网友您好, 请在下方输入框内输入要搜索的题目:
题目内容
(请给出正确答案)
单选题
The SRX device receives a packet and determines that it does not match an existing session.After SCREEN options are evaluated, what is evaluated next?()
A
source NAT
B
destination NAT
C
route lookup
D
zone lookup
参考答案
参考解析
解析:
暂无解析
更多 “单选题The SRX device receives a packet and determines that it does not match an existing session.After SCREEN options are evaluated, what is evaluated next?()A source NATB destination NATC route lookupD zone lookup” 相关考题
考题
The SRX device receives a packet and determines that it does not match an existing session.After SCREEN options are evaluated, what is evaluated next?()
A. source NATB. destination NATC. route lookupD. zone lookup
考题
Which two statements are true about TCP communication?()
A. The receiver acknowledges the final packet in each communications stream.B. The receiver adds sequencing numbers to the packets received.C. The sender adds sequencing numbers to the packets it sends.D. The receiver acknowledges each packet it receives from the sending device.
考题
Refer to the exhibit. What does the (*) represent in the output?()
A.Packet is destined for a local interface to the router.B.Packet was translated, but no response was received from the distant device.C.Packet was not translated, because no additional ports are available.D.Packet was translated and fast switched to the destination.
考题
Part of the job as a network administrator is being able to make a distinction between routed protocols and routing protocols. Which of the following statements is true regarding them?()A、A routing protocol is assigned to an interface and determines the method of packet delivery.B、A routed protocol is assigned to an interface and determines the method of packet delivery.C、A routing protocol determines the path of a packet through a network.D、A routed protocol determines the path of a packet through a network.E、A routing protocol operates at the transport layer of the OSI model.F、A routed protocol updates the routing table of a router.
考题
During the IPv6 autoconfiguration, what does the device append to the 64- bit prefix that it receives from the router to create its IPv6 address?()A、a pseudora ndom generated numberB、its locally configured IPv4 addressC、the DHCP - supplied device IDD、its MAC address
考题
Which of the following statements regarding routed and routing protocols are true?()A、A routed protocol is assigned to an interface and determines the method of packet deliver.B、A routing protocol determines the path of a packet through a network.C、A routed protocol determines the path of a packet through a network.D、A routing protocol operates at the transport layer of the OSI model.E、A routed protocol updates the routing table of a router.
考题
If the PFE does not have a route to the destination address of a packet, which action will be taken?()A、The PFE floods the packet out of all interfaces.B、The PFE drops the packet and sends a destination unreachable notification back to source device.C、The PFE forwards the packet to the routing engine for further processing.D、The PFE queues the packet and sends a request for a layer 3 lookup to the routing engine.
考题
You are configuring an active/passive cluster of SRX Series devices as the firewall enforcer on a MAG Series device.Which statement is true?()A、Multiple Infranet Enforcer instances are created with a single serial number of an SRX Series device defined in each configuration.B、A single Infranet Enforcer instance is created with both serial numbers of the clustered SRX Series devices defined in the configuration.C、Multiple Infranet Enforcer instances are created with a single IP address of an SRX Series device defined in each configuration.D、A single Infranet enforcer instance is created with the VIP of the clustered SRX Series device defined in the configuration.
考题
Which two statements are true about TCP communication?()A、The receiver acknowledges the final packet in each communications stream.B、The receiver adds sequencing numbers to the packets received.C、The sender adds sequencing numbers to the packets it sends.D、The receiver acknowledges each packet it receives from the sending device.
考题
A router receives a packet from a neighbor with an MPLS shim header value of 0.What does the router do with this packet?()A、It performs a label pop operation and an IP lookup.B、It performs a label swap operation and an IP lookup.C、It sends an error message toward the egress router.D、It sends an error message toward the ingress router.
考题
Overlay Transport Virtualization (OTV) overlay interface is a logical multiaccess and multicast- capable interface that must be explicitly defined by the user and where the entire OTV configuration is applied. Which statements are true about OTV overlay interface?()A、 When an OTV edge device receives a Layer 2 frame destined for a remote data center site, the frame is logically forwarded to the overlay interface.B、 The OTV edge device performs the dynamic OTV encapsulation on the Layer 2 packet and sends it to the join interface toward the routed domain.C、 When the OTV edge device receives a Layer 2 frame destined for a remote data center site, the frame is logically forwarded to the join interface.D、 The OTV edge device performs the dynamic OTV encapsulation on the Layer 2 packet and sends it to the overlay interface toward the routed domain.
