[Free] 2018(Jan) EnsurePass Examcollection Juniper JN0-633 Dumps with VCE and PDF 61-70

Ensurepass.com : Ensure you pass the IT Exams
2018 Jan Juniper Official New Released JN0-633
100% Free Download! 100% Pass Guaranteed!
http://www.EnsurePass.com/JN0-633.html

Juniper Networks Certified Internet Specialist, SEC (JNCIS-SEC)

Question No: 61 – (Topic 1)

Regarding content filtering, what are two pattern lists that can be configured inthe Junos OS? (Choose two.)

  1. protocol list

  2. MIME

  3. block list

  4. extension

Answer: B,D

Question No: 62 – (Topic 1)

If both nodes in a chassis cluster initialize at different times, which configuration example will allow you to ensure that the node with the higher priority will become primary for your RGs other than RG0?

  1. [edit chassis cluster] user@host# show redundancy-group 1 { node 0 priority 200; node 1 priority 150; preempt;

    }

  2. [edit chassis cluster] user@host# show redundancy-group 1 { node 0 priority 200; node 1 priority 150; monitoring;

    }

  3. [edit chassis cluster] user@host# show redundancy-group 1 { node 0 priority 200; node 1 priority 150; control-link-recovery;

    }

  4. [edit chassis cluster] user@host# show redundancy-group 1 { node 0 priority 200; node 1 priority 150; strict-priority;

}

Answer: A

Question No: 63 – (Topic 1)

You are required to configure a SCREEN option that enables IP source route option detection. Which two configurations meet thisrequirement? (Choose two.)

  1. [edit security screen] user@host# show

    ids-option protectFromFlood { ip {

    loose-source-route-option; strict-source-route-option;

    }

    }

  2. [edit security screen] user@host# show

    ids-option protectFromFlood { ip {

    source-route-option;

    }

    }

  3. [edit security screen] user@host# show

    ids-option protectFromFlood { ip {

    record-route-option;

    security-option;

    }

    }

  4. [edit security screen] user@host# show

ids-option protectFromFlood { ip {

strict-source-route-option; record-route-option;

}

}

Answer: A,B

Question No: 64 – (Topic 1)

Which command would you use to enable chassis cluster on an SRX device, setting the clusterID to 1 and node to 0?

  1. user@host# set chassis cluster cluster-id 1 node 0 reboot

  2. user@hostgt; set chassis cluster id 1 node 0 reboot

  3. user@hostgt; set chassis cluster cluster-id 1 node 0 reboot

  4. user@host# set chassis cluster id 1 node 0 reboot

Answer: C

Question No: 65 – (Topic 1)

Which UTM feature requires a license to function?

  1. integrated Web filtering

  2. local Web filtering

  3. redirect Web filtering

  4. content filtering

Answer: A

Question No: 66 – (Topic 1)

After applying the policy-rematch statement under the security policies stanza, what would happen to an existing flow if the policy source address or the destination address is changed and committed?

  1. The Junos OS drops any flow that does not match the source address or destination address.

  2. All traffic is dropped.

  3. All existing sessions continue.

  4. The Junos OS does a policy re-evaluation.

Answer: D

Question No: 67 – (Topic 1)

What is the functionality of redundant interfaces (reth) in a chassis cluster?

  1. reth interfaces are used only for VRRP.

  2. reth interfaces are the same as physical interfaces.

  3. reth interfaces are pseudo-interfaces that are considered the parent interface for two physical interfaces.

  4. Each cluster member has a reth interface that can be used to share session state information with the other cluster members.

Answer: C

Question No: 68 – (Topic 1)

Which IDP policy action closes the connection and sends an RST packet to both the client and the server?

  1. close-connection

  2. terminate-connection

  3. close-client-and-server

  4. terminate-session

Answer: C

Question No: 69 – (Topic 1)

A user wants to establish an FTP session to a server behind an SRX device but must authenticate to a Web page on the SRX device for additional authentication. Which type of user authentication is configured?

  1. pass-through

  2. WebAuth

  3. WebAuth with Web redirect

  4. pass-through with Web redirect

Answer: B Explanation:

Web authentication is valid for all types of traffic. With Web authentication configured, users must first directly access the Junos security platform using HTTP. The user enters the address or hostname of the device into a Web browser and then receives a prompt for a username and password. If authentication is successful, the user can then access the restricted resource directly. Subsequent traffic from the same source IP address is automatically allowed access to the restricted resource, as long as security policy allows for it.

Question No: 70 – (Topic 1)

Which zone is system-defined?

  1. security

  2. functional

  3. junos-global

  4. management

Answer: C

100% Ensurepass Free Download!
Download Free Demo:JN0-633 Demo PDF
100% Ensurepass Free Guaranteed!
JN0-633 Dumps

EnsurePass ExamCollection Testking
Lowest Price Guarantee Yes No No
Up-to-Dated Yes No No
Real Questions Yes No No
Explanation Yes No No
PDF VCE Yes No No
Free VCE Simulator Yes No No
Instant Download Yes No No

This entry was posted in JN0-633 Latest Exam (Jan 2018) and tagged , , , , , , . Bookmark the permalink.

Leave a Reply

This site uses Akismet to reduce spam. Learn how your comment data is processed.