Your security policy requires you to block DNS zone transfers (TCP port 53) while permitting DNS queries (UDP port 53).
Which step must you complete before creating the policy?
A. Modify the predefined DNS service to remove TCP port 53.
B. Modify the predefined DNS application to remove TCP port 53.
C. Create a custom service using UDP port 53 as the source port.
D. Create a custom service using TCP port 53 as the destination port.
DNS zone transfers use TCP. DNS queries use UDP.
Which step would be needed before creating a policy that would block DNS zone transfers while allowing DNS queries to pass?
A. Create a custom service using UDP port 53 as the source port.
B. Create a custom service using TCP port 53 as the destination port.
C. Do nothing, the pre-defined DNS service will work properly as defined.
D. The predefined DNS service does not allow this type of configuration.
You are trying to remove an address book entry by going to the Objects > Addresses > List display of the WebUI, but you cannot find the remove option.
What would cause this problem?
A. An address book entry can only be deleted from the command line interface. You will need to use the CLI to delete it.
B. The address book entry is misconfigured. You need to correct the address book entry before it will allow you to delete it.
C. You cannot remove an address book entry from this screen. You need to use the delete option found under the management options screen.
D. The address book entry is being used by a policy. You must delete the policy or remove the address book entry from the policy before it can be deleted.
What should be done if you needed to create a policy to control DNS zone transfers, but allow DNS queries to go through?
A. Nothing, the pre-defined DNS service will work properly as defined
B. Create a custom service using TCP port 53 as the destination port
C. The predefined DNS service does not allow this type of configuration
D. Create a custom service only using UDP port 53 as the destination port
Which statement about multi-cell policies is true?
A. You can apply the negate option to services.
B. You can apply the negate option to a source address.
C. You can only use the WebUI to configure multi-cell policies.
D. You can add up to 32 different addresses or services per cell.
You are trying to remove an address book entry by going to the Address Book->List display of the Web UI, but you cannot find the remove option. What would cause this problem?
A. An address book entry can only be deleted from the command line interface. You will need to use the CLI to delete it.
B. The address book entry is misconfigured. You need to correct the address book entry before it will allow you to delete it.
C. You cannot remove an address book entry from this screen. You need to use the delete option found under the management options screen
D. The address book entry is being used by a policy. You must delete the policy or remove the address book entry from the policy before it can be deleted.
What is the largest number of entries that can be entered into the source, destination, or service fields of a multi-cell policy configured on an NS-5GT device?
A. 8
B. 16
C. 24
D. 32
Which ScreenOS WebUI button allows multi-cell policy creation?
A. Cells
B. Group
C. Multicell
D. Multiple
Which ScreenOS CLI command would be used to add services to an existing multi-cell policy?
A. set service
B. set multiple service
C. set service
D. set policy from trust to untrust any any
On a 5GT using multi-cell policies, what is the largest number of entries that can be entered into the source, destination or service fields?
A. 8
B. 16
C. 24
D. 32
Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Juniper exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your JN0-740 exam preparations and Juniper certification application, do not hesitate to visit our Vcedump.com to find your solutions here.