suggested answer: C, D, E

Explanation:

https://kb.juniper.net/InfoCenter/index?page=content&id=TN326&cat=&actp=LIST&showDraft=false

The monitor traffic interface command is being used to capture the packets destined to and the from the SRX Series device.

In this scenario, which two statements related to the feature are true? (Choose two.)

A.
This feature does not capture transit traffic.
A.
This feature does not capture transit traffic.
Answers
B.
This feature captures ICMP traffic to and from the SRX Series device.
B.
This feature captures ICMP traffic to and from the SRX Series device.
Answers
C.
This feature is supported on high-end SRX Series devices only.
C.
This feature is supported on high-end SRX Series devices only.
Answers
D.
This feature is supported on both branch and high-end SRX Series devices.
D.
This feature is supported on both branch and high-end SRX Series devices.
Answers
Suggested answer: A, D

Explanation:

https://forums.juniper.net/t5/Ethernet-Switching/monitor-traffic-interface/td-p/462528

Total 115 questions
Go to page: of 12