Pre-Summer Sale 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: Board70

JN0-336 Exam Dumps - Juniper JNCIS-SEC Questions and Answers

Question # 4

You want to include a custom attack object named Custom-FTP-Attack and set the action to drop the packet.

Referring to the exhibit, which modifications would you make?

Options:

A.

Add custom-attack Custom-FTP-Attack to the attacks section and change the action to close-client.

B.

Add custom-attack Custom-FTP-Attack to the attacks section and change the action to drop-packet.

C.

Add custom-attack Custom-FTP-Attack to the action section and change the action to drop-packet.

D.

Add custom-attack Custom-FTP-Attack to the notification section and change the action to drop-packet.

Buy Now
Question # 5

Which SRX Series device configuration setting must be configured first to use Juniper ATP Cloud?

Options:

A.

Start up the anti-malware service on the SRX Series device.

B.

Apply the firewall rules on the SRX Series device.

C.

Enable connectivity between the SRX Series device and Juniper ATP Cloud.

D.

Configure the anti-malware policies on the SRX Series device.

Buy Now
Question # 6

Which three algorithms are used to encrypt IP packets? (Choose three.)

Options:

A.

Data Encryption Standard (DES)

B.

Secure Hash Algorithm (SHA) - 1

C.

Message Digest 5 (MD5)

D.

Triple Data Encryption Standard (3DES)

E.

Advanced Encryption Standard (AES)

Buy Now
Question # 7

Referring to the exhibit, which two statements are correct? (Choose two.)

Options:

A.

Fabric link 0 is working.

B.

The control link is working.

C.

Fabric link 1 is failing.

D.

The control link is failing.

Buy Now
Question # 8

You need to deploy an SRX Series device in your virtual environment.

In this scenario, what are two benefits of using a CSRX? (Choose two.)

Options:

A.

The cSRX supports Layer 2 and Layer 3 deployments.

B.

The cSRX default configuration contains three default zones: trust, untrust, and management.

C.

The cSRX supports firewall, NAT, IPS, and UTM services.

D.

The cSRX has low memory requirements.

Buy Now
Question # 9

Which two statements are correct about Juniper Secure Connect? (Choose two.)

Options:

A.

Juniper Secure Connect uses a policy-based VPN.

B.

Juniper Secure Connect can use a self-signed certificate.

C.

Juniper Secure Connect uses a route-based VPN.

D.

Juniper Secure Connect cannot use a self-signed certificate.

Buy Now
Question # 10

You want to configure the SSL proxy feature on your SRX Series Firewall.

Which two actions must you perform to accomplish this task? (Choose two.)

Options:

A.

Enable the SSL ALG.

B.

Create an SSL proxy profile.

C.

Create an SSL application object.

D.

Associate an SSL proxy profile with a security policy.

Buy Now
Question # 11

What are two ways that Juniper Secure Connect provides flexibility in connection and authentication methods while ensuring that remote users are able to securely access company servers and cloud resources? (Choose two.)

Options:

A.

It uses a persistent agent.

B.

It uses Kerberos authentication.

C.

It uses external authentication.

D.

It uses an SSL VPN.

Buy Now
Question # 12

You are deploying a new SRX Series device and you need to log denied traffic.

In this scenario, which two policy parameters are required to accomplish this task? (Choose two.)

Options:

A.

session-init

B.

session-close

C.

deny

D.

count

Buy Now
Question # 13

You are implementing an SRX Series device at a branch office that has low bandwidth and also uses a cloud-based VoIP solution with an outbound policy that permits all traffic.

Which service would you implement at your edge device to prioritize VoIP traffic in this scenario?

Options:

A.

AppFW

B.

SIP ALG

C.

AppQoE

D.

AppQoS

Buy Now
Exam Code: JN0-336
Exam Name: Security, Specialist (JNCIS-SEC)
Last Update: May 30, 2026
Questions: 66
JN0-336 pdf

JN0-336 PDF

$25.5  $84.99
JN0-336 Engine

JN0-336 Testing Engine

$28.5  $94.99
JN0-336 PDF + Engine

JN0-336 PDF + Testing Engine

$40.5  $134.99