Spring Sale Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: buysanta

Exact2Pass Menu

Security, Specialist (JNCIS-SEC)

Last Update 58 minutes ago Total Questions : 66

The Security, Specialist (JNCIS-SEC) content is now fully updated, with all current exam questions added 58 minutes ago. Deciding to include JN0-336 practice exam questions in your study plan goes far beyond basic test preparation.

You'll find that our JN0-336 exam questions frequently feature detailed scenarios and practical problem-solving exercises that directly mirror industry challenges. Engaging with these JN0-336 sample sets allows you to effectively manage your time and pace yourself, giving you the ability to finish any Security, Specialist (JNCIS-SEC) practice test comfortably within the allotted time.

Question # 1

Which three different objects would be created, modified, cloned, and deleted in the Shared Objects workspace of Junos Space Security Director? (Choose three.)

A.

geo IP

B.

IP address

C.

audit logs

D.

policy enforcement groups

E.

policy rules

Question # 2

You need to deploy an SRX Series device in your virtual environment.

In this scenario, what are two benefits of using a CSRX? (Choose two.)

A.

The cSRX supports Layer 2 and Layer 3 deployments.

B.

The cSRX default configuration contains three default zones: trust, untrust, and management.

C.

The cSRX supports firewall, NAT, IPS, and UTM services.

D.

The cSRX has low memory requirements.

Question # 3

You are asked to onboard an SRX Series device to Junos Space Security Director, but it is not working.

In this scenario, what are three areas that should be reviewed? (Choose three.)

A.

chassis serial number

B.

SSH port number

C.

active security policies

D.

authentication credentials

E.

IP address

Question # 4

You are asked to use Junos Space Security Director to download the latest application signatures in the AppID database.

In this scenario, which two statements are correct? (Choose two.)

A.

The AppID database is stored in Junos Space Security Director.

B.

The AppID database is stored on the managed SRX Series device.

C.

The AppID database is maintained by a third-party host.

D.

The AppID database is stored on a local storage server in the management network.

Question # 5

Which protocol does the SRX Series Firewall use to communicate with a Windows domain controller?

A.

SSH

B.

LDAP

C.

DNS

D.

NETCONF

Question # 6

Which two statements are correct about cluster components? (Choose two.)

A.

Cluster ID values range from 1 through 255.

B.

Node ID values are either 0 or 1.

C.

Cluster ID values are either 0 or 1.

D.

Node ID values range from 1 through 255.

Question # 7

Which two statements are correct about client-protection Secure Socket Layer (SSL) proxy configurations? (Choose two.)

A.

Server certificate is required.

B.

Root certificate authority (CA) configuration is required.

C.

Root certificate authority (CA) configuration is not required.

D.

Server certificate is not required.

Question # 8

Which two statements are correct about Juniper Secure Connect? (Choose two.)

A.

Juniper Secure Connect uses a policy-based VPN.

B.

Juniper Secure Connect can use a self-signed certificate.

C.

Juniper Secure Connect uses a route-based VPN.

D.

Juniper Secure Connect cannot use a self-signed certificate.

Question # 9

Which statement is correct about Active Directory as an identity source for identity-aware security policies?

A.

It supports a maximum of two domains.

B.

It supports logical systems.

C.

It supports 20 Active Directory servers per domain.

D.

It tracks non-Windows Active Directory users.

Question # 10

You want to include a custom attack object named Custom-FTP-Attack and set the action to drop the packet.

Referring to the exhibit, which modifications would you make?

A.

Add custom-attack Custom-FTP-Attack to the attacks section and change the action to close-client.

B.

Add custom-attack Custom-FTP-Attack to the attacks section and change the action to drop-packet.

C.

Add custom-attack Custom-FTP-Attack to the action section and change the action to drop-packet.

D.

Add custom-attack Custom-FTP-Attack to the notification section and change the action to drop-packet.

Go to page: