In transparent mode, you can create policies between which zones?
A. untrust and V1-Trust
B. private and L2-public
C. V1-Trust and private (L2)
D. V1-Untrust and L2-private
Which three describe a loopback interface? (Choose three.)
A. It is always on.
B. It is always in the null zone.
C. It is used for device management.
D. It can only have private IP addresses.
E. It is reachable using any physical interface.
Which ScreenOS WebUI button reorders policies?
A. Shift
B. Move
C. Reorder
D. Transfer
On a 5GT using multi-cell policies, what is the largest number of entries that can be entered into the source, destination or service fields?
A. 8
B. 16
C. 24
D. 32
While reviewing the config file you see the command "Set attack-db mode check". What is the purpose for this command?
A. To insure all traffic is checked regardless of policy
B. To Enable Deep Inspection functionality in the Netscreen firewall
C. To make sure that only traffic checked by a policy will be evaluated by the Deep Inspection
D. To insure you will be notified by a message when the Attack database needs to be updated
Which interface is placed in NAT mode to enable interface-based NAT?
A. DMZ interface
B. egress interface
C. ingress interface
D. external interface
While looking at your policies using the WebUI, you notice that the green permit policy has turned blue.
What would cause this?
A. The policy is currently inactive.
B. The policy is configured to support a MIP.
C. The policy is configured for unidirectional NAT.
D. The policy is currently passing traffic beyond its traffic limits and is in alarm state.
Which two statements are accurate about AH packets? (Choose two.)
A. AH authenticates the complete packet.
B. AH offers enhanced security over ESP.
C. AH allows the creation of unencrypted VPN networks.
D. AH cannot traverse NAT devices when operating in transport mode.
You are looking at the event log of the initiating device and it says: Received notify message for DOI <1> <14>
A. Phase 2 PFS failure
B. Phase 1 gateway failure
C. Phase 1 proposal mismatch
D. Phase 2 proposal mismatch
Tunnel binding is accomplished during which part of the VPN configuration process?
A. Phase 1
B. Phase 2
C. Route Creation
D. Replay protection
E. Tunnel Interface Creation