考题
The same Web site is visited for the second time using a branch SRX Series Services Gateway configured with SurfControl integrated Web filtering.Which statement is true?()A、The SRX device sends the URL to the SurfControl server in the cloud and the SurfControl server provides the SRX.B、The SRX device sends the URL to the SurfControl server in the cloud and the SurfControl server asks the SRX device previously visited.C、The SRX device looks at its local cache to find the category of the URL.D、The SRX device does not perform any Web filtering operation as the Web site has already been visited.
考题
When an SRX series device receives an ESP packet, what happens?()A、If the destination address of the outer IP header of the ESP packet matches the IP address of the ingress interface, it willB、If the destination IP address in the outer IP header of ESP does not match the IP address of the ingress interface, it willC、If the destination address of the outer IP header of the ESP packet matches the IP address of the ingress interface, based packet.D、If the destination address of the outer IP header of the ESP packet matches the IP address of the ingress interface, based of inner header, it will decrypt the packet.
考题
You are performing the initial setup of a new MAG Series device and have installed a valid CA- signed certificate on the MAG Series device. Connectivity to an existing SRX Series firewall enforcer cannot be obtained.What are two explanations for this behavior?()A、The MAG Series device has multiple ports associated with the certificate.B、The MAG Series device's serial number needs to be configured on the SRX Series device.C、The SRX Series device must have a certificate signed by the same authority as the MAG Series device.D、The MAG Series device and SRX Series device are not synchronized to an NTP server.
考题
Which statement is true about SurfControl integrated Web filter solution?()A、The SurfControl server in the cloud provides the SRX device with the category of the URL as well as the reputation of the URL.B、The SurfControl server in the cloud provides the SRX device with only the category of the URL.C、The SurfControl server in the cloud provides the SRX device with only the reputation of the URL.D、The SurfControl server in the cloud provides the SRX device with a decision to permit or deny the URL.
考题
单选题You are validating the configuration of your SRX Series device and see the output shown below. What does this indicate?()A
The SRX Series device has been configured correctly, the Junos Pulse Access Control Service is reachable on the network, and the SRX Series device is waiting to receive the initial connection from the Junos Pulse Access Control Service.B
The SRX Series device has confirmed that the Junos Pulse Access Control Service is configured and is reachable on the network, the SRX Series device is waiting to receive the connection from the Junos Pulse Access Control Service, and all that remains to be accomplished is to configure the SRX Series device.C
The SRX Series device is configured correctly and connected to the Junos Pulse Access Control Service. All that remains to be done to complete the configuration is to configure the SRX Series device on the Junos Pulse Access Control Service.D
Both the Junos Pulse Access Control Service and the SRX Series device are configured correctly and communicating with each other.
考题
单选题You are configuring an active/passive cluster of SRX Series devices as the firewall enforcer on a MAG Series device.Which statement is true?()A
Multiple Infranet Enforcer instances are created with a single serial number of an SRX Series device defined in each configuration.B
A single Infranet Enforcer instance is created with both serial numbers of the clustered SRX Series devices defined in the configuration.C
Multiple Infranet Enforcer instances are created with a single IP address of an SRX Series device defined in each configuration.D
A single Infranet enforcer instance is created with the VIP of the clustered SRX Series device defined in the configuration.
考题
多选题Which three situations will trigger an e-mail to be flagged as spam if a branch SRX Series device has been properly configured with antispam inspection enabled for the appropriate security policy? ()(Choose three.)AThe server sending the e-mail to the SRX Series device is a known open SMTP relay.BThe server sending the e-mail to the SRX Series device is running unknown SMTP server software.CThe server sending the e-mail to the SRX Series device is on an IP address range that is known to be dynamically assigned.DThe e-mail that the server is sending to the SRX Series device has a virus in its attachment.EThe server sending the e-mail to the SRX Series device is a known spammer IP address.
