JN0-331 考试题库

SEC,Specialist(JNCIS-SEC)

  • 科目编号 : JN0-331
  • 科目名称 : SEC,Specialist(JNCIS-SEC)
  • 考题数目 : 131 Q&As
  • 更新日期 : 2010-05-11
  • 价格 : ¥ 1,148.00 ¥ 622.00

免费下载JN0-331认证考题Demo

下载 JN0-331 Pdf 认证考试题库
 
 
Exam : Juniper Networks JN0-331
Title : SEC,Specialist(JNCIS-SEC)


1. Click the Exhibit button.
[edit schedulers]
user@host# show
scheduler now {
monday all-day;
tuesday exclude;
wednesday {
start-time 07:00:00 stop-time 18:00:00;
}
thursday {
start-time 07:00:00 stop-time 18:00:00;
}
}
[edit security policies from-zone Private to-zone External]
user@host# show
policy allowTransit {
match {
source-address PrivateHosts;
destination-address ExtServers;
application ExtApps;
}
then {
permit {
tunnel {
ipsec-vpn myTunnel;
}
}
}
scheduler-name now;
Based on the configuration shown in the exhibit, what are the actions of the security policy?
A. The policy will always permit transit packets and use the IPsec VPN myTunnel.
B. The policy will permit transit packets only on Monday, and use the IPsec VPN Mytunnel.
C. The policy will permit transit packets and use the IPsec VPN myTunnel all day Monday and Wednesday 7am to 6pm, and Thursday 7am to 6pm.
D. The policy will always permit transit packets, but will only use the IPsec VPN myTunnel all day Monday and Wednesday 7am to 6pm, and Thursday 7am to 6pm.
Answer: C

2. Regarding zone types, which statement is true?
A. You cannot assign an interface to a functional zone.
B. You can specifiy a functional zone in a security policy.
C. Security zones must have a scheduler applied.
D. You can use a security zone for traffic destined for the device itself.
Answer: D

3. Which two statements are true regarding proxy ARP? (Choose two.)
A. Proxy ARP is enabled by default.
B. Proxy ARP is not enabled by default.
C. JUNOS security devices can forward ARP requests to a remote device when proxy ARP is enabled.
D. JUNOS security devices can reply to ARP requests intended for a remote device when proxy ARP is enabled.
Answer: BD

4. For IKE phase 1 negotiations, when is aggressive mode typically used?
A. when one of the tunnel peers has a dynamic IP address
B. when one of the tunnel peers wants to force main mode to be used
C. when fragmentation of the IKE packet is required between the two peers
D. when one of the tunnel peers wants to specify a different phase 1 proposal
Answer: A

5. Regarding attacks, which statement is correct?
A. Both DoS and propagation attacks exploit and take control of all unprotected network devices.
B. Propagation attacks focus on suspicious packet formation using the DoS SYN-ACK-ACK proxy flood.
C. DoS attacks are directed at the network protection devices, while propagation attacks are directed at the servers.
D. DoS attacks are exploits in nature, while propagation attacks use trust relationships to take control of the devices.
Answer: D

 

选择 QuickPass JN0-331 题库

JN0-331 考试是 Juniper Networks 公司的 JNCIS 认证考试官方代号,QuickPass 的 JN0-331 权威考试题库软件是 Juniper Networks 认证厂商的授权产品,QuickPass 绝对保证第一次参加 JN0-331 考试的考生即可顺利通过,否则承诺全额退款!

JNCIS 认证作为全球IT领域专家 Juniper Networks 热门认证之一,是许多大中IT企业选择人才标准的必备条件。 如果你正在准备 JN0-331 考试,为 Juniper Networks JNCIS认证做最后冲刺,又苦于没有绝对权威的考试真题模拟, QuickPass 希望能助你成功。

Quickpass JN0-331 Exam Features

1、QuickPass考题大师JN0-331试题都是考试原题的完美组合,覆盖率95%以上,答案由多位专业资深讲师原版破解得出,正确率100%,只要您使用本站的考试题库参加JN0-331 考试,我们保证您一次轻松通过考试;
2、售后服务第一!我们相信要想在当今时代取得成功,必须为广大用户提供全套的周到细致的全程优质售后服务,只有客户满意了,我们才能发展。客户至上是我们QuickPass考题大师的一贯宗旨;
3、QuickPass实行“一次不过全额退款”承诺。如果您购买我们JN0-331的考题,只要不是首次通过,凭盖有PROMETRIC或VUE考试中心钢印的考试成绩单,我们将退还您购买JN0-331考题大师的全部费用,绝对保证您的利益不受到任何的损失;
4、本站JN0-331题库根据JN0-331考试的变化动态更新,在厂家考题每次发生变化后,我们承诺2天内更新JN0-331题库。在您购买我们的产品之后,我们将提供90天的免费更新。确保JN0-331考题的覆盖率始终都在95%以上;我们提供2种 JN0-331考题大师版本供你选择。
5、软件版本JN0-331考试题库
优点:具有学习模式,测试模式,线上自动升级
缺点:仅限固定电脑使用,不可打印为文本,只能PC阅读
6、PDF 格式JN0-331 考试题库(部分最新更新科目已不提供PDF)
优点:不需下载安装软件,方便用户打印和携带,但也带来了可随意制的弊端,因此我们提醒用户不得随意公开或出售本站的JN0-331题库,一经发现立即取消其升级资格,且不予退款。
缺点:不具备测试模式,通过查看 QuickPass.cn网站及查收我们的更新E-MAIL获取更新信息。

http://www.quickpass.cn The safer.easier way to get JNCIS Certification.