DumpExams is an authorized company offering valid and latest dump exams & dumps VCE materials. Our dump exams & dumps VCE materials are high-quality; our passing rate is higher than others.

[Aug-2022 Newly Released] Pass JN0-231 Exam - Real Questions & Answers [Q18-Q35]

Share

[Aug-2022 Newly Released] Pass JN0-231 Exam - Real Questions and Answers

Pass JN0-231 Review Guide, Reliable JN0-231 Test Engine


Certification Topics of Juniper JN0-231 Exam

  • SRX Series Devices

  • Security policies

  • Monitoring/Reporting and Troubleshooting

  • Unified Threat Management

  • Network Address Translation

  • Junos Security Objects

 

NEW QUESTION 18
What are the valid actions for a source NAT rule in J-Web? (choose three.)

  • A. Pool
  • B. Off
  • C. On
  • D. Source
  • E. interface

Answer: A,B,E

 

NEW QUESTION 19
You want to deploy a NAT solution.
In this scenario, which solution would provide a static translation without PAT?

  • A. pool-based NAT with address shifting
  • B. pool-based NAT without PAT
  • C. pool-based NAT with PAT
  • D. interface-based source NAT

Answer: B

 

NEW QUESTION 20
You are assigned a project to configure SRX Series devices to allow connections to your webservers. The webservers have a private IP address, and the packets must use NAT to be accessible from the Internet. The webservers must use the same address for both connections from the Internet and communication with update servers.
Which NAT type must be used to complete this project?

  • A. source NAT
  • B. static NAT
  • C. hairpin NAT
  • D. destination NAT

Answer: D

 

NEW QUESTION 21
You want to integrate an SRX Series device with SKY ATP.
What is the first action to accomplish task?

  • A. Copy the operational script from the Sky ATP Web UI.
  • B. Issue the commit script to register the SRX Series device.
  • C. Create the SSL VPN tunnel between the SRX Series device and Sky ATP.
  • D. Create an account with the Sky ATP Web UI.

Answer: D

 

NEW QUESTION 22
Which two elements are needed on an SRX Series device to set up a remote syslog server? (Choose two.)

  • A. Data throughput
  • B. IP address
  • C. Data size
  • D. Data type

Answer: B,D

 

NEW QUESTION 23
A security zone is configured with the source IP address 192.168.0.12/255.255.0.255 wildcard match.
In this scenario, which two IP packets will match the criteria? (Choose two.)

  • A. 192.168.1.12
  • B. 192.168.1.21
  • C. 192.168.22.12
  • D. 192.168.0.1

Answer: A,C

 

NEW QUESTION 24
Which two components are part of a security zone? (Choose two.)

  • A. fxp0
  • B. ge-0/0/0.0
  • C. address book
  • D. inet.0

Answer: A,B

 

NEW QUESTION 25
Which statement about IPsec is correct?

  • A. IPsec support packet fragmentation by intermediary devices.
  • B. IPsec support both tunnel and transport modes.
  • C. IPsec can provide encryption but not data integrity.
  • D. IPsec must use certificates to provide data encryption

Answer: B

 

NEW QUESTION 26
Which two statements are correct about global security policies? (choose two)

  • A. Global based policies can reference the source zone
  • B. Global based policies must reference a dynamic application
  • C. Global based policies must reference the source and destination zones
  • D. Global based policies can reference the destination zone

Answer: A,D

 

NEW QUESTION 27
Unified threat management (UTM) inspects traffic from which three protocols? (Choose three.)

  • A. SSH
  • B. FTP
  • C. HTTP
  • D. SMTP
  • E. SNMP

Answer: B,C,E

 

NEW QUESTION 28
You want to generate reports from the l-Web on an SRX Series device.
Which logging mode would you use in this scenario?

  • A. Stream
  • B. local
  • C. Event
  • D. Syslog

Answer: A

 

NEW QUESTION 29
Which security feature is applied to traffic on an SRX Series device when the device is running n packet mode?

  • A. Firewall filters
  • B. Unified policies
  • C. Sky ATP
  • D. ALGs

Answer: A

 

NEW QUESTION 30
Which statement about IPsec is correct?

  • A. IPsec can be used to transport native Layer 2 packets.
  • B. IPsec can provide encapsulation but not encryption
  • C. IPsec is used to provide data replication
  • D. IPsec is a standards-based protocol.

Answer: D

 

NEW QUESTION 31
SRX Series devices have a maximum of how many rollback configurations?

  • A. 0
  • B. 1
  • C. 2
  • D. 3

Answer: D

 

NEW QUESTION 32
Exhibit.

Which two statements are true? (Choose two.)

  • A. Logs for this security policy are generated.
  • B. Traffic static for this security policy are not generated.
  • C. Traffic statistics for this security policy are generated.
  • D. Logs for this security policy are not generated.

Answer: A,C

 

NEW QUESTION 33
Which flow module components handles processing for UTM?

  • A. Screen options
  • B. Zones
  • C. Policy
  • D. Services

Answer: D

 

NEW QUESTION 34
What is the purpose of the Shadow Policies workspace in J-Web?

  • A. The Shadow Policies workspace shows used security policies due to policy overlap
  • B. The Shadow Policies workspace shows unused IPS policies due to policy overlap.
  • C. The Shadow Policies workspace shows unused security policies due to policy overlap.
  • D. The Shadow Policies workspace shows used IPS policies due to policy overlap

Answer: C

 

NEW QUESTION 35
......

100% Free JN0-231 Daily Practice Exam With 147 Questions: https://www.dumpexams.com/JN0-231-real-answers.html

JN0-231 Test Engine Practice Test Questions, Exam Dumps: https://drive.google.com/open?id=18Idxh9iQ_H3PVOCiemcmLr_2mkc9Nezu