Juniper JN0-1331 Exam Questions
Security Design, Specialist (JNCDS-SEC) (Page 4 )

Updated On: 18-Mar-2026

You are deploying Security Director with the logging and reporting functionality for VMs that use SSDs. You expect to have approximately 20,000 events per second of logging in your network.

In this scenario, what is the minimum number of logging and reporting devices that should be used?

  1. 2
  2. 4
  3. 1
  4. 3

Answer(s): C


Reference:

https://www.juniper.net/documentation/en_US/junos-space17.1/topics/task/multi-task/junos-space-sd-log-collector-installing.html



You are concerned about users attacking the publicly accessible servers in your data center through encrypted channels. You want to block these attacks using your SRX Series devices.

In this scenario, which two features should you use? (Choose two.)

  1. Sky ATP
  2. IPS
  3. SSL forward proxy
  4. SSL reverse proxy

Answer(s): B,C


Reference:

https://www.juniper.net/documentation/en_US/junos/topics/topic-map/security-user-auth-ssl-tls.html



Your customer needs help designing a single solution to protect their combination of various Junos network devices from unauthorized management access.

Which Junos OS feature will provide this protection?

  1. Use a firewall filter applied to the fxp0 interface
  2. Use a security policy with the destination of the junos-host zone
  3. Use the management zone host-inbound-traffic feature
  4. Use a firewall filter applied to the lo0 interface

Answer(s): A


Reference:

https://www.juniper.net/documentation/en_US/junos/topics/concept/junos-software-router-security-supported-features.html



You must allow applications to connect to external servers. The session has embedded IP address information to enable the remote system to establish a return session.

In your design, which function should be implemented?

  1. source NAT
  2. application layer gateway
  3. destination NAT
  4. HTTP redirect

Answer(s): A



You are using SRX Series devices to secure your network and you require sandboxing for malicious file detonation. However, per company policy, you cannot send potentially malicious files outside your network for sandboxing. Which feature should you use in this situation?

  1. Sky ATP
  2. UTM antivirus
  3. IPS
  4. JATP

Answer(s): D

Explanation:

Juniper Advanced Threat Prevention Appliance


Reference:

https://www.juniper.net/us/en/products-services/security/srx-series/datasheets/1000654.page



Viewing page 4 of 14
Viewing questions 16 - 20 out of 65 questions



Post your Comments and Discuss Juniper JN0-1331 exam dumps with other Community members:

JN0-1331 Exam Discussions & Posts

AI Tutor 👋 I’m here to help!