Leads4pass > Juniper > Juniper Certifications > JN0-635 > JN0-635 Online Practice Questions and Answers

JN0-635 Online Practice Questions and Answers

Questions 4

Your organization has multiple Active Directory domains to control user access. You must ensure that security policies are passing traffic based upon the users' access rights.

What would you use to assist your SRX Series devices to accomplish this task?

A. JATP Appliance

B. JIMS

C. JSA

D. Junos Space

Buy Now
Questions 5

You are asked to set up notifications if one of your collector traffic feeds drops below 100 kbps.

Which two configuration parameters must be set to accomplish this task? (Choose two.)

A. Set a traffic SNMP trap on the JATP appliance

B. Set a logging notification on the JATP appliance

C. Set a general triggered notification on the JATP appliance

D. Set a traffic system alert on the JATP appliance

Buy Now
Questions 6

You are asked to merge to corporate network with the network from a recently acquired company. Both networks use the same private IPv4 address space (172.25.126.0/24). An SRX Series device servers as the gateway for each network.

Which solution allows you to merge the two networks without modifying the current address assignments?

A. persistent NAT

B. NAT46

C. source NAT

D. double NAT

Buy Now
Questions 7

Click the Exhibit button.

You deployed a site-to-site IPsec VPN connecting two data centers together using SRX5800s. After examining the performance of the IPsec VPN, you decide to enable IPsec performance acceleration to increase the rate of traffic that can be sent through the tunnel.

Referring to the exhibit, which two statements should you add to the configuration to accomplish this task? (Choose two.)

A. [edit security flow] user@srx# set tcp-mss ipsec-vpn mss 65535

B. [edit security flow] user@srx# set ipsec-performance-acceleration

C. [edit security flow] user@srx# set power-mode-ipsec

D. [edit security flow] user@srx# set load-distribution session-affinity ipsec

Buy Now
Questions 8

Click the Exhibit button.

A host is unable to communicate with a webserver. Referring to the exhibit, which statement is correct?

A. The webserver is not listening for traffic on port 80

B. A policy is denying the traffic between these two hosts

C. A session is created for this flow

D. The session table is running out of resources

Buy Now
Questions 9

Click the Exhibit button.

Referring to the exhibit, which two statements are true? (Choose two.)

A. Events based on this third-party feed will not affect a host's threat score

B. SRX Series devices will block traffic based on this third-party feed

C. SRX Series devices will not block traffic based on this third-party feed

D. Events based on this third-party feed will affect a host's threat score

Buy Now
Questions 10

Click the Exhibit button.

When attempting to enroll an SRX Series device to JATP, you receive the error shown in the exhibit. What is the cause of the error?

A. The fxp0 IP address is not routable

B. The SRX Series device certificate does not match the JATP certificate

C. The SRX Series device does not have an IP address assigned to the interface that accesses JATP

D. A firewall is blocking HTTPS on fxp0

Buy Now
Questions 11

You have designed the firewall filter shown in the exhibit to limit SSH control traffic to yours SRX Series

device without affecting other traffic.

Which two statement are true in this scenario? (Choose two.)

A. The filter should be applied as an output filter on the loopback interface.

B. Applying the filter will achieve the desired result.

C. Applying the filter will not achieve the desired result.

D. The filter should be applied as an input filter on the loopback interface.

Buy Now
Questions 12

Exhibit.

Referring to the exhibit, which two statements are true? (Choose two.)

A. The configured solution allows IPv6 to IPv4 translation.

B. The configured solution allows IPv4 to IPv6 translation.

C. The IPv6 address is invalid.

D. External hosts cannot initiate contact.

Buy Now
Questions 13

You are asked to configure a security policy on the SRX Series device. After committing the policy, you

receive the "Policy is out of sync between RE and PFE ." error.

Which command would be used to solve the problem?

A. request security polices resync

B. request service-deployment

C. request security polices check

D. restart security-intelligence

Buy Now
Exam Code: JN0-635
Exam Name: Security, Professional (JNCIP-SEC)
Last Update: Dec 23, 2024
Questions: 88
10%OFF Coupon Code: SAVE10

PDF (Q&A)

$49.99

VCE

$55.99

PDF + VCE

$65.99