Free Juniper JN0-541 Exam Questions (page: 2)

Which statement is true about the attack object database update process?

  1. Each sensor updates its own attack object database automatically; however they must be able to access the Juniper site on TCP port 443.
  2. The attack object database update must be manually performed by the administrator, and the administrator must manually install it on each sensor.
  3. The attack object database update can be initiated manually or automatically.
  4. The attack object database update can be automatically scheduled to occur using the Security Manager GUI.

Answer(s): C



On a sensor, which command will indicate if log messages are being sent to Security Manager?

  1. scio vr list
  2. service idp status
  3. scio agentstats display
  4. scio getsystem

Answer(s): C



After you enable alerts for new hosts that are detected by the Enterprise Security Profiler, where do you look in Security Manager to see those alerts?

  1. Security Monitor > Profiler > Application Profiler tab
  2. Security Monitor > Profiler > Violation Viewer tab
  3. Security Monitor > Profiler > Network Profiler tab
  4. Log Viewer > Profiler Log

Answer(s): D



When connecting to a sensor using SSH, which account do you use to login?

  1. admin
  2. super
  3. netscreen
  4. root

Answer(s): A



Which OSI layer(s) of a packet does the IDP sensor examine?

  1. layers 2-7
  2. layers 2-4
  3. layer 7 only
  4. layers 4-7

Answer(s): A



Which two will change the management IP of an IDP sensor? (Choose two.)

  1. Edit the existing IDP sensor object in Security Manager GUI and change the IP address.
  2. Delete the IDP sensor object from Security Manager and re-add the sensor with the new IP address.
  3. Use ifconfig to change the management IP address.
  4. Use the ACM to change the management IP address.

Answer(s): B,D



Which rule base would detect netcat?

  1. SYN protector
  2. traffic anomalies
  3. backdoor
  4. exempt

Answer(s): C



Which three fields in a packet must match an IDP rule before that packet is examined for an attack? (Choose three.)

  1. terminate match
  2. service
  3. destination address
  4. source address
  5. attack object

Answer(s): B,C,D






Post your Comments and Discuss Juniper JN0-541 exam prep with other Community members:

JN0-541 Exam Discussions & Posts