IT인증,IT자격증,IT자격증시험,IT인증시험

http://www.pass4test.net/

Juniper JN0-533 (FWV, Specialist (JNCIS-FWV)) 인증덤프공부

Pass4Test는 저희 제품을 구매한 분들이 100%통과율을 보장해드리도록 최선을 다하고 있습니다. Pass4Test를 선택한것은 시험패스와 자격증취득을 예약한것과 같습니다. Pass4Test의 믿음직한 Juniper JN0-533 (FWV, Specialist (JNCIS-FWV)) 덤프를 공부해보세요.

 

 

NO.1 Click the Exhibit button.
In the exhibit, you have configured the MIP address 1.1.8.64 on a ScreenOS device.
Which statement is correct?
A. It performs one-to-one address translation and maps 1.1.8.64 to 10.1.10.64.
B. It performs one-to-many address translation and maps 1.1.8.64 to a range from 10.1.10.64 to
10.1.10.71.
C. It performs range address translation and maps 1.1.8.64 to 10.1.10.64, 1.1.8.65 to 10.1.10.65,
etc..
D. It performs address translation using a random IP address from the pool for 10.1.10.64 / 29.
Answer: C

NO.2 Click the Exhibit button.
Referring to the exhibit, what is the appropriate VPN monitor status?
A. The VPN is active and the peer is down.
B. The VPN is active and VPN Monitor is not configured for the peer.
C. The VPN is active and the peer is up.
D. The VPN is inactive and VPN Monitor is not configured for the peer.
Answer: B

NO.3 -- Exhibit -set admin name "admin" set admin password "nOsYMqrbAs/McFsJrs6HwcIt3AF6yn"
set admin user "User1" password "nLZwKErINPPCcphC6sFMXrJ" privilege "read-only" set admin port
8080 set admin access attempts 5 set admin access lock-on-failure 5 set admin auth web timeout 10
set admin auth server "Local" -- Exhibit -
User1 wants to create the policy in the ScreenOS device, but is not successful. Referring to the
exhibit, what is the problem?
A. The User1 account has been suspended.
B. User1 does not have any account in this device.
C. User1 logged in to the device with wrong port.
D. User1 does not have the proper permission to create a policy.
Answer: D

NO.4 Which two statements are true about VPN Monitor on a ScreenOS device? (Choose two.)
A. With a route-based VPN failure, VPN Monitor marks the tunnel interface status as down.
B. With a policy-based VPN failure, VPN Monitor marks the tunnel interface status as down.
C. VPN Monitor uses UDP to detect a VPN connection failure.
D. VPN Monitor uses ICMP to detect a VPN connection failure.
Answer: A,D

NO.5 You have configured integrated Web filtering in the ScreenOS software. A URL appears in the
blacklist, the whitelist, and a user-defined category. Additionally, the device can obtain
categorization information from the SurfControl server.
Which configuration will the device use to determine the action to take for Web requests for the
URL?
A. the blacklist
B. the SurfControl categorization
C. the user-defined category
D. the whitelist
Answer: A

NO.6 Which two configuration elements are synchronized between the members of an NSRP cluster?
(Choose two.)
A. interface IP addresses
B. hostname
C. track IP configuration
D. static routes
Answer: A,D

NO.7 Click the Exhibit button.
Which two statements are true regarding the route shown in the exhibit? (Choose two.)
A. 5.5.5.0/ 24 was configured as a source route with a next-hop IP address of 1.1.1.1 in the trustvr.
B. 5.5.5.0/ 24 was configured as a destination route with a next-hop IP address of 1.1.1.1 in the
trust-vr.
C. 5.5.5.0/ 24 was configured as a SIBR route with a next-hop IP address of 1.1.1.1 in the trust-vr.
D. 5.5.5.0/ 24 was configured as a permanent source route.
Answer: A,D

NO.8 HostA is in the Trust zone and has an IP address of. ServerA is a Web server in the DMZ zone
and has an IP address of.
Which three configuration statements are required to allow traffic from HostA to communicate with
ServerA? (Choose three.)
A. ssg5-> set address Trust HostA / 32
B. ssg5-> set policy from DMZ to Trust ANY ANY ANY permit
C. ssg5-> set address DMZ ServerA / 32
D. ssg5-> set policy from Trust to DMZ HostA ServerA HTTP permit
E. ssg5-> set address Trust HostA / 32
Answer: C,D,E

NO.9 You want to set up a last resort route and prevent route lookups in either the source-based
routing table or the destination-based routing table.
What should you do?
A. Disable SIBR and create a default route in the trust-vr table using the null interface as the
outgoing interface with a higher metric than other routes.
B. Disable SIBR and create a default route in the trust-vr table using the null interface as the
outgoing interface with a lower metric than other routes.
C. Enable SIBR and create a default route in the SIBR table using the null interface as the outgoing
interface with a higher metric than other routes.
D. Enable SIBR and create a default route in the SIBR table using the null interface as the outgoing
interface with a lower metric than other routes.
Answer: C

NO.10 Which two statements are true about policy-based VPNs as compared to route-based IPsec
VPNs when using ScreenOS devices? (Choose two.)
A. For policy-based IPsec VPNs, you can configure 0.0.0.0/ 0 as the proxy ID on both VPN gateways
regardless of the security policy.
B. For route-based IPsec VPNs, you can configure 0.0.0.0/ 0 as the proxy ID on both VPN gateways
regardless of the security policy.
C. For route-based IPsec VPNs, the proxy ID is derived from the policy.
D. For policy-based IPsec VPNs, the proxy ID is derived from the policy.
Answer: B,D


 
Posted 2013/8/14 6:30:39  |  Category: 미분류  |  Tag: