Exit demo JN0-1332 Security Design, Specialist (JNCDS-SEC) PDF format · free preview

Juniper JN0-1332 - Questions & Answers

Free preview · every answer includes a full explanation

Product page: https://prepkeys.com/jn0-1332.html

Question 1
Single choice

You are asked to deploy a security solution in your data center that ensures all traffic flows through the
SRX Series devices.

Which firewall deployment method meets this requirement?

A.

one-arm

B.

two-arm

C.

transparent

D.

inline

Question 2
Single choice

You are asked to include anti-malware features into an existing network design. Traffic from the infected machines must be moved to a quarantined VLAN.

Which product will provide this segregation?

A.

screens

B.

Sky ATP

C.

unified threat management

D.

Software Defined Secure Network

Question 3
Multiple choice

You are designing a data center security architecture. The design requires automated scaling of security services according to real-time traffic flows.

Which two design components will accomplish this task? (Choose two.)

A.

telemetry with an SDN controller

B.

JFlow traffic monitoring with event scripts

C.

VNF security devices deployed on x86 servers

D.

VRF segmentation on high-capacity physical security appliances

Question 4
Single choice

You are designing a new campus Internet access service that implements dynamic NAT for customer IP addressing. The customer requires services that allow peer-to-peer networking and online gaming.

In this scenario, what will accomplish this task?

A.

EVPN over IPsec

B.

one-to-one NAT

C.

stacked VLAN tagging

D.

endpoint independent mapping

Question 5
Multiple choice

You are designing an Internet security gateway (ISG) for your company and are considering a centralized versus a distributed model for ISGs.

Which two statements are correct in this scenario? (Choose two.)

A.

Distributed ISGs typically have less latency compared to centralized ISGs

B.

Distributed ISGs reduce bandwidth for end users

C.

Distributed ISGs typically require extra bandwidth for management

D.

Distributed ISGs are harder to manage compared to centralized ISGs

Question 6
Multiple choice

You are concerned about users downloading malicious attachments at work while using encrypted Web mail. You want to block these malicious files using your SRX Series device.

In this scenario, which two features should you use? (Choose two.)

A.

SSL reverse proxy

B.

SSL forward proxy

C.

Sky ATP SMTP scanning

D.

Sky ATP HTTP scanning

Question 7
Single choice

Which solution centralizes the management of security devices in your data center?

A.

Juniper Networks Secure Analytics

B.

J-Web

C.

Junos Space Security Director

D.

Junos CLI

Question 8
Single choice

You are deploying Security Director with the logging and reporting functionality for VMs that use SSDs.
You expect to have approximately 20,000 events per second of logging in your network.

In this scenario, what is the minimum number of logging and reporting devices that should be used?

A.

2

B.

4

C.

1

D.

3

Question 9
Single choice

You are asked to install a mechanism to protect an ISP network from denial-of-service attacks from a small number of sources.

Which mechanism will satisfy this requirement?

A.

RTBH

B.

UTM

C.

Sky ATP

D.

GeoIP

Question 10
Single choice

Which statement is correct about service chaining?

A.

Service chaining uses IPsec to connect together two or more VMs

B.

Service chaining evaluates traffic by using multiple security features on the same instance

C.

Service chaining redirects traffic back through the same device for additional processing

D.

Service chaining combines multiple VNF instances together in the data flow

Showing 10 of 65 questions · Unlock the full set