Juniper JN0-637 Practice Test - Questions Answers, Page 5
List of questions
Related questions
Referring to the exhibit,
which statement about TLS 1.2 traffic is correct?
TLS 1.2 traffic will be sent to routing instance R1 but not forwarded to the next hop.
TLS 1.2 traffic will be sent to routing instance R1 and forwarded to next hop 10.1.0.1.
TLS 1.2 traffic will be sent to routing instance R2 but not forwarded to the next hop.
TLS 1.2 traffic will be sent to routing instance R2 and forwarded to next hop 10.2.0.1.
You have an initial setup of ADVPN with two spokes and a hub. A host at partner Spoke-1 is sending traffic to a host at partner Spoke-2.
In this scenario, which statement is true?
Spoke-1 will establish a VPN to Spoke-2 when this is first deployed, so traffic will be sent immediately to Spoke-2.
Spoke-1 will send the traffic through the hub and not use a direct VPN to Spoke-2.
Spoke-1 will establish the tunnel to Spoke-2 before sending any of the host traffic.
Spoke-1 will send the traffic destined to Spoke-2 through the hub until the VPN is established between the spokes.
Referring to the exhibit,
which two statements about User1 are true? (Choose two.)
User1 has access to the configuration specific to their assigned logical system.
User1 is logged in to logical system LSYS-1.
User1 can add logical units to an interface that a primary administrator has not previously assigned.
User1 can view outputs from other user logical systems.
Exhibit:
You are asked to ensure that Internet users can access the company's internal webserver using its FQDN. However, the internal DNS server's A record only points to the webserver's private address.
Referring to the exhibit, which two actions are required to complete this task? (Choose two.)
Disable the DNS ALG.
Configure static NAT for both the DNS server and the webserver.
Configure destination NAT for both the DNS server and the webserver.
Configure proxy ARP on ge-0/0/3.
How does an SRX Series device examine exception traffic?
The device examines the host-inbound traffic for the ingress interface and zone.
The device examines the host-outbound traffic for the ingress interface and zone.
The device examines the host-inbound traffic for the egress interface and zone.
The device examines the host-outbound traffic for the egress interface and zone.
Exhibit:
Referring to the exhibit, a default static route on SRX-1 sends all traffic to ISP-
You have configured APBR to send all requests for streaming video traffic to ISP-B. However, the return traffic from the streaming video server is coming through ISP-A, and the traffic is being dropped by SRX-1. You can only make changes on SRX-1. How do you solve this problem?
Place both ISP-facing interfaces in the same zone.
Change the APBR routing instance from a forwarding instance to a virtual router instance.
Enable AppTrack to keep track of the sessions and zones for the streaming video traffic.
Configure BGP to control the return path of the streaming video traffic.
You are configuring an interconnect logical system that is configured as a VPLS switch to allow two logical systems to communicate.
Which two parameters are required when configuring the logical tunnel interfaces? (Choose two.)
Encapsulation ethernet must be used.
The virtual tunnel interfaces should only be configured with two logical unit pairs per logical system interconnect.
The logical tunnel interfaces should be configured with two logical unit pairs per logical system interconnect.
Encapsulation ethernet-vpls must be used.
Exhibit:
You have configured a CoS-based VPN that is not functioning correctly.
Referring to the exhibit, which action will solve the problem?
You must delete one forwarding class.
You must change the loss priorities of the forwarding classes to low.
You must use inet precedence instead of DSCP.
You must change the code point for the DB-data forwarding class to 10000.
Exhibit:
Referring to the exhibit, which two statements are true? (Choose two.)
Hosts in the Local zone can be enabled for control plane access to the SRX.
An IRB interface is required to enable communication between the Trust and the Untrust zones.
You can configure security policies for traffic flows between hosts in the Local zone.
Hosts in the Local zone can communicate with hosts in the Trust zone with a security policy.
Your customer needs embedded security in an EVPN-VXLAN solution.
What are two benefits of adding an SRX Series device in this scenario? (Choose two.)
It enhances tunnel inspection for VXLAN encapsulated traffic with Layer 4-7 security services.
It adds extra security with the capabilities of an enterprise-grade firewall in the EVPN-VXLAN underlay.
It adds extra security with the capabilities of an enterprise-grade firewall in the EVPN-VXLAN overlay.
It enhances tunnel inspection for VXLAN encapsulated traffic with only Layer 4 security services.
Question