Latest Version: 6.0
Question: 1
Which interface is used for RTO synchronization and forwarding traffic between the devices in a cluster?
Response:
A. the fxp1 and fxp0 interfaces
B. the fab0 and fab1 interfaces
C. the st interface
D. the reth interface
Question: 2
What is a redundancy group in the Junos OS?
Response:
A. a set of devices that participate in a chassis cluster
B. a set of chassis cluster objects that fail over as a group
C. a set of VRRP neighbors that fail over as a group
D. a set of chassis clusters that fail over as a group
Question: 3
Answer: B
Answer: B
Which CLI command provides a summary of what the content-filtering engine has blocked?
Response:
A. show security flow session
B. show security utm content-filtering statistics
C. show security utm content-filtering summary
D. show security flow statistics
Question: 4
Answer: B
Which two are negotiated during Phase 2 of an IPsec VPN tunnel establishment? (Choose two.)
Response:
A. security protocol
B. VPN monitor interval
C. UDP port number
D. proxy IDs
Question: 5
At which step in the packet flow are Junos Screen checks applied?
Response:
A. prior to security policy processing
B. after ALG services are applied
C. prior to the route lookup
D. after source NAT services are applied
Question: 6
Which three parameters are configured in the IKE policy? (Choose three.)
Response:
A. mode
B. preshared key
C. external interface
D. dead peer detection settings
E. security proposals
Question: 7
What is the purpose of an address book?
Response:
Answer: A,D
Answer: C
Answer: A,B,E
A. It holds security policies for particular hosts.
B. It maps hostnames to IP addresses to serve as a backup to DNS resolution.
C. It defines hosts by name so they can be referenced in policies.
D. It holds statistics about traffic to and from particular hosts.
Question: 8
Answer: C
Which statement is true for interfaces residing outside of redundancy groups?
Response:
A. Only interfaces that have redundancy can be active in the chassis cluster.
B. All interfaces will be redundant if they reside on a system that is part of a chassis cluster.
C. The interfaces cannot be mapped to security zones.
D. Interfaces that are not in an RG can still forward traffic, but no redundancy is available for them.
Answer: D
Question: 9
When initializing a new SRX chassis cluster and applying the configuration in the exhibit, which statement is correct?
Response:
A. You must define an additional redundancy group.
B. Three physical interfaces are redundant.
C. You must also issue an operational command and reboot the system.
D. Node 0 will immediately become primary for redundancy group 1.
Answer: C

Question: 10
What is the purpose of a zone in JUNOS Software?
Response:
A. A zone defines a group of security devices with a common management.
B. A zone defines the geographic region in which the security device is deployed.
C. A zone defines a group of network segments with similar class-of-service requirements.
D. A zone defines a group of network segments with similar security requirements.
Answer: D
