Labour Day Special - 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: c4sdisc65

JN0-231 PDF

$38.5

$109.99

3 Months Free Update

  • Printable Format
  • Value of Money
  • 100% Pass Assurance
  • Verified Answers
  • Researched by Industry Experts
  • Based on Real Exams Scenarios
  • 100% Real Questions

JN0-231 PDF + Testing Engine

$61.6

$175.99

3 Months Free Update

  • Exam Name: Security-Associate (JNCIA-SEC)
  • Last Update: Apr 24, 2024
  • Questions and Answers: 101
  • Free Real Questions Demo
  • Recommended by Industry Experts
  • Best Economical Package
  • Immediate Access

JN0-231 Engine

$46.2

$131.99

3 Months Free Update

  • Best Testing Engine
  • One Click installation
  • Recommended by Teachers
  • Easy to use
  • 3 Modes of Learning
  • State of Art Technology
  • 100% Real Questions included

JN0-231 Practice Exam Questions with Answers Security-Associate (JNCIA-SEC) Certification

Question # 6

An application firewall processes the first packet in a session for which the application has not yet been identified.

In this scenario, which action does the application firewall take on the packet?

A.

It allows the first packet.

B.

It denies the first packet and sends an error message to the user.

C.

It denies the first packet.

D.

It holds the first packet until the application is identified.

Full Access
Question # 7

Unified threat management (UTM) inspects traffic from which three protocols? (Choose three.)

A.

FTP

B.

SMTP

C.

SNMP

D.

HTTP

E.

SSH

Full Access
Question # 8

Which two criteria should a zone-based security policy include? (Choose two.)

A.

a source port

B.

a destination port

C.

zone context

D.

an action

Full Access
Question # 9

Which two non-configurable zones exist by default on an SRX Series device? (Choose two.)

A.

Junos-host

B.

functional

C.

null

D.

management

Full Access
Question # 10

What is an IP addressing requirement for an IPsec VPN using main mode?

A.

One peer must have dynamic IP addressing.

B.

One peer must have static IP addressing.

C.

Both peers must have dynamic IP addresses.

D.

Both peers must have static IP addressing.

Full Access
Question # 11

What are two Juniper ATP Cloud feed analysis components? (Choose two.)

A.

IDP signature feed

B.

C&C cloud feed

C.

infected host cloud feed

D.

US CERT threat feed

Full Access
Question # 12

You are investigating a communication problem between two hosts and have opened a session on the SRX Series device closest to one of the hosts and entered the show security flow session command.

What information will this command provide? (Choose two.)

A.

The total active time of the session.

B.

The end-to-end data path that the packets are taking.

C.

The IP address of the host that initiates the session.

D.

The security policy name that is controlling the session.

Full Access
Question # 13

Which two statements are correct about the null zone on an SRX Series device? (Choose two.)

A.

The null zone is created by default.

B.

The null zone is a functional security zone.

C.

Traffic sent or received by an interface in the null zone is discarded.

D.

You must enable the null zone before you can place interfaces into it.

Full Access
Question # 14

A security zone is configured with the source IP address 192.168.0.12/255.255.0.255 wildcard match.

In this scenario, which two IP packets will match the criteria? (Choose two.)

A.

192.168.1.21

B.

192.168.0.1

C.

192.168.1.12

D.

192.168.22.12

Full Access
Question # 15

What are three Junos UTM features? (Choose three.)

A.

screens

B.

antivirus

C.

Web filtering

D.

IDP/IPS

E.

content filtering

Full Access