Free Juniper JN0-331 Practice Test & Real Exam Questions
Which three options represent IDP policy match conditions? (Choose three.)
Correct Answer: A,C,D
Vote an answer
Click the Exhibit button.

Based on the exhibit, client PC 192.168.10.10 cannot ping 1.1.1.2. Which is a potential cause for this problem?

Based on the exhibit, client PC 192.168.10.10 cannot ping 1.1.1.2. Which is a potential cause for this problem?
Correct Answer: B
Vote an answer
You want to allow your device to establish OSPF adjacencies with a neighboring device connected to interface ge-0/0/3.0. Interface ge-0/0/3.0 is a member of the HR zone. Under which configuration hierarchy must you permit OSPF traffic?
Correct Answer: C
Vote an answer
You must configure a SCREEN option that would protect your device from a session table flood. Which configuration meets this requirement?
Correct Answer: D
Vote an answer
Click the Exhibit button. [edit security nat source] user@host# show
rule-set 1 {
from interface ge-0/0/2.0;
to zone untrust;
rule 1A {
match {
destination-address 1.1.70.0/24;
}
then {
source-nat interface;
}}}
Which type of source NAT is configured in the exhibit?
rule-set 1 {
from interface ge-0/0/2.0;
to zone untrust;
rule 1A {
match {
destination-address 1.1.70.0/24;
}
then {
source-nat interface;
}}}
Which type of source NAT is configured in the exhibit?
Correct Answer: A
Vote an answer
Which type of zone is used by traffic transiting the device?
Correct Answer: A
Vote an answer
Which three advanced permit actions within security policies are valid? (Choose three.)
Correct Answer: A,B,D
Vote an answer
Which two statements regarding firewall user authentication client groups are true? (Choose two.)
Correct Answer: A,C
Vote an answer
Which two statements regarding external authentication servers for firewall user authentication are true? (Choose two.)
Correct Answer: C,D
Vote an answer
