Pre-Summer Sale 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: Board70

JN0-336 Exam Dumps - Juniper JNCIS-SEC Questions and Answers

Question # 14

Your manager asks you to update your SRX Series device’s IDP security package. You perform the required steps; however, when you attempt to install the package, you receive an error.

Referring to the exhibit, which two statements are correct about this error? (Choose two.)

Options:

A.

IDP stops inspecting traffic.

B.

The IDP license has expired.

C.

IDP continues to inspect traffic only using the installed signatures.

D.

The IDP license is missing/not installed.

Buy Now
Question # 15

Using Junos Space Security Director, you want to configure a unique firewall policy for a specific SRX Series device.

Which firewall policy rule would satisfy the requirement?

Options:

A.

all devices policy prerules

B.

group policy prerules

C.

device policy rules

D.

all devices policy postrules

Buy Now
Question # 16

You are asked to onboard an SRX Series device to Junos Space Security Director, but it is not working.

In this scenario, what are three areas that should be reviewed? (Choose three.)

Options:

A.

chassis serial number

B.

SSH port number

C.

active security policies

D.

authentication credentials

E.

IP address

Buy Now
Question # 17

Which two statements are correct about client-protection Secure Socket Layer (SSL) proxy configurations? (Choose two.)

Options:

A.

Server certificate is required.

B.

Root certificate authority (CA) configuration is required.

C.

Root certificate authority (CA) configuration is not required.

D.

Server certificate is not required.

Buy Now
Question # 18

Which three actions does Junos Space Security Director perform during the device discovery process? (Choose three.)

Options:

A.

It imports the device’s active device configuration.

B.

it reboots the device.

C.

It imports device status information.

D.

It adds a local superuser account to the device configuration.

E.

It connects to the device using SSH.

Buy Now
Question # 19

You are asked to configure your company SRX Series device to use identity-aware security policies. Information about your Active Directory network is shown in the exhibit.

In this scenario, why must you configure JIMS instead of Active Directory as an identity source?

Options:

A.

JIMS is the only way to get data from Active Directory.

B.

You have too many Active Directory users.

C.

The version of Windows OS is too old.

D.

You have too many domain controllers.

Buy Now
Question # 20

Which two steps are necessary to prepare the Active Directory domain for a JIMS installation? (Choose two.)

Options:

A.

Create two limited access user accounts.

B.

Create three limited access user accounts.

C.

Add one full access user account to Active Directory groups.

D.

Add limited access user accounts to Active Directory groups.

Buy Now
Question # 21

You are asked to ensure that traffic that matches an IDP policy is not impacted until administrators have a chance to evaluate it.

In this scenario, which IP action should be configured for the policy?

Options:

A.

ip-block

B.

ip-notify

C.

ip-connection-rate-limit

D.

ip-close

Buy Now
Question # 22

You need to secure communications from a mobile command center which uses a 5G mobile ISP behind CGNAT to an SRX Series Firewall at headquarters.

Which two actions should be performed on the SRX Series Firewall in this scenario? (Choose two.)

Options:

A.

Configure the IPsec VPN to use NAT-T.

B.

Configure the IPsec VPN to use IKEv1 aggressive mode.

C.

Configure the IPsec VPN to use IKEv2 aggressive mode.

D.

Configure the IPsec VPN to use DPD.

Buy Now
Exam Code: JN0-336
Exam Name: Security, Specialist (JNCIS-SEC)
Last Update: May 31, 2026
Questions: 66
JN0-336 pdf

JN0-336 PDF

$25.5  $84.99
JN0-336 Engine

JN0-336 Testing Engine

$28.5  $94.99
JN0-336 PDF + Engine

JN0-336 PDF + Testing Engine

$40.5  $134.99