JN0-522 JNCIA Braindump
ExamSoon JN0-522 Exams
Juniper Networks Juniper Networks Certified Internet Associate, FWV (JNCIA-FWV)
O rder : JN0-522 Exam
Practice Exam: JN0-522
Exam Number/Code: JN0-522
Exam Name: Juniper Networks Certified Internet Associate, FWV (JNCIA-FWV)
Questions and Answers: 266 Q&As
Free JN0-522 Braindumps
Exam : Juniper JN0-522
Title : FWV,Associate(JNCIA-FWV)
1. Which two statements are accurate about tunnel mode? (Choose two.)
A. In tunnel mode the IPSec header precedes the original IP header.
B. Tunnel mode is required in IPSec networks where ESP packets are used.
C. Tunnel mode is the default mode of operation for IPSec in ScreenOS devices.
D. Tunnel mode can only be used when operating between IPSec security gateways.
2. Which statement is correct regarding administrator privileges?
A. Any Administrator can change their privileges on an as-needed basis
B. Administrator privileges can only be established and changed by the Root Administrator
C. Administrator privileges can be established and changed by the Root and All-privilege Administrator
D. Administrator privileges can only be established by the Root and can be changed by the Root and All-privilege
3. A ScreenOS firewall has one interface in the user zone and one interface in the servers zone. Both interfaces are
addressed and active. The configured policy allows user traffic from the user zone to the FTP server in the servers
zone, but the traffic does not cross the firewall from the client to the server.
What is the most likely problem with the firewall?
A. The ScreenOS firewall has no physical connection to the FTP server.
B. The ALG option on the ScreenOS firewall has not been enabled for FTP traffic.
C. The ScreenOS firewall does not have a route defined to the FTP server's subnet.
D. The ScreenOS firewall does not have a route defined to the FTP client's subnet.
4. Tunnel binding is accomplished during which part of the VPN configuration process?
A. Phase 1
B. Phase 2