Juniper JN0-637 Practice Test - Questions Answers
List of questions
Related questions
You have a multinode HA default mode deployment and the ICL is down.
In this scenario, what are two ways that the SRX Series devices verify the activeness of their peers? (Choose two.)
Custom IP addresses may be configured for the activeness probe.
Fabric link heartbeats are used to verify the activeness of the peers.
Each peer sends a probe with the virtual IP address as the destination IP address.
Each peer sends a probe with the virtual IP address as the source IP address and the upstream router as the destination IP address.
Click the Exhibit button.
Referring to the exhibit, which two statements are true? (Choose two.)
The traffic is permitted.
The traffic was initiated by the 10.10.102.10 address.
The destination device is not responding.
The traffic is denied.
You are setting up multinode HA for redundancy.
Which two statements are correct in this scenario? (Choose two.)
Dynamic routing is active on one device at a time.
Dynamic routing is active on both devices.
Physical connections are used for the control and fabric links.
ICL links require Layer 3 connectivity between peers.
You want to configure the SRX Series device to map two peer interfaces together and ensure that there is no switching or routing lookup to forward traffic.
Which feature on the SRX Series device is used to accomplish this task?
Transparent mode
Secure wire
Mixed mode
Switching mode
You are enabling advanced policy-based routing. You have configured a static route that has a next hop from the inet.0 routing table. Unfortunately, this static route is not active in your routing instance.
In this scenario, which solution is needed to use this next hop?
Use RIB groups.
Use filter-based forwarding.
Use transparent mode.
Use policies.
Exhibit:
Referring to the flow logs exhibit, which two statements are correct? (Choose two.)
The packet is dropped by the default security policy.
The packet is dropped by a configured security policy.
The data shown requires a traceoptions flag of host-traffic.
The data shown requires a traceoptions flag of basic-datapath.
Exhibit:
You are configuring NAT64 on your SRX Series device. You have committed the configuration shown in the exhibit. Unfortunately, the communication with the 10.10.201.10 server is not working. You have verified that the interfaces, security zones, and security policies are all correctly configured.
In this scenario, which action will solve this issue?
Configure source NAT to translate return traffic from IPv4 address to the IPv6 address of your source device.
Configure proxy-ARP on the external IPv4 interface for the 10.10.201.10/32 address.
Configure proxy-NDP on the IPv6 interface for the 2001:db8::1/128 address.
Configure destination NAT to translate return traffic from the IPv4 address to the IPv6 address of your source device.
What are three core components for enabling advanced policy-based routing? (Choose three.)
Filter-based forwarding
Routing options
Routing instance
APBR profile
Policies
You want to bypass IDP for traffic destined to social media sites using APBR, but it is not working and IDP is dropping the session.
What are two reasons for this problem? (Choose two.)
The session did not properly reclassify midstream to the correct APBR rule.
IDP disable is not configured on the APBR rule.
The application services bypass is not configured on the APBR rule.
The APBR rule does a match on the first packet.
Which two statements are correct about mixed mode? (Choose two.)
Layer 2 and Layer 3 interfaces can use the same security zone.
IRB interfaces can be used to route traffic.
Layer 2 and Layer 3 interfaces can use separate security zones.
IRB interfaces cannot be used to route traffic.
Question