Spring Sale Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: buysanta

Exact2Pass Menu

Security, Specialist (JNCIS-SEC)

Last Update 1 hour ago Total Questions : 66

The Security, Specialist (JNCIS-SEC) content is now fully updated, with all current exam questions added 1 hour ago. Deciding to include JN0-336 practice exam questions in your study plan goes far beyond basic test preparation.

You'll find that our JN0-336 exam questions frequently feature detailed scenarios and practical problem-solving exercises that directly mirror industry challenges. Engaging with these JN0-336 sample sets allows you to effectively manage your time and pace yourself, giving you the ability to finish any Security, Specialist (JNCIS-SEC) practice test comfortably within the allotted time.

Question # 11

You are establishing an IPsec VPN and must ensure that payload data is encrypted.

In this scenario, which IPsec security protocol should you configure?

A.

SHA-1

B.

ESP

C.

AH

D.

PFS

Question # 12

What are two chassis cluster data plane interfaces? (Choose two.)

A.

swfab

B.

fab

C.

fxp1

D.

fxp0

Question # 13

Referring to the exhibit, what should you do to ensure that Juniper ATP Cloud detects malware in HTTPS traffic?

A.

Manually configure and apply an SSL proxy profile.

B.

Lower the threat score.

C.

Configure a new device profile that includes encrypted traffic.

D.

Change the action to redirect the encrypted traffic to a decryption device.

Question # 14

Which two statements are correct about a chassis cluster? (Choose two.)

A.

If the cluster ID is set to 0, the HA configuration is ignored.

B.

You must reboot the device anytime you change the node ID configuration.

C.

If the node ID is set to 0, the HA configuration is ignored.

D.

You must have multiple Layer 2 domains if you require more than 255 node IDs.

Question # 15

What are two types of attack objects included in an IDP attack object database? (Choose two.)

A.

statistic-based

B.

protocol anomaly-based

C.

signature-based

D.

vector-based

Question # 16

You work on the security operations team that manages firewalls only. In your data center, there are two SRX chassis clusters. These clusters operate on VLAN 1042. The network team advises you that they see the same MAC address coming from both chassis clusters for reth0.

Why is this occurring?

A.

The same cluster ID was used on both clusters.

B.

RGO is active on both node0 and node1 due to split-brain.

C.

Chassis clusters must be on separate VLANs.

D.

Link Aggregation Control Protocol is not synchronized.

Question # 17

Using Junos Space Security Director, you want to configure a unique firewall policy for a specific SRX Series device.

Which firewall policy rules would satisfy the requirement?

A.

all devices policy prerules

B.

group policy prerules

C.

device policy rules

D.

all devices policy postrules

Question # 18

When using Adaptive Threat Profiling, which two deployment modes are available on SRX Series devices? (Choose two.)

A.

bridge

B.

inline

C.

tap

D.

promiscuous

Question # 19

You want to show tabular data for operational mode commands.

In this scenario, which logging parameter will provide this function?

A.

permit

B.

count

C.

session-init

D.

session-close

Go to page: