Skip to main content

JN0-230 Real Exam Questions

Security, Associate (JNCIA-SEC)

82 questions available · Page 1 of 9

Updated Exam DumpsVerified AnswersPass Guarantee

Get Complete Exam Dumps
Question 1 Single choice

Your company has been assigned one public IP address. You want to enable internet traffic to reach multiple servers in your DMZ that are configured with private address.
In this scenario, which type of NAT would be used to accomplish this tasks?

  1. A

    Static NAT

  2. B

    Destination NAT

  3. C

    Source NAT

  4. D

    NAT without PAT

Show answer and explanation

Correct answer: B

Question 2 Single choice

Which flow module components handles processing for UTM?

  1. A

    Policy

  2. B

    Zones

  3. C

    Services

  4. D

    Screen options

Show answer and explanation

Correct answer: C

Question 3 Single choice

Users on the network are restricted from accessing Facebook, however, a recent examination of the logs
show that users are accessing Facebook.
Referring to the exhibit,

Why is this problem happening?

  1. A

    Global rules are honored before zone-based rules.

  2. B

    The internet-Access rule has a higher precedence value

  3. C

    The internet-Access rule is listed first

  4. D

    Zone-based rules are honored before global rules

Show answer and explanation

Correct answer: D

Question 4 Multiple choice

Which two notifications are available when the antivirus engine detects and infected file? (Choose two.)

  1. A

    e-mail notifications

  2. B

    SNMP notifications

  3. C

    SMS notifications

  4. D

    Protocol-only notification

Show answer and explanation

Correct answers: A, D

Question 5 Multiple choice

Which two statements are true about the null zone? (Choose two.)

  1. A

    All interface belong to the bull zone by default.

  2. B

    All traffic to the null zone is dropped.

  3. C

    All traffic to the null zone is allowed

  4. D

    The null zone is a user-defined zone

Show answer and explanation

Correct answers: A, B

Question 6 Single choice

You verify that the SSH service is configured correctly on your SRX Series device, yet administrators attempting to connect through a revenue port are not able to connect.
In this scenario, what must be configured to solve this problem?

  1. A

    A security policy allowing SSH traffic.

  2. B

    A host-inbound-traffic setting on the incoming zone

  3. C

    An MTU value target than the default value

  4. D

    A screen on the internal interface

Show answer and explanation

Correct answer: B

Question 7 Single choice

Exhibit.

Which statement is correct regarding the interface configuration shown in the exhibit?

  1. A

    The interface MTU has been increased.

  2. B

    The IP address has an invalid subnet mask.

  3. C

    The IP address is assigned to unit 0.

  4. D

    The interface is assigned to the trust zone by default.

Show answer and explanation

Correct answer: C

Question 8 Single choice

You are configuring an IPsec VPN tunnel between two location on your network. Each packet must be encrypted and authenticated.

Which protocol would satisfy these requirements?

  1. A

    MD5

  2. B

    ESP

  3. C

    AH

  4. D

    SHA

Show answer and explanation

Correct answer: B

Question 9 Multiple choice

Click the Exhibit button

Which two user roles shown in the exhibit are available be defaults? (choose two)

  1. A

    Operator

  2. B

    Jtac

  3. C

    Super-user

  4. D

    Admin

Show answer and explanation

Correct answers: A, C

Question 10 Multiple choice

The Sky ATP premium or basic-Threat Feed license is needed fort which two features? (Choose two.)

  1. A

    Outbound protection

  2. B

    C&C feeds

  3. C

    Executable inspection

  4. D

    Custom feeds

Show answer and explanation

Correct answers: B, D