Juniper JN0-637 Übungsprüfungen
Zuletzt aktualisiert am 26.04.2025- Prüfungscode: JN0-637
- Prüfungsname: Security, Professional (JNCIP-SEC)
- Zertifizierungsanbieter: Juniper
- Zuletzt aktualisiert am: 26.04.2025
Exhibit:
Referring to the exhibit, a default static route on SRX-1 sends all traffic to ISP-A. You have configured APBR to send all requests for streaming video traffic to ISP-B. However, the return traffic from the streaming video server is coming through ISP-A, and the traffic is being dropped by SRX-1. You can only make changes on SRX-1.
How do you solve this problem?
- A . Place both ISP-facing interfaces in the same zone.
- B . Change the APBR routing instance from a forwarding instance to a virtual router instance.
- C . Enable AppTrack to keep track of the sessions and zones for the streaming video traffic.
- D . Configure BGP to control the return path of the streaming video traffic.
You are deploying IPsec VPNs to securely connect several enterprise sites with ospf for dynamic routing. Some of these sites are secured by third-party devices not running Junos.
Which two statements are true for this deployment? (Choose two.)
- A . OSPF over IPsec can be used for intersite dynamic routing.
- B . Sites with overlapping address spaces can be supported.
- C . OSPF over GRE over IPsec is required to enable intersite dynamic routing
- D . Sites with overlapping address spaces cannot be supported.
Which two statements are true when setting up an SRX Series device to operate in mixed mode? (Choose two.)
- A . A physical interface can be configured to be both a Layer 2 and a Layer 3 interface at the same time.
- B . User logical systems support Layer 2 traffic processing.
- C . The SRX must be rebooted after configuring at least one Layer 3 and one Layer 2 interface.
- D . Packets from Layer 2 interfaces are switched within the same bridge domain.
Which two statements about transparent mode and Ethernet switching mode on an SRX series device are correct.
- A . In Ethernet switching mode, Layer 2 interfaces must be placed in a security zone.
- B . In Ethernet switching mode, IRB interfaces must be placed in a security zone.
- C . In transparent mode, Layer 2 interfaces must be placed in a security zone.
- D . In transparent mode, IRB interfaces must be placed in a security zone.
You have deployed automated threat mitigation using Security Director with Policy Enforcer, Juniper ATP Cloud, SRX Series devices, and EX Series switches.
In this scenario, which device is responsible for blocking the infected hosts?
- A . Policy Enforcer
- B . Security Director
- C . Juniper ATP Cloud
- D . EX Series switch
A user reports that a specific application is not working properly. This application makes multiple connection to the server and must have the same address every time from a pool and this behavior needs to be changed.
What would solve this problem?
- A . Use STUN.
- B . Use DNS doctoring.
- C . Use the address-persistent parameter.
- D . Use the persistent-nat parameter.
An ADVPN configuration has been verified on both the hub and spoke devices and it seems fine.
However, OSPF is not functioning as expected.
Referring to the exhibit, which two statements under interface st0.0 on both the hub and spoke devices would solve this problem? (Choose two.)
- A . interface-type p2mp
- B . dynamic-neighbors
- C . passive
- D . interface-type p2p