Weekend Special 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: Board70

JN0-231 Exam Dumps - Juniper Associate JNCIA-SEC Questions and Answers

Question # 14

When configuring antispam, where do you apply any local lists that are configured?

Options:

A.

custom objects

B.

advanced security policy

C.

antispam feature-profile

D.

antispam UTM policy

Buy Now
Question # 15

Which order is correct for Junos security devices that examine policies for transit traffic?

Options:

A.

zone policies

global policies

default policies

B.

default policies

zone policies

global policies

C.

default policies

global policies

zone policies

D.

global policies

zone policies

default policies

Buy Now
Question # 16

Which two statements about the Junos OS CLI are correct? (Choose two.)

Options:

A.

The default configuration requires you to log in as the admin user.

B.

A factory-default login assigns the hostname Amnesiac to the device.

C.

Most Juniper devices identify the root login prompt using the % character.

D.

Most Juniper devices identify the root login prompt using the > character.

Buy Now
Question # 17

Which two statements are correct about IKE security associations? (Choose two.)

Options:

A.

IKE security associations are established during IKE Phase 1 negotiations.

B.

IKE security associations are unidirectional.

C.

IKE security associations are established during IKE Phase 2 negotiations.

D.

IKE security associations are bidirectional.

Buy Now
Question # 18

Unified threat management (UTM) inspects traffic from which three protocols? (Choose three.)

Options:

A.

FTP

B.

SMTP

C.

SNMP

D.

HTTP

E.

SSH

Buy Now
Question # 19

You are asked to configure your SRX Series device to block all traffic from certain countries. The solution must be automatically updated as IP prefixes become allocated to those certain countries.

Which Juniper ATP solution will accomplish this task?

Options:

A.

Geo IP

B.

unified security policies

C.

IDP

D.

C&C feed

Buy Now
Question # 20

When creating a site-to-site VPN using the J-Web shown in the exhibit, which statement is correct?

Options:

A.

The remote gateway is configured automatically based on the local gateway settings.

B.

RIP, OSPF, and BGP are supported under Routing mode.

C.

The authentication method is pre-shared key or certificate based.

D.

Privately routable IP addresses are required.

Buy Now
Question # 21

Which statement about global NAT address persistence is correct?

Options:

A.

The same IP address from a source NAT pool will be assigned for all sessions from a given host.

B.

The same IP address from a source NAT pool is not guaranteed to be assigned for all sessions from a given host.

C.

The same IP address from a destination NAT pool will be assigned for all sessions for a given host.

D.

The same IP address from a destination NAT pool is not guaranteed to be assigned for all sessions for a given host.

Buy Now
Question # 22

Corporate security requests that you implement a policy to block all POP3 traffic from traversing the Internet firewall.

In this scenario, which security feature would you use to satisfy this request?

Options:

A.

antivirus

B.

Web filtering

C.

content filtering

D.

antispam

Buy Now
Question # 23

What must be enabled on an SRX Series device for the reporting engine to create reports?

Options:

A.

System logging

B.

SNMP

C.

Packet capture

D.

Security logging

Buy Now
Exam Code: JN0-231
Exam Name: Security-Associate (JNCIA-SEC)
Last Update: Feb 22, 2025
Questions: 105
JN0-231 pdf

JN0-231 PDF

$25.5  $84.99
JN0-231 Engine

JN0-231 Testing Engine

$28.5  $94.99
JN0-231 PDF + Engine

JN0-231 PDF + Testing Engine

$40.5  $134.99