Pre-Summer Sale Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: 65pass65

JN0-336 Security, Specialist (JNCIS-SEC) is now Stable and With Pass Result | Test Your Knowledge for Free

Exams4sure Dumps

JN0-336 Practice Questions

Security, Specialist (JNCIS-SEC)

Last Update 1 day ago
Total Questions : 66

Dive into our fully updated and stable JN0-336 practice test platform, featuring all the latest JNCIS-SEC exam questions added this week. Our preparation tool is more than just a Juniper study aid; it's a strategic advantage.

Our free JNCIS-SEC practice questions crafted to reflect the domains and difficulty of the actual exam. The detailed rationales explain the 'why' behind each answer, reinforcing key concepts about JN0-336. Use this test to pinpoint which areas you need to focus your study on.

JN0-336 PDF

JN0-336 PDF (Printable)
$54.25
$154.99

JN0-336 Testing Engine

JN0-336 PDF (Printable)
$59.5
$169.99

JN0-336 PDF + Testing Engine

JN0-336 PDF (Printable)
$74.55
$212.99
Question # 1

You are asked to set up SSL proxy in SRX Series devices. An SSL proxy profile is already defined for you.

Which two steps are required to complete the setup? (Choose two.)

Options:

A.  

Enable host-inbound-traffic HTTPS in the security zone in which SSL proxy is referenced.

B.  

Reference the SSL proxy profile in a security zone.

C.  

Reference the SSL proxy profile in a security policy.

D.  

Enable any Layer 7 services in the security policy in which SSL proxy is referenced.

Discussion 0
Question # 2

Which three different objects would be created, modified, cloned, and deleted in the Shared Objects workspace of Junos Space Security Director? (Choose three.)

Options:

A.  

geo IP

B.  

IP address

C.  

audit logs

D.  

policy enforcement groups

E.  

policy rules

Discussion 0
Question # 3

What are two causes that end the processing of rules in IDP? (Choose two.)

Options:

A.  

when a rule is matched in the rule base with an action of close

B.  

when a terminal rule is matched in the rule base

C.  

when any rule is matched in the exempt rule base

D.  

when a rule is matched in the rule base with an action of ignore

Discussion 0
Question # 4

Which protocol does the SRX Series Firewall use to communicate with a Windows domain controller?

Options:

A.  

SSH

B.  

LDAP

C.  

DNS

D.  

NETCONF

Discussion 0
Question # 5

An administrator decides to designate a node as the primary node for the chassis cluster.

Which statement is correct in this scenario?

Options:

A.  

Configure the burnt-in-address (BIA) to the highest value to bring the node as the primary node.

B.  

The node with the highest priority will become a primary node.

C.  

The node with the lowest priority will become a primary node.

D.  

Nodes with a priority of one are ineligible to participate in the election process.

Discussion 0
Question # 6

You are deploying a new SRX Series device and you need to log denied traffic.

In this scenario, which two policy parameters are required to accomplish this task? (Choose two.)

Options:

A.  

session-init

B.  

session-close

C.  

deny

D.  

count

Discussion 0
Question # 7

Which action will the SRX Series device take if traffic matches the custom attack object shown in the exhibit?

Question # 7

Options:

A.  

the action taken is defined in the IDP policy that includes this attack object.

B.  

the action taken is defined by the security policy.

C.  

The SRX Series device will reject the traffic.

D.  

The SRX series device will drop the traffic.

Discussion 0
Question # 8

You are asked to configure your company SRX Series device to use identity-aware security policies. Information about your Active Directory network is shown in the exhibit.

Question # 8

In this scenario, why must you configure JIMS instead of Active Directory as an identity source?

Options:

A.  

JIMS is the only way to get data from Active Directory.

B.  

You have too many Active Directory users.

C.  

The version of Windows OS is too old.

D.  

You have too many domain controllers.

Discussion 0
Question # 9

Using Junos Space Security Director, you want to configure a unique firewall policy for a specific SRX Series device.

Which firewall policy rules would satisfy the requirement?

Options:

A.  

all devices policy prerules

B.  

group policy prerules

C.  

device policy rules

D.  

all devices policy postrules

Discussion 0
Question # 10

Which two statements are correct about Juniper ATP Cloud malware analysis? (Choose two.)

Options:

A.  

If no match exists in cache, the remaining analysis features are processed with the cumulative threat score transmitted to the SRX Series device.

B.  

If a match exists in cache, that threat score is sent to the SRX Series device and the analysis continues.

C.  

If a match exists in cache, that threat score is sent to the SRX Series device and the analysis stops.

D.  

If no match exists in cache, the first analysis feature to generate a threat score is transmitted to the SRX Series device.

Discussion 0
Get JN0-336 dumps and pass your exam in 24 hours!

Free Exams Sample Questions