Spring Sale 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: save70

Changed JN0-336 Exam Questions

Page: 2 / 5
Total 66 questions

Security, Specialist (JNCIS-SEC) Questions and Answers

Question 5

You want to use user identity information to secure your network.

Which two actions must you perform on your SRX Series Firewall to accomplish this task? (Choose two.)

Options:

A.

Create security policies that include user identity configuration

B.

Add user accounts to the Active Directory Domain Users group

C.

Configure an identity provider on your SRX Series Firewall.

D.

Add the user identity feature license to your SRX Series Firewall.

Question 6

You are asked to set up SSL proxy in SRX Series devices. An SSL proxy profile is already defined for you.

Which two steps are required to complete the setup? (Choose two.)

Options:

A.

Enable host-inbound-traffic HTTPS in the security zone in which SSL proxy is referenced.

B.

Reference the SSL proxy profile in a security zone.

C.

Reference the SSL proxy profile in a security policy.

D.

Enable any Layer 7 services in the security policy in which SSL proxy is referenced.

Question 7

Which two statements are correct about fabric interfaces on an SRX Series Firewall? (Choose two.)

Options:

A.

In an active/active configuration, inter-chassis traffic uses the fab link.

B.

In an active/passive configuration, inter-chassis traffic uses the fab link.

C.

The node ID is reflected in the fabric interface name.

D.

The cluster ID is reflected in the fabric interface name.

Question 8

What are two properties negotiated during IKE Phase 2? (Choose two.)

Options:

A.

routing protocol

B.

tunneling protocol

C.

aggressive mode

D.

Perfect Forward Secrecy

Page: 2 / 5
Total 66 questions