[Free] Download New Latest (November) Juniper JN0-531 Actual Tests Topic 0 part 03

Ensurepass

QUESTION 21  (Topic 0)

 

Click the Exhibit button.

 

You are troubleshooting a problem with traffic passing through the ScreenOS device. You run debug flow basic and get the results in the exhibit.

 

Why was the packet dropped?

 

 

 

 

 

clip_image002

 

A.

The packet was dropped because of the implicit deny at the end of the policy set.

B.

The packet was dropped because a global policy was configured to deny the traffic.

C.

There is not enough detail in the output to know exactly what part of the policy dropped the packet.

D.

The packet was dropped because it was explicitly denied by the policy between zones 1002 and 1000.

 

Answer: A

 

 

QUESTION 22  (Topic 0)

 

You have created a VPN to a dynamic peer. Which two configured parameters must match? (Choose two.)

 

A.

static side peer-id

B.

dynamic side local-id

C.

static side IP address

D.

dynamic side IP address

 

Answer: AB

 

 

QUESTION 23  (Topic 0)

 

What will happen if you type the command unset protocol vrouter trust-vr protocol ospf?

 

A.

OSPF stops running, but the OSPF configuration is left intact.

B.

All OSPF configuration parameters are removed from the vrouter only.

C.

All OSPF configuration parameters are removed from all interfaces in the vrouter.

D.

All OSPF configuration parameters are removed from the vrouter and from all interfaces

 

 

 

 

in the vrouter.

 

Answer: D

 

 

QUESTION 24  (Topic 0)

 

You are using NSRP and enable preempt on a device with a priority of 120. The other device has the default priority set. What will be the result of this action?

 

A.

The device will be come master immediately.

B.

The device will only become master if the device with default priority fails.

C.

The device will wait the defined holdtime period and then take over as master.

D.

The device will enter a pending state until the next maintenance window and then assume the master role.

 

Answer: B

 

 

QUESTION 25  (Topic 0)

 

Click the Exhibit button.

 

Review the exhibit. Track-ip has failed on the device, but the device did not fail over to the second unit in the cluster:

 

Why has failover not occurred?

 

clip_image004

 

A.

The physical interfaces have not failed.

B.

The track-ip interval is not sufficient to cause failover.

C.

The track-ip address weight is not sufficient to cause failover.

D.

The track-ip address threshold is not sufficient to cause failover.

 

Answer: C

 

 

 

 

 

QUESTION 26  (Topic 0)

 

What is the default action of a ScreenOS device when a configured screening function threshold limit has been reached?

 

A.

Log the packet but not drop it.

B.

Drop the packet and all further packets matching the attack for up to 1 minute.

C.

Drop the packet and all further packets matching the attack for up to a configurable maximum of 10 seconds.

D.

Drop the packet and all further packets matching the attack for the remainder of the current second plus the next second.

 

Answer: D

 

 

QUESTION 27  (Topic 0)

 

What is the default number of equal-cost routes that are used by a ScreenOS device?

 

A.

1

B.

2

C.

3

D.

4

 

Answer: A

 

 

QUESTION 28  (Topic 0)

 

You have entered the following configuration.

 

set vrouter untrust-vr source 1.1.10.0/24 interface tunnel.1 gateway 1.1.1.1

 

Your source-based route is not working. What is the problem?

 

A.

You cannot use source-based routing with VPNs.

B.

You have not specified a metric for the source-based route.

C.

You cannot configure source-based routes in the untrust-vr.

D.

You have not enabled source-based routing in the untrust-vr.

 

 

 

 

 

Answer: D

 

 

QUESTION 29  (Topic 0)

 

You enter the following commands:

 

snoop filter ip dst-ip 1.1.1.10

 

snoop filter ip src-ip 2.1.1.10

 

What is the net result of these settings?

 

A.

Only packets with both a dst-ip of 1.1.1.10 and a src-ip of 2.1.1.10 will be captured

B.

Packets that have either a dst-ip of 1.1.1.10 or packets with a src-ip of 2.1.1.10 will be captured

C.

The second command will be ignored since a second filter cannot be added until the first one has been deleted

D.

The second command you entered will overwrite the first command you entered so you will only capture traffic with a src-ip of 2.1.1.10

 

Answer: B

 

 

QUESTION 30  (Topic 0)

 

Which statement defines maximum bandwidth?

 

A.

The total amount of bandwidth (configured in Mbps) that can be used by a policy after guaranteed bandwidth has been serviced.

B.

The total amount of bandwidth (configured in Kbps) that can be used by a policy after all guaranteed bandwidth has been serviced.

C.

The additional amount of bandwidth over the guaranteed bandwidth amount (configured in Kbps) that can be used by a policy after guaranteed bandwidth has been serviced.

D.

The additional amount of bandwidth over the guaranteed bandwidth amount (configured in Mbps) that can be used by a policy after guaranteed bandwidth has been serviced.

 

Answer: B

 

Free VCE & PDF File for Juniper JN0-531 Actual Tests

Instant Access to Free VCE Files: CompTIA | VMware | SAP …
Instant Access to Free PDF Files: CompTIA | VMware | SAP …

This entry was posted in JN0-531 Actual Tests (November) and tagged , , , , , , . Bookmark the permalink.