Juniper JN0-636 Security,Professional (JNCIP-SEC) Online Training
Juniper JN0-636 Online Training
The questions for JN0-636 were last updated at Nov 22,2024.
- Exam Code: JN0-636
- Exam Name: Security,Professional (JNCIP-SEC)
- Certification Provider: Juniper
- Latest update: Nov 22,2024
Exhibit
Referring to the exhibit, which two statements are true? (Choose two.)
- A . The 3uspicious_Endpoint3 feed is only usable by the SRX-1 device.
- B . You must manually create the suspicious_Endpoint3 feed in the Juniper ATP Cloud interface.
- C . The 3uspiciou3_Endpoint3 feed is usable by any SRX Series device that is a part of the same realm as SRX-1
- D . Juniper ATP Cloud automatically creates the 3uopi’cioua_Endpoints feed after you commit the security policy.
Exhibit
Referring to the exhibit, a spoke member of an ADVPN is not functioning correctly.
Which two commands will solve this problem? (Choose two.)
A)
B)
C)
D)
- A . Option A
- B . Option B
- C . Option C
- D . Option D
In Juniper ATP Cloud, what are two different actions available in a threat prevention policy to deal with an infected host? (Choose two.)
- A . Send a custom message
- B . Close the connection.
- C . Drop the connection silently.
- D . Quarantine the host.
You are required to deploy a security policy on an SRX Series device that blocks all known Tor network IP addresses.
Which two steps will fulfill this requirement? (Choose two.)
- A . Enroll the devices with Juniper ATP Appliance.
- B . Enroll the devices with Juniper ATP Cloud.
- C . Enable a third-party Tor feed.
- D . Create a custom feed containing all current known MAC addresses.
Exhibit
Which two statements are correct about the output shown in the exhibit? (Choose two.)
- A . The packet is processed as host inbound traffic.
- B . The packet matches the default security policy.
- C . The packet matches a configured security policy.
- D . The packet is processed in the first path packet flow.
Exhibit
You are not able to ping the default gateway of 192.168 100 1 (or your network that is located on your SRX Series firewall.
Referring to the exhibit, which two commands would correct the configuration of your SRX Series device? (Choose two.)
A)
B)
C)
D)
- A . Option A
- B . Option B
- C . Option C
- D . Option D
Exhibit
You have configured the SRX Series device to switch packets for multiple directly connected hosts that are within the same broadcast domain However, the traffic between two hosts in the same broadcast domain are not matching any security policies
Referring to the exhibit, what should you do to solve this problem?
- A . You must change the global mode to security switching mode.
- B . You must change the global mode to security bridging mode
- C . You must change the global mode to transparent bridge mode.
- D . You must change the global mode to switching mode.
You are asked to download and install the IPS signature database to a device operating in chassis cluster mode.
Which statement is correct in this scenario?
- A . You must download and install the IPS signature package on the primary node.
- B . The first synchronization of the backup node and the primary node must be performed manually.
- C . The first time you synchronize the IPS signature package from the primary node to the backup node, the primary node must be rebooted.
- D . The IPS signature package must be downloaded and installed on the primary and backup nodes.
Exhibit
Your company recently acquired a competitor. You want to use using the same IPv4 address space as your company.
Referring to the exhibit, which two actions solve this problem? (Choose two)
- A . Configure static NAT on the SRX Series devices.
- B . Connect the competitor network using IPsec policy-based VPNs.
- C . Identify two neutral IPv4 address spaces for address translation.
- D . Configure IPsec Transport mode.
What are two valid modes for the Juniper ATP Appliance? (Choose two.)
- A . flow collector
- B . event collector
- C . all-in-one
- D . core