You want to confirm that your SRX Series Firewall is connected to the SBL server. Which operational mode command would you use in this scenario?
Correct Answer:
B
You are modifying the NAT rule order and you notice that a new NAT rule has been added to the bottom of the list.
In this situation, which command would you use to reorder NAT rules?
Correct Answer:
A
Which two statements about security zones are correct? (Choose two.)
Correct Answer:
AB
Adding interfaces (Option A):An interface must be assigned to a security zone before it can pass traffic. By default, interfaces are in the null zone and cannot send or receive traffic.
Exception traffic (Option B):Security zones define host-inbound-traffic settings, which determine what types of management or control-plane traffic (SSH, ICMP, SNMP) are permitted.
Routing instances (Options C and D):Security zones arespecific to a routing instanceand cannot include interfaces from multiple instances. Therefore, interfaces in the same zone cannot belong to different routing instances.
Correct Statements:A and B
[Reference:Juniper Networks –Security Zones Overview, Junos OS Security Fundamentals., ]
What is the purpose of assigning logical interfaces to separate security zones in Junos OS?
Correct Answer:
C
What happens if no match is found in both zone-based and global security policies?
Correct Answer:
A