Pass4itsure > Juniper > Juniper Certifications > JN0-334 > JN0-334 Online Practice Questions and Answers

JN0-334 Online Practice Questions and Answers

Questions 4

Which two statements describe application-layer gateways (ALGs)? (Choose two.)

A. ALGs are designed for specific protocols that require multiple sessions.

B. ALGs are used with protocols that use multiple ports.

C. ALGs can only be configured using Security Director.

D. ALGs are designed for specific protocols that use a single TCP session.

Buy Now
Questions 5

After a software upgrade on an SRX5800 chassis cluster, you notice that both node0 and node1 are in the primary state, when node1 should be secondary. All control and fabric links are operating normally.

In this scenario, which step must you perform to recover the cluster?

A. Execute the request system rebootcommand on node1.

B. Execute the request system software rollbackcommand on node0.

C. Execute the request system software addcommand on node1.

D. Execute the request system rebootcommand on node0.

Buy Now
Questions 6

What is the default timeout period for a TCP session in the session table of a Junos security device?

A. 1 minute

B. 60 minutes

C. 15 minutes

D. 30 minutes

Buy Now
Questions 7

You have deployed JSA and you need to view events and network activity that match rule criteria. You must view this data using a single interface.

Which JSA feature should you use in this scenario?

A. Log Collector

B. Assets

C. Network Activity

D. Offense Manager

Buy Now
Questions 8

Which two settings must be enabled on the hypervisor in a vSRX deployment to ensure proper chassis cluster operation? (Choose two.)

A. Control links must operate in promiscuous mode.

B. Control links must have an MTU of 9000.

C. Fabric links must operate in promiscuous mode.

D. Fabric links must have an MTU of 9000.

Buy Now
Questions 9

Click the Exhibit button.

Referring to the exhibit, which statement is true?

A. Hosts are always able to communicate through the SRX Series device no matter the threat score assigned to them on the infected host feed.

B. Hosts are unable to communicate through the SRX Series device after being placed on the infected host feed with a high enough threat score.

C. Malicious HTTP file downloads are never blocked.

D. Malicious HTTP file downloads are always blocked.

Buy Now
Questions 10

You want to use Sky ATP to protect your network; however, company policy does not allow you to send any files to the cloud.

Which Sky ATP feature should you use in this situation?

A. Only use on-premises local Sky ATP server anti-malware file scanning.

B. Only use cloud-based Sky ATP file hash lookups.

C. Only use on-box SRX anti-malware file scanning.

D. Only use cloud-based Sky ATP file blacklists.

Buy Now
Questions 11

Click the Exhibit button.

Referring to the exhibit, which statement is true?

A. IDP blocks root users.

B. IDP closes the connection on matched sessions.

C. IDP ignores the connection on matched sessions.

D. IDP blocks all users.

Buy Now
Questions 12

Click the Exhibit button.

Which two statements are true about the session shown in the exhibit? (Choose two.)

A. Two security policies are required for bidirectional traffic flow.

B. The ALG was enabled by manual configuration.

C. The ALG was enabled by default.

D. One security policy is required for bidirectional traffic flow.

Buy Now
Questions 13

Click the Exhibit button.

Referring to the exhibit, which two values in the JIMS SRX client configuration must match the values configured on the SRX client? (Choose two.)

A. IPv6 Reporting

B. Client ID

C. Client Secret

D. Token Lifetime

Buy Now
Exam Code: JN0-334
Exam Name: Security, Specialist (JNCIS-SEC)
Last Update: Jun 05, 2026
Questions: 90
10%OFF Coupon Code: SAVE10

PDF (Q&A)

$49.99

VCE

$55.99

PDF + VCE

$65.99