[Free] Download New Latest (November) Juniper JN0-521 Actual Tests Topic 0 part 02

Ensurepass

QUESTION 11  (Topic 0)

 

Which three must a policy contain? (Choose three.)

 

A.

action

B.

service

C.

address

 

 

 

 

D.

application

E.

policy name

 

Answer: ABC

 

 

QUESTION 12  (Topic 0)

 

A ScreenOS firewall is running in transparent mode. The firewall receives a packet which has no entry in its forwarding table. What will the firewall do?

 

A.

Flood out all ports.

B.

Check its route table for interzone destination.

C.

Perform a policy lookup to determine the interfaces to which the source address is permitted, and flood the packet out of those interfaces.

D.

Perform a policy lookup to determine the zones to which the source address is permitted, and flood the packet out the interfaces bound to those zones.

 

Answer: D

 

 

QUESTION 13  (Topic 0)

 

Which two steps are required for MIP configuration? (Choose two.)

 

A.

Define the MIP.

B.

Define the MIP ports.

C.

Configure the MIP policy.

D.

Configure the MIP interface.

 

Answer: AC

 

 

QUESTION 14  (Topic 0)

 

A ScreenOS firewall has the correct interfaces addressed and active. A policy is written allowing interzone FTP traffic from a directly connected client. But the traffic does not cross the firewall from the client to the server. What is the most likely problem with the firewall?

 

A.

The ScreenOS firewall has no physical connection to the FTP server.

B.

The ALG option on the ScreenOS firewall has not been enabled for FTP traffic.

C.

The ScreenOS firewall does not have a route defined to the FTP servers’ subnet.

 

 

 

 

D.

The ScreenOS firewall does not have a route defined to the FTP clients subnet.

 

Answer: C

 

 

QUESTION 15  (Topic 0)

 

You are looking at the event log of the responding device and it says, “Rejected an initial Phase 1 packet from an unrecognized peer gateway” What are three likely reasons for the failure? (Choose three.)

 

A.

The peer ID is misconfigured.

B.

The default gateway is missing.

C
.

The preshare keys are mismatched.

D.

The gateway address is misconfigured.

E.

The outgoing interface is misconfigured.

 

Answer: ADE

 

 

QUESTION 16  (Topic 0)

 

You enter the following command:

 

set int e0/8 mip 1.1.8.32 host 10.1.10.32 netmask 255.255.255.248

 

How many MIP address translations have you just configured?

 

A.

1

B.

8

C.

32

D.

254

 

Answer: B

 

 

QUESTION 17  (Topic 0)

 

An operational firewall needs a configuration loaded and executed while it is passing user data. Which CLI command will perform this process without interrupting traffic?

 

 

 

 

 

A.

save config from tftp 1.1.7.250 15June06.cfg to flash

B.

save config from tftp 1.1.7.250 15June06.cfg to ram

C.

save config from tftp 1.1.7.250 15June06.cfg merge

D.

save config from tftp 1.1.7.250 15June06.cfg to flash reset

 

Answer: C

 

 

QUESTION 18  (Topic 0)

 

Telnet management has been enabled on an interface in the untrust zone. What else should be completed to limit telnet access to the ScreenOS device from trusted management PCs?

 

A.

Define a permitted IP address.

B.

Define a policy from trust to untrust.

C.

Define a trusted IP in the address table.

D.

Define a manage IP address on this interface.

 

Answer: A

 

 

QUESTION 19  (Topic 0)

 

In transparent mode, you can create policies between which zones?

 

A.

untrust and V1-Trust

B.

private and L2-public

C.

V1-Trust and private (L2)

D.

V1-Untrust and L2-private

 

Answer: D

 

 

QUESTION 20  (Topic 0)

 

You are trying to remove an address book entry by going to the Objects > Addresses > List display of the WebUI, but you cannot find the remove option. What would cause this problem?

 

A.

An address book entry can only be deleted from the command line interface. You will

 

 

 

 

need to use the CLI to delete it.

B.

The address book entry is misconfigured. You need to correct the address book entry before it will allow you to delete it.

C.

You cannot remove an address book entry from this screen. You need to use the delete option found under the management options screen.

D.

The address book entry is being used by a policy. You must delete the policy or remove the address book entry from the policy before it can be deleted.

 

Answer: D

 

Free VCE & PDF File for Juniper JN0-521 Actual Tests

Instant Access to Free VCE Files: CompTIA | VMware | SAP …
Instant Access to Free PDF Files: CompTIA | VMware | SAP …

This entry was posted in JN0-521 Actual Tests (November) and tagged , , , , , , . Bookmark the permalink.