You are on page 1of 3

Braindump2go Guarantee All Exams 100% Pass

One Time!
 Vendor: Juniper

 Exam Code: JN0-230

 Exam Name: Security, Associate (JNCIA-SEC)

 New Updated Questions from Braindump2go (Updated in April/2020)

Visit Braindump2go and Download Full Version JN0-230 Exam Dumps

QUESTION 23
Which statement is correct regarding the interface configuration shown in the exhibit?

A. The interface MTU has been increased.


B. The IP address has an invalid subnet mask.
C. The IP address is assigned to unit 0.
D. The interface is assigned to the trust zone by default.

Answer: A

QUESTION 24
Which flow module components handles processing for UTM?

A. Policy
B. Zones
C. Services
D. Screen options

Answer: A

QUESTION 25
Which two match conditions would be used in both static NAT and destination NAT rule sets? (Choose two.)

JN0-230 Exam Dumps JN0-230 Exam Questions JN0-230 PDF Dumps JN0-230 VCE Dumps

https://www.braindump2go.com/jn0-230.html
Braindump2go Guarantee All Exams 100% Pass
One Time!
A. Destination zone
B. Destination interface
C. Source interface
D. Source zone

Answer: AB

QUESTION 26
Which statement about IPsec is correct?

A. IPsec can be used to transport native Layer 2 packets.


B. IPsec can provide encapsulation but not encryption
C. IPsec is a standards-based protocol.
D. IPsec is used to provide data replication

Answer: D

QUESTION 27
Which two statements are true about the null zone? (Choose two.)

A. All interface belong to the bull zone by default.


B. All traffic to the null zone is dropped.
C. All traffic to the null zone is allowed
D. The null zone is a user-defined zone

Answer: CD

QUESTION 28
The vSRX is available for which two of the following hypervisors? (Choose two.)

A. Hyper-V
B. Xen
C. OpenVZ
D. KVM

Answer: AD

QUESTION 29
You are configuring an SRX Series device to inter-operate with a third-party IPsec VPN endpoint that uses policies to
create the VPN. In this scenario, what must be configured for the VPN to work?

A. perfect forward secrecy


B. VPN monitoring
C. re-keying
D. proxy IDs

Answer: D

QUESTION 30
Which statements is correct about Junos security zones?

A. User-defined security must contain at least one interface.


B. Security policies are referenced within a user-defined security zone.
C. Logical interface are added to user defined security zones
D. User-defined security must contains the key word `'zone''

JN0-230 Exam Dumps JN0-230 Exam Questions JN0-230 PDF Dumps JN0-230 VCE Dumps

https://www.braindump2go.com/jn0-230.html
Braindump2go Guarantee All Exams 100% Pass
One Time!

Answer: B

QUESTION 31
What should you configure if you want to translate private source IP address to a single public IP address?

A. Source NAT
B. Destination NAT
C. Content filtering
D. Security Director

Answer: D

QUESTION 32
You are configuring an IPsec VPN tunnel between two location on your network. Each packet must be encrypted and
authenticated.
Which protocol would satisfy these requirements?

A. MD5
B. ESP
C. AH
D. SHA

Answer: C

QUESTION 33
You have created a zones-based security policy that permits traffic to a specific webserver for the marketing team.
Other groups in the company are not permitted to access the webserver. When marketing users attempt to access the
server they are unable to do so. What are two reasons for this access failure? (Choose two.)

A. You failed to change the source zone to include any source zone.
B. You failed to position the policy after the policy that denies access to the webserver.
C. You failed to commit the policy change.
D. You failed to position the policy before the policy that denies access the webserver

Answer: CD

JN0-230 Exam Dumps JN0-230 Exam Questions JN0-230 PDF Dumps JN0-230 VCE Dumps

https://www.braindump2go.com/jn0-230.html

You might also like