考题
多选题Part of the job as a network administrator is being able to make a distinction between routed protocols and routing protocols. Which of the following statements is true regarding them?()AA routing protocol is assigned to an interface and determines the method of packet delivery.BA routed protocol is assigned to an interface and determines the method of packet delivery.CA routing protocol determines the path of a packet through a network.DA routed protocol determines the path of a packet through a network.EA routing protocol operates at the transport layer of the OSI model.FA routed protocol updates the routing table of a router.
考题
单选题When an SRX series device receives an ESP packet, what happens?()A
If the destination address of the outer IP header of the ESP packet matches the IP address of the ingress interface, it willB
If the destination IP address in the outer IP header of ESP does not match the IP address of the ingress interface, it willC
If the destination address of the outer IP header of the ESP packet matches the IP address of the ingress interface, based packet.D
If the destination address of the outer IP header of the ESP packet matches the IP address of the ingress interface, based of inner header, it will decrypt the packet.
考题
多选题Which two statements are true about the Websense redirect Web filter solution? ()(Choose two.)AThe Websense redirect Web filter solution does not require a license on the SRX device.BThe Websense server provides the SRX device with a category for the URL and the SRX device then matches the category decides to permit or deny the URL.CThe Websense server provides the SRX device with a decision as to whether the SRX device permits or denies the URL.DWhen the Websense server does not know the category of the URL, it sends a request back to the SRX device SurfControl server in the cloud.
考题
单选题The SRX device receives a packet and determines that it does not match an existing session.After SCREEN options are evaluated, what is evaluated next?()A
source NATB
destination NATC
route lookupD
zone lookup
考题
多选题You are performing the initial setup of a new MAG Series device and have installed a valid CA- signed certificate on the MAG Series device. Connectivity to an existing SRX Series firewall enforcer cannot be obtained.What are two explanations for this behavior?()AThe MAG Series device has multiple ports associated with the certificate.BThe MAG Series device's serial number needs to be configured on the SRX Series device.CThe SRX Series device must have a certificate signed by the same authority as the MAG Series device.DThe MAG Series device and SRX Series device are not synchronized to an NTP server.
考题
单选题Which statement is true about SurfControl integrated Web filter solution?()A
The SurfControl server in the cloud provides the SRX device with the category of the URL as well as the reputation of the URL.B
The SurfControl server in the cloud provides the SRX device with only the category of the URL.C
The SurfControl server in the cloud provides the SRX device with only the reputation of the URL.D
The SurfControl server in the cloud provides the SRX device with a decision to permit or deny the URL.
考题
多选题Which two statements are true about TCP communication?()AThe receiver acknowledges the final packet in each communications stream.BThe receiver adds sequencing numbers to the packets received.CThe sender adds sequencing numbers to the packets it sends.DThe receiver acknowledges each packet it receives from the sending device.
考题
单选题If the PFE does not have a route to the destination address of a packet, which action will be taken?()A
The PFE floods the packet out of all interfaces.B
The PFE drops the packet and sends a destination unreachable notification back to source device.C
The PFE forwards the packet to the routing engine for further processing.D
The PFE queues the packet and sends a request for a layer 3 lookup to the routing engine.
考题
单选题You are installing a MAG Series device for access control using an SRX Series device as the firewall enforcer. The MAG Series device resides in the same security zone as users. However, the users reside in different subnets and use the SRX Series device as an IP gateway.Which statement is true?()A
You must configure a security policy on the SRX Series device to allow traffic to flow from the user devices to the MAG Series device.B
No security policy is necessary on the SRX Series device to allow traffic to flow from the user devices to the MAG Series device.C
You must configure host-inbound traffic on the SRX Series device to allow SSL traffic between the MAG Series device and the user devices.D
You must configure host-inbound traffic on the SRX Series device to allow EAP traffic between the MAG Series device and the user devices.
考题
单选题The same Web site is visited for the second time using a branch SRX Series Services Gateway configured with SurfControl integrated Web filtering.Which statement is true?()A
The SRX device sends the URL to the SurfControl server in the cloud and the SurfControl server provides the SRX.B
The SRX device sends the URL to the SurfControl server in the cloud and the SurfControl server asks the SRX device previously visited.C
The SRX device looks at its local cache to find the category of the URL.D
The SRX device does not perform any Web filtering operation as the Web site has already been visited.
热门标签
最新试卷