Pass4itsure > Juniper > Associate JNCIA-SEC > JN0-230 > JN0-230 Online Practice Questions and Answers

JN0-230 Online Practice Questions and Answers

Questions 4

On an SRX device, you want to regulate traffic base on network segments. In this scenario, what do you configure to accomplish this task?

A. Screens

B. Zones

C. ALGs

D. NAT

Buy Now
Questions 5

Users on the network are restricted from accessing Facebook, however, a recent examination of the logs

show that users are accessing Facebook.

Referring to the exhibit,

Why is this problem happening?

A. Global rules are honored before zone-based rules.

B. The internet-Access rule has a higher precedence value

C. The internet-Access rule is listed first

D. Zone-based rules are honored before global rules

Buy Now
Questions 6

Which statement is correct about IKE?

A. IKE phase 1 is used to establish the data path

B. IKE phase 1 only support aggressive mode.

C. IKE phase 1 negotiates a secure channel between gateways.

D. IKE phase 1 establishes the tunnel between devices

Buy Now
Questions 7

What are the valid actions for a source NAT rule in J-Web? (choose three.)

A. On

B. Off

C. Pool

D. Source

E. interface

Buy Now
Questions 8

The Sky ATP premium or basic-Threat Feed license is needed fort which two features? (Choose two.)

A. Outbound protection

B. CandC feeds

C. Executable inspection

D. Custom feeds

Buy Now
Questions 9

What is the purpose of the Shadow Policies workspace in J-Web?

A. The Shadow Policies workspace shows unused security policies due to policy overlap.

B. The Shadow Policies workspace shows unused IPS policies due to policy overlap.

C. The Shadow Policies workspace shows used security policies due to policy overlap

D. The Shadow Policies workspace shows used IPS policies due to policy overlap

Buy Now
Questions 10

Which statements about NAT are correct? (Choose two.)

A. When multiple NAT rules have overlapping match conditions, the rule listed first is chosen.

B. Source NAT translates the source port and destination IP address.

C. Source NAT translates the source IP address of packet.

D. When multiple NAT rules have overlapping match conditions, the most specific rule is chosen.

Buy Now
Questions 11

You have configured antispam to allow e-mail from example.com, however the logs you see that [email protected] is blocked Referring to the exhibit.

What are two ways to solve this problem?

A. Verify connectivity with the SBL server.

B. Add [email protected] to the profile antispam address whitelist.

C. Delete [email protected] from the profile antispam address blacklist

D. Delete [email protected] from the profile antispam address whitelist

Buy Now
Questions 12

Which two actions are performed on an incoming packet matching an existing session? (Choose two.)

A. Zone processing

B. Security policy evolution

C. Service ALG processing

D. Screens processing

Buy Now
Questions 13

Which source NAT rule set would be used when a packet matches the conditions in multiple rule sets?.

A. The most specific rule set will be used

B. The least specific rule set will be used

C. The first rule set matched will be used

D. The last rule set matched will be used

Buy Now
Exam Code: JN0-230
Exam Name: Security-Associate (JNCIA-SEC)
Last Update: Apr 21, 2024
Questions: 82
10%OFF Coupon Code: SAVE10

PDF (Q&A)

$45.99

VCE

$49.99

PDF + VCE

$59.99