Juniper Security, Professional (JNCIP-SEC) - JN0-635 Exam Practice Test

You opened a support ticket with JTAC for your Juniper ATP appliance. JTAC asks you to set up access to the device using the reverse SSH connection.
Which three setting must be configured to satisfy this request? (Choose three.)
Correct Answer: A,D,E
Explanation: Only visible for ExamsLabs members. You can sign-up / login (it's free).
To which three UTM components would the custom-objects parameter apply? (Choose three.)
Correct Answer: C,D,E
What is a function of UTM?
Correct Answer: B
You are asked to merge to corporate network with the network from a recently acquired company.
Both networks use the same private IPv4 address space (172.25.126.0/24). An SRX Series device servers as the gateway for each network.
Which solution allows you to merge the two networks without modifying the current address assignments?
Correct Answer: B
Explanation: Only visible for ExamsLabs members. You can sign-up / login (it's free).
Which Junos security feature is used for signature-based attack prevention?
Correct Answer: D
You are trying to get a SSH honeypot set up on a Juniper ATP Appliance collector. The collector is running on hardware with two physical interfaces and two physical CPU cores. The honeypot feature is not working.
Which statement is true in this scenario?
Correct Answer: D
Your network includes SRX Series devices configured with AppSecure.
Which two statements regarding the application identification engine are true? (Choose two.)
Correct Answer: A,C
Explanation: Only visible for ExamsLabs members. You can sign-up / login (it's free).
You are asked to configure an SRX Series device to bypass all security features for IP traffic from the engineering department.
Which firewall filter will accomplish this task?
Correct Answer: D
Click the Exhibit button.

You are implementing a new branch site and want to ensure Internet traffic is sent directly to your ISP and other traffic is sent to your company headquarters. You have configured filter-based forwarding to accomplish this objective. You verify proper functionality using the outputs shown in the exhibit.
Which two statements are true in this scenario? (Choose two.)
Correct Answer: A,C
Your network includes SRX Series devices at the headquarters location. The SRX Series devices at this location are part of a high availability chassis cluster and are configured for IPS. There has been a node failover.
In this scenario, which statement is true?
Correct Answer: D
Explanation: Only visible for ExamsLabs members. You can sign-up / login (it's free).
Click the Exhibit button.

Which statement is correct regarding the information show in the exhibit?
Correct Answer: C
Explanation: Only visible for ExamsLabs members. You can sign-up / login (it's free).
You are implementing user authentication on your network using an SRX Series device and want to ensure that there are redundant forms of authentication for users to access the network.
You have configured the device with the integrated user firewall and user role firewall features.
You are testing failover methods using the default priority values.
In this scenario, which two statements are true? (Choose two.)
Correct Answer: A,C
You want to route traffic between two newly created virtual routers without the use of logical systems using the configuration options on the SRX5800.
Which two methods of forwarding, between virtual routers, would you recommend? (Choose two.)
Correct Answer: C,D
Click the Exhibit button.

You have recently committed the IPS policy shown in the exhibit. When evaluating the expected behavior, you notice that you have a session that matches all the rules in your IPS policy.
In this scenario, which action would be taken?
Correct Answer: C
Explanation: Only visible for ExamsLabs members. You can sign-up / login (it's free).