Free JN0-335 Exam Braindumps (page: 8)

Page 7 of 25

You are asked to implement IPS on your SRX Series device. In this scenario, which two tasks must be completed before a configuration will work? (Choose two.)

  1. Download the IPS signature database.
  2. Enroll the SRX Series device with Juniper ATP Cloud.
  3. Install the IPS signature database.
  4. Reboot the SRX Series device.

Answer(s): A,C

Explanation:

The two tasks that must be completed before a configuration for IPS on an SRX Series device will work are downloading the IPS signature database and installing the IPS signature database. The Security, Specialist (JNCIS-SEC) Study guide provides further information on how to download and install the IPS signature database. Enrolling the SRX Series device with Juniper ATP Cloud is not necessary to make a configuration work, and rebooting the SRX Series device is not required either.



Which two statements are correct about Juniper ATP Cloud? (Choose two.)

  1. Once the target threshold is met, Juniper ATP Cloud continues looking for threats from 0 to 5 minutes.
  2. Once the target threshold is met, Juniper ATP Cloud continues looking for threats levels range from 0 to 10 minutes.
  3. The threat levels range from 0-10.
  4. The threat levels range from 0-100.

Answer(s): A,C

Explanation:

According to the Juniper Networks JNCIS-SEC Study Guide, Juniper ATP Cloud sets target thresholds for security events and then continuously scans the environment for any activity that exceeds this threshold. Once the threshold is met, Juniper ATP Cloud continues looking for threats for a period of 0 to 5 minutes. The threat levels range from 0 to 10, with 0 being the lowest and 10 being the highest.



Exhibit



You just finished setting up your command-and-control (C&C) category with Juniper ATP Cloud. You notice that all of the feeds have zero objects in them.
Which statement is correct in this scenario?

  1. The security intelligence policy must be configured; on a unified security policy
  2. Use the commit full command to start the download.
  3. No action is required, the feeds take a few minutes to download.
  4. Set the maximum C&C entries within the Juniper ATP Cloud GUI.

Answer(s): C

Explanation:

According to the Juniper Networks JNCIS-SEC Study Guide, when you set up your command-and- control (C&C) category with Juniper ATP Cloud, all of the feeds will initially have zero objects in them. This is normal, as it can take a few minutes for the feeds to download. No action is required in this scenario and you will notice the feeds start to populate with objects once the download is complete.



Your network uses a single JSA host and you want to implement a cluster. In this scenario, which two statements are correct? (Choose two.)

  1. The software versions on both primary and secondary hosts
  2. The secondary host can backup multiple JSA primary hosts.
  3. The primary and secondary hosts must be configured with the same storage devices.
  4. The cluster virtual IP will need an unused IP address assigned.

Answer(s): A,D

Explanation:

According to the Juniper Networks JNCIP-SEC Study Guide, when setting up a cluster with a single JSA host, both the primary and secondary hosts must have the same software version installed. Additionally, an unused IP address must be assigned to the cluster virtual IP. The primary and secondary hosts do not need to be configured with the same storage devices, and the secondary host cannot be used to backup multiple JSA primary hosts.






Post your Comments and Discuss Juniper JN0-335 exam with other Community members:

JN0-335 Discussions & Posts