Free Juniper JN0-331 Practice Test & Real Exam Questions

  • Exam Code/Number: JN0-331
  • Exam Name/Title: SEC,Specialist(JNCIS-SEC)
  • Certification Provider: Juniper
  • Corresponding Certification: JNCIS
  • Exam Questions: 131
  • Updated On: Oct 07, 2026
Which three options represent IDP policy match conditions? (Choose three.)
Correct Answer: A,C,D Vote an answer
Click the Exhibit button.

Based on the exhibit, client PC 192.168.10.10 cannot ping 1.1.1.2. Which is a potential cause for this problem?
Correct Answer: B Vote an answer
You want to allow your device to establish OSPF adjacencies with a neighboring device connected to interface ge-0/0/3.0. Interface ge-0/0/3.0 is a member of the HR zone. Under which configuration hierarchy must you permit OSPF traffic?
Correct Answer: C Vote an answer
You must configure a SCREEN option that would protect your device from a session table flood. Which configuration meets this requirement?
Correct Answer: D Vote an answer
Click the Exhibit button. [edit security nat source] user@host# show
rule-set 1 {
from interface ge-0/0/2.0;
to zone untrust;
rule 1A {
match {
destination-address 1.1.70.0/24;
}
then {
source-nat interface;
}}}
Which type of source NAT is configured in the exhibit?
Correct Answer: A Vote an answer
Which type of zone is used by traffic transiting the device?
Correct Answer: A Vote an answer
Which three advanced permit actions within security policies are valid? (Choose three.)
Correct Answer: A,B,D Vote an answer
Which two statements regarding firewall user authentication client groups are true? (Choose two.)
Correct Answer: A,C Vote an answer
Which two statements regarding external authentication servers for firewall user authentication are true? (Choose two.)
Correct Answer: C,D Vote an answer