Pass4itsure > Juniper > Juniper Certifications > JN0-634 > JN0-634 Online Practice Questions and Answers

JN0-634 Online Practice Questions and Answers

Questions 4

Which Junos security feature is used for signature-based attack prevention?

A. RADIUS

B. AppQoS

C. IPS

D. PIM

Buy Now
Questions 5

You have configured a log collector VM and Security Director. System logging is enabled on a branch SRX Series device, but security logs do not appear in the monitor charts.

How would you solve this problem?

A. Configure a security policy to forward logs to the collector.

B. Configure application identification on the SRX Series device.

C. Configure security logging on the SRX Series device.

D. Configure J-Flow on the SRX Series device.

Buy Now
Questions 6

You are creating an IPS policy with multiple rules. You want traffic that matches rule 5 to silently be dropped, along with any future packets that match the appropriate attributes of the incoming traffic.

In this scenario, which ip-action parameter should you use?

A. ip-block

B. ip-close

C. log-create

D. timeout

Buy Now
Questions 7

What is the required when deploying a log collector in Junos Space?

A. root user access to the log collector

B. a shared log file directory on the log collector

C. the IP address of interface eth1 on the log collector

D. a distributed deployment of the log collector nodes

Buy Now
Questions 8

SRX Series devices with AppSecure support which three custom signatures? (Choose three.)

A. MAC address-based mapping

B. latency detection mapping

C. IP protocol-based mapping

D. ICMP-based mapping

E. Layer 7-based signatures

Buy Now
Questions 9

Which statement about transparent mode on an SRX340 is true?

A. You must reboot the device after configuring transparent mode.

B. Security policies applied to transparent mode zones require Layer 2 address matching.

C. Screens are not supported in transparent mode security zones.

D. All interfaces on the device must be configured with the ethernet-switching protocol family.

Buy Now
Questions 10

Which two statements about enabling MACsec using static CAK security mode keys are true? (Choose two.)

A. CAK secures the data plane traffic.

B. SAK secures the data plane traffic.

C. SAK secures the control plane traffic.

D. CAK secures the control plane traffic.

Buy Now
Questions 11

Click the Exhibit button.

Security Director is reporting the events shown in the exhibit.

If the fallback parameter is set to pass traffic, what would cause the events?

A. The files are too large for the antivirus engine to process.

B. The files are not scanned because they were permitted by a security policy.

C. The files are not scanned because they are the wrong file format.

D. The antivirus engine is unable to re-encrypt the files.

Buy Now
Questions 12

You are using the integrated user firewall feature on an SRX Series device.

Which three parameters are stored in the Active Directory authentication table? (Choose three.)

A. IP address

B. MAC address

C. group mapping

D. username

E. password

Buy Now
Questions 13

Click the Exhibit button.

You have configured integrated user firewall on the SRX Series devices in your network. However, you noticed that no users can access the servers that are behind the SRX Series devices.

Referring to the exhibit, what is the problem?

A. The Kerberos service is not configured correctly on the Active Directory server.

B. There are no authentication entries in the SRX Series device for the users.

C. The security policy on the SRX Series device is configured incorrectly.

D. The SAML service is not configured correctly on the Active Directory server.

Buy Now
Exam Code: JN0-634
Exam Name: Security, Professional (JNCIP-SEC)
Last Update: Jun 08, 2026
Questions: 65
10%OFF Coupon Code: SAVE10

PDF (Q&A)

$49.99

VCE

$55.99

PDF + VCE

$65.99