Weekend Sale 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: sale65best

Free Juniper JN0-232 Practice Exam with Questions & Answers | Set: 2

Questions 11

Which security policy action will cause traffic to drop and a message to be sent to the source?

Options:
A.

permit

B.

next-policy

C.

deny

D.

reject

Juniper JN0-232 Premium Access
Questions 12

Click the Exhibit button.

JN0-232 Question 12

Referring to the exhibit, which two statements are correct? (Choose two.)

Options:
A.

The URL matches a predefined Web filtering category.

B.

The NextGen Web Filtering type is being used.

C.

The SRX firewall does not have an SSL proxy configuration.

D.

This is a custom Web filtering block message.

Questions 13

Which two statements are correct about security zones? (Choose two.)

Options:
A.

An interface can exist in multiple security zones.

B.

Interfaces in the same security zone must share the same routing instance.

C.

Interfaces in the same security zone must use separate routing instances.

D.

A security zone can contain multiple interfaces.

Questions 14

You want to enable NextGen Web Filtering in SRX Series devices.

In this scenario, which two actions will accomplish this task? (Choose two.)

Options:
A.

Generate a CA-signed certificate.

B.

Generate a self-signed certificate.

C.

Configure an SSL initiation profile.

D.

Configure an SSL proxy profile.

Questions 15

Which two statements are correct about unified security policies on SRX Series Firewalls? (Choose two.)

Options:
A.

Unified security policies match applications before processing policy statements.

B.

Unified security policies can be zone-based or global.

C.

Unified security policies use the application identification (AppID) engine.

D.

Unified security policies with multiple matches use the most restrictive match.

Questions 16

When traffic enters an interface, which two results does a route lookup determine? (Choose two.)

Options:
A.

ingress interface

B.

egress interface

C.

DNS name

D.

egress security zone

Questions 17

You are modifying the NAT rule order and you notice that a new NAT rule has been added to the bottom of the list.

In this situation, which command would you use to reorder NAT rules?

Options:
A.

top

B.

run

C.

up

D.

insert

Questions 18

You have a situation where legitimate traffic is incorrectly identified as malicious by your screen options.

In this scenario, what should you do?

Options:
A.

Enable all screen options.

B.

Discard the traffic immediately.

C.

Increase the sensitivity of the screen options.

D.

Use the alarm-without-drop configuration parameter.

Questions 19

Click the Exhibit button.

JN0-232 Question 19

JN0-232 Question 19

Referring to the exhibit, which statement is correct?

Options:
A.

policy3 will be shadowed because it matches the same application as policy1.

B.

None of the policies will be shadowed.

C.

policy1 will be shadowed because it matches the same application as policy3.

D.

policy2 will be shadowed because it matches the same application as policy1.