Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
exam questions

Exam JN0-104 All Questions

View all questions & answers for the JN0-104 exam

Exam JN0-104 topic 1 question 37 discussion

Actual exam question from Juniper's JN0-104
Question #: 37
Topic #: 1
[All JN0-104 Questions]


Referring to the exhibit, which statement is correct?

  • A. The device will attempt to authenticate using the local database if RADIUS and TACACS+ are unresponsive.
  • B. The device will randomly select the authentication method used for each new login attempt.
  • C. The device will attempt to authenticate using RADIUS and TACACS+ at the same time.
  • D. The device will never attempt to authenticate using the local database.
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Nish202174
Highly Voted 2 years, 2 months ago
A is correct. https://www.juniper.net/documentation/us/en/software/junos/user-access/topics/topic-map/junos-os-authentication-order.html
upvoted 8 times
...
mohi26
Highly Voted 2 years, 2 months ago
Selected Answer: A
A is correct.
upvoted 5 times
...
dlol
Most Recent 9 months ago
Selected Answer: A
The official Juniper course has this exact example and says that the local database is used if all else fails, even though it is not listed in the output of the command...
upvoted 1 times
...
MayTin
10 months ago
Selected Answer: A
Correct answer is A
upvoted 1 times
...
lanzailan
10 months, 2 weeks ago
https://www.juniper.net/documentation/us/en/software/junos/user-access/topics/topic-map/junos-os-authentication-order.html authentication-order [ radius tacplus ]; Try configured RADIUS authentication servers. If a RADIUS server is available and authentication is accepted, grant access. If the RADIUS servers fail to respond or the servers return a reject response, try configured TACACS+ servers. If a TACACS+ server is available and authentication is accepted, grant access. If a TACACS+ server is available but authentication is rejected, deny access.
upvoted 1 times
...
bb58b38
11 months ago
From the link in the previous comment: If the authentication order includes RADIUS or TACACS+ servers, but the servers do not respond to a request, Junos OS always defaults to trying local password authentication as a last resort.
upvoted 1 times
...
Nicocisco
1 year, 4 months ago
It's D, because in JNCIA courses, we have this example : https://ibb.co/4FVkSnP
upvoted 1 times
...
Nasredd
1 year, 4 months ago
Selected Answer: A
A is correct
upvoted 1 times
...
Cradical
1 year, 6 months ago
A. The device will attempt to authenticate using the local database if RADIUS and TACACS+ are unresponsive. The authentication-order configuration specifies the order in which authentication methods will be attempted by the device. In this case, the configuration indicates that RADIUS and TACACS+ are the preferred authentication methods as they are listed first in the order. If the RADIUS and TACACS+ servers are unresponsive or unreachable, the device will fall back to the next available method, which is the local database. So, if RADIUS and TACACS+ authentication fails, the device will attempt authentication using the local database as a backup option. Therefore, the correct statement is A: The device will attempt to authenticate using the local database if RADIUS and TACACS+ are unresponsive.
upvoted 2 times
...
Ygrec
1 year, 7 months ago
A All the vendor included juniper works like that. It's a basic behavior The user local is mandatory if the radius and tacacs server do not respond.
upvoted 4 times
...
sanbe
1 year, 7 months ago
Selected Answer: A
A is correct. https://www.juniper.net/documentation/us/en/software/junos/user-access/topics/topic-map/junos-os-authentication-order.html
upvoted 3 times
...
Makween
1 year, 7 months ago
Selected Answer: D
if the show command does not reveal "" (Radius tacplus password) "" in the configuration, when radius and tacacs fails, the system will never attempt to use password
upvoted 3 times
...
Odvehmir
1 year, 8 months ago
"A" is the correct answer
upvoted 2 times
...
ggelashvili
2 years ago
Answer is D: the device must include password as a final authentication order option for the device to attempt local password authentication in the event that the remote authentication servers reject the request
upvoted 1 times
Nebulise
1 year, 11 months ago
incorrect
upvoted 1 times
...
BogarGtz
1 year, 9 months ago
If the authentication order includes LDAPS, RADIUS, or TACACS+ servers, but the servers DO NOT RESPOND to a request, Junos OS always defaults to trying local password authentication as a last resort. If the authentication order includes LDAPS, RADIUS, or TACACS+ servers, but the servers REJECT the request, the handling of the request is more complicated. The key is the word UNRESPONSIVE in the A answer.
upvoted 1 times
...
...
aisa007
2 years ago
A is correct
upvoted 2 times
...
mohdema
2 years, 1 month ago
authentication-order [ radius tacplus ]; Try configured RADIUS authentication servers. If a RADIUS server is available and authentication is accepted, grant access. If the RADIUS servers fail to respond or the servers return a reject response, try configured TACACS+ servers. If a TACACS+ server is available and authentication is accepted, grant access. If a TACACS+ server is available but authentication is rejected, deny access. If no RADIUS or TACACS+ servers are available, try local password authentication.
upvoted 3 times
...
abual3ees
2 years, 2 months ago
i think the correct answer is D
upvoted 1 times
aisa007
2 years ago
Why is that?
upvoted 1 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...