JN0-232: Security, Associate (JNCIA-SEC) — Free Practice Questions
10 free sample questions from a bank of 57, with the correct answers and explanations. No signup required — start practising right now.
1You are modifying the NAT rule order and you notice that a new NAT rule has been added to the bottom of the list.
In this situation, which command would you use to reorder NAT rules?
insert
run
top
up
Answer: A
2Which two statements are correct about the Junos OS? (Choose two.)
It is a network operating system.
It is supported on physical and virtual devices.
It is a network management system for Juniper devices.
It is a network operating system for IoT devices.
Answer: A, B
3An SRX Series Firewall operates in which two modes? (Choose two.)
flow mode
packet mode
route mode
wireless mode
Answer: A, B
4In which order does Junos OS process the various forms of NAT?
destination NAT, source NAT, static NAT
static NAT, destination NAT, source NAT
source NAT, static NAT, destination NAT
source NAT, destination NAT, static NAT
Answer: B
5On the SRX Series Firewalls, which type of NAT is bi-directional?
source NAT without PAT
static NAT
source NAT
destination NAT
Answer: B
6Which two settings does the host-inbound-traffic zone configuration parameter control? (Choose two.)
transit traffic
protocols on the zone's physical interfaces
exception traffic
protocols on the zone's logical interfaces
Answer: B, D
7Which two statements are correct about the Junos OS architecture? (Choose two.)
Junos is built using a collection of interdependent software processes.
Junos is built using independent software processes.
Restarting a single software process causes synchronization issues until other processes are restarted.
Individual software processes can be restarted without impacting the others.
Answer: B, D
8You plan to use unified security policies to identify and control nested HTTP applications.
In this scenario, which two actions must you perform on your SRX Series Firewall? (Choose two.)
Install the application identification (AppID) feature license on the SRX Series Firewall.
Include dynamic application objects in your security policies.
Create all the unified security policies in the global zone.
Disable the default security policy.
Answer: A, B
9What must also be enabled when using source NAT if the address pool is in the same subnet as the interface?
proxy ARP
dynamic DNS
static NAT
destination NAT
Answer: A
10Which statement is correct about security policies?
Security policies are evaluated before screen in first path processing.
Zone-based security policies reference both source and destination zones.
Security policies are evaluated in both first path and fast path processing.
Zone-based security policies only apply to intra-zone traffic.