Free JN0-1331 Exam Braindumps (page: 5)

Page 4 of 17

You are designing an Internet security gateway (ISG) for your company and are considering a centralized versus a distributed model for ISGs. Which two statements are correct in this scenario? (Choose two.)

  1. Distributed ISGs typically have less latency compared to centralized ISGs
  2. Distributed ISGs reduce bandwidth for end users
  3. Distributed ISGs typically require extra bandwidth for management
  4. Distributed ISGs are harder to manage compared to centralized ISGs

Answer(s): A,D



You are creating a data center security design. Virtual security functions must be performed on east-west traffic. Security functions must be commissioned and decommissioned frequently, and the least resource- intensive architecture must be used.

In this scenario, what will accomplish this task?

  1. all-in-one NFV security devices with device templates
  2. service chaining with container-based security functions
  3. a security appliance segmented into logical systems
  4. filter-based forwarding to direct traffic to the required security devices

Answer(s): A



What are two reasons for using cSRX over vSRX? (Choose two.)

  1. cSRX loads faster
  2. cSRX uses less memory
  3. cSRX supports the BGP protocol
  4. cSRX supports IPsec

Answer(s): A,B


Reference:

https://www.juniper.net/documentation/en_US/csrx/information-products/pathway-pages/security-csrx-linux-bm-guide-pwp.pdf



You will be managing 1000 SRX Series devices. Each SRX Series device requires basic source NAT to access the Internet. Which product should you use to manage these NAT rules on the SRX Series devices?

  1. Security Director
  2. CSO
  3. Contrail
  4. JSA

Answer(s): A






Post your Comments and Discuss Juniper JN0-1331 exam with other Community members:

JN0-1331 Discussions & Posts