Pre-Winter Sale Special - Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: sntaclus

You want to configure a reth interface.

Which two actions are required to accomplish this task? (Choose two.)

A.

Member interfaces can be of different speeds.

B.

Member interfaces must all be of the same media type.

C.

Member interfaces must all be the same speed.

D.

Member interfaces can be of different media types.

Which two statements are correct about Juniper ATP Cloud malware analysis? (Choose two.)

A.

If no match exists in cache, the remaining analysis features are processed with the cumulative threat score transmitted to the SRX Series device.

B.

If a match exists in cache, that threat score is sent to the SRX Series device and the analysis continues.

C.

If a match exists in cache, that threat score is sent to the SRX Series device and the analysis stops.

D.

If no match exists in cache, the first analysis feature to generate a threat score is transmitted to the SRX Series device.

Which two statements about proxy IDs are correct? (Choose two.)

A.

Proxy IDs cannot override default Junos behavior.

B.

By default, for a route-based IPsec VPN, a Junos security device sets the proxy ID to 0.0.0.0/0.

C.

Proxy IDs must match on both peers for a Phase 2 tunnel to establish.

D.

Proxy IDs are created during IKE Phase 1.

Which statement is correct about Active Directory as an identity source for identity-aware security policies?

A.

It supports a maximum of two domains.

B.

It supports logical systems.

C.

It supports 20 Active Directory servers per domain.

D.

It tracks non-Windows Active Directory users.

You have configured a new site-to-site VPN tunnel. The exhibit shows the security IPsec statistics output for the specific tunnel index from one of the tunnel-end devices.

Which two statements are correct in this scenario? (Choose two.)

A.

AH is incorrectly configured.

B.

The far-end tunnel device is rebooting.

C.

The ESP configuration is not set up correctly.

D.

No traffic passes through this tunnel.

Which action will the SRX Series device take if traffic matches the custom attack object shown in the exhibit?

A.

the action taken is defined in the IDP policy that includes this attack object.

B.

the action taken is defined by the security policy.

C.

The SRX Series device will reject the traffic.

D.

The SRX series device will drop the traffic.

Which two functions does Juniper ATP Cloud perform to reduce delays in the inspection of files? (Choose two.)

A.

Juniper ATP Cloud allows the creation of allowlists.

B.

Juniper ATP Cloud uses a single antivirus software package to analyze files.

C.

Juniper ATP Cloud allows end users to bypass the inspection of files.

D.

Juniper ATP Cloud performs a cache lookup on files.

You need to deploy an SRX Series device in your virtual environment.

In this scenario, what are two benefits of using a CSRX? (Choose two.)

A.

The cSRX supports Layer 2 and Layer 3 deployments.

B.

The cSRX default configuration contains three default zones: trust, untrust, and management.

C.

The cSRX supports firewall, NAT, IPS, and UTM services.

D.

The cSRX has low memory requirements.

You are deploying a new SRX Series device and you need to log denied traffic.

In this scenario, which two policy parameters are required to accomplish this task? (Choose two.)

A.

session-init

B.

session-close

C.

deny

D.

count

Which two statements are correct about cluster components? (Choose two.)

A.

Cluster ID values range from 1 through 255.

B.

Node ID values are either 0 or 1.

C.

Cluster ID values are either 0 or 1.

D.

Node ID values range from 1 through 255.