JN0-1331 Actual Exam Questions

Last updated on Dec. 15, 2024.
Vendor:Juniper
Exam Code:JN0-1331
Exam Name:Security Design, Specialist (JNCDS-SEC)
Exam Questions:65
 

Topic 1 - Single Topic

Question #1 Topic 1

You are deploying Security Director with the logging and reporting functionality for VMs that use SSDs. You expect to have approximately 20,000 events per second of logging in your network.
In this scenario, what is the minimum number of logging and reporting devices that should be used?

  • A. 2
  • B. 4
  • C. 1
  • D. 3
Reveal Solution Hide Solution   Discussion  

Correct Answer: C 🗳️
Reference:
https://www.juniper.net/documentation/en_US/junos-space17.1/topics/task/multi-task/junos-space-sd-log-collector-installing.html

Question #2 Topic 1

You are concerned about users attacking the publicly accessible servers in your data center through encrypted channels. You want to block these attacks using your SRX Series devices.
In this scenario, which two features should you use? (Choose two.)

  • A. Sky ATP
  • B. IPS
  • C. SSL forward proxy
  • D. SSL reverse proxy
Reveal Solution Hide Solution   Discussion  

Correct Answer: BC 🗳️
Reference:
https://www.juniper.net/documentation/en_US/junos/topics/topic-map/security-user-auth-ssl-tls.html

Question #3 Topic 1

Your customer needs help designing a single solution to protect their combination of various Junos network devices from unauthorized management access.
Which Junos OS feature will provide this protection?

  • A. Use a firewall filter applied to the fxp0 interface
  • B. Use a security policy with the destination of the junos-host zone
  • C. Use the management zone host-inbound-traffic feature
  • D. Use a firewall filter applied to the lo0 interface
Reveal Solution Hide Solution   Discussion  

Correct Answer: A 🗳️
Reference:
https://www.juniper.net/documentation/en_US/junos/topics/concept/junos-software-router-security-supported-features.html

Question #4 Topic 1

You must allow applications to connect to external servers. The session has embedded IP address information to enable the remote system to establish a return session.
In your design, which function should be implemented?

  • A. source NAT
  • B. application layer gateway
  • C. destination NAT
  • D. HTTP redirect
Reveal Solution Hide Solution   Discussion  

Correct Answer: A 🗳️

file Viewing page 1 out of 17 pages.
Viewing questions 1-4 out of 65 questions
Next Questions
Browse atleast 50% to increase passing rate cup
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago