Labour Day Sale - Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: mxmas70

Home > Juniper > Associate JNCIA-SEC > JN0-231

JN0-231 Security-Associate (JNCIA-SEC) Question and Answers

Question # 4

What is the default timeout value for TCP sessions on an SRX Series device?

A.

30 seconds

B.

60 minutes

C.

60 seconds

D.

30 minutes

Full Access
Question # 5

You want to prevent other users from modifying or discarding your changes while you are also editing the configuration file.

In this scenario, which command would accomplish this task?

A.

configure master

B.

cli privileged

C.

configure exclusive

D.

configure

Full Access
Question # 6

An application firewall processes the first packet in a session for which the application has not yet been identified.

In this scenario, which action does the application firewall take on the packet?

A.

It allows the first packet.

B.

It denies the first packet and sends an error message to the user.

C.

It denies the first packet.

D.

It holds the first packet until the application is identified.

Full Access
Question # 7

Which two statements about user-defined security zones are correct? (Choose two.)

A.

Users cannot share security zones between routing instances.

B.

Users can configure multiple security zones.

C.

Users can share security zones between routing instances.

D.

User-defined security zones do not apply to transit traffic.

Full Access
Question # 8

What is the main purpose of using screens on an SRX Series device?

A.

to provide multiple ports for accessing security zones

B.

to provide an alternative interface into the CLI

C.

to provide protection against common DoS attacks

D.

to provide information about traffic patterns traversing the network

Full Access
Question # 9

You are deploying an SRX Series firewall with multiple NAT scenarios.

In this situation, which NAT scenario takes priority?

A.

interface NAT

B.

source NAT

C.

static NAT

D.

destination NAT

Full Access
Question # 10

Which two statements are correct about screens? (Choose two.)

A.

Screens process inbound packets.

B.

Screens are processed on the routing engine.

C.

Screens process outbound packets.

D.

Screens are processed on the flow module.

Full Access
Question # 11

Which two statements are correct about IPsec security associations? (Choose two.)

A.

IPsec security associations are bidirectional.

B.

IPsec security associations are unidirectional.

C.

IPsec security associations are established during IKE Phase 1 negotiations.

D.

IPsec security associations are established during IKE Phase 2 negotiations.

Full Access
Question # 12

Which three operating systems are supported for installing and running Juniper Secure Connect client software? (Choose three.)

A.

Windows 7

B.

Android

C.

Windows 10

D.

Linux

E.

macOS

Full Access
Question # 13

What is an IP addressing requirement for an IPsec VPN using main mode?

A.

One peer must have dynamic IP addressing.

B.

One peer must have static IP addressing.

C.

Both peers must have dynamic IP addresses.

D.

Both peers must have static IP addressing.

Full Access
Question # 14

What are two valid address books? (Choose two.)

A.

66.129.239.128/25

B.

66.129.239.154/24

C.

66.129.239.0/24

D.

66.129.239.50/25

Full Access
Question # 15

When are Unified Threat Management services performed in a packet flow?

A.

before security policies are evaluated

B.

as the packet enters an SRX Series device

C.

only during the first path process

D.

after network address translation

Full Access