Just4Cert – IT certifications Blog

IT Training and Preparation Tests

Just4Cert JN0-521 Free download

Just4cert JN0-521 Practice Exams

FWV.Associate (JNCIA-FWV) Certification Braindumps

  • Exam Number/Code : JN0-521
  • Exam Name : FWV.Associate (JNCIA-FWV)
  • Questions and Answers : 116 Q&As
  • Update Time: 2009-09-08
  • buy :JN0-521 From www.just4cert.com
  • Download PDF demo click HERE!

JN0-521 Practice Exams:

We are all well aware that a major problem in the IT industry is that there is a lack of quality study materials. Our Exam Preparation Material provides you everything you will need to take a certification examination. Like actual certification exams, our Practice Tests are in multiple-choice (MCQs) Our Juniper Networks JN0-521 Practice Exams will provide you with free JN0-521 dumps questions with verified answers that reflect the actual exam. These questions and answers provide you with the experience of taking the actual test. High quality and Value for the JN0-521 Practice Exams:100% Guarantee to Pass Your JNCIA exam and get your

JNCIA Braindumps

 
 
Exam : Juniper JN0-521
Title : Juniper(r) FWV.Associate (JNCIA-FWV)

1. You are looking at the event log of the responding device and it says,
"Rejected an initial Phase 1 packet from an unrecognized peer gateway"
What are three likely reasons for the failure? (Choose three.)
A.The peer ID is misconfigured.
B.The default gateway is missing.
C.The preshare keys are mismatched.
D.The gateway address is misconfigured.
E.The outgoing interface is misconfigured.
Answer: ADE

2. What will change the root admin password?
A.set admin password
B.set root-admin password
C.set admin password
D.set admin user password
Answer: A

3. When a firewall receives the first packet in a series, what will it immediately do?
A.Check its route table.
B.Check its session table.
C.Determine if traffic is crossing zones.
D.Verify that it is not malformed or a fragment.
Answer: D

4. Click the Exhibit button.
In the exhibit, which interface would be used to forward traffic to host 1.1.7.5?
A.e0/1
B.e0/2
C.e0/3
D.e0/4
Answer: C

5. By default, from which hardware component is the startup copy of the ScreenOS loaded?
A.NVRAM
B.TFTP server
C.internal flash
D.PCMCIA card
Answer: C

6. Which ScreenOS WebUI button reorders policies?
A.Shift
B.Move
C.Reorder
D.Transfer
Answer: B

7. Which statement is correct regarding administrator privileges?
A.Any administrator can change their privileges on an as-needed basis.
B.Administrator privileges can only be established and changed by the root administrator.
C.Administrator privileges can be established and changed by the root and all-privilege administrator.
D.Administrator privileges can only be established by the root and can be changed by the root and all-privilege administrator.
Answer: B

8. In the packet forwarding decision process, how is the second packet handled differently than the first in a series of allowed interzone packets?
A.The second packet causes an ARP query.
B.The second packet is checked against the policy table.
C.The second packet is forwarded without a sanity check.
D.The second packet is forwarded without checking the route table.
Answer: D

9. A ScreenOS firewall has the correct interfaces addressed and active. A policy is written allowing interzone FTP traffic from a directly connected client. But the traffic does not cross the firewall from the client to the server.
What is the most likely problem with the firewall?
A.The ScreenOS firewall has no physical connection to the FTP server.
B.The ALG option on the ScreenOS firewall has not been enabled for FTP traffic.
C.The ScreenOS firewall does not have a route defined to the FTP servers’ subnet.
D.The ScreenOS firewall does not have a route defined to the FTP clients subnet.
Answer: C

10. Which statement accurately describes the "config rollback" feature?
A.Once the "config rollback" feature is enabled, it allows the administrator to re-apply a previously saved configuration file from flash.
B.The "config rollback" feature is enabled by default, it allows the administrator to re-apply a previously saved configuration file from flash.
C.Once the "config rollback" feature is enabled, it allows the administrator to re-apply a locked configuration file from a separate area in flash.
D.Once the "config rollback" feature is enabled, it allows the administrator to revert to the prior ScreenOS image or configuration file in the event an upgrade operation aborts.
Answer: C

11. Telnet management has been enabled on an interface in the untrust zone.
What else should be completed to limit telnet access to the ScreenOS device from trusted management PCs?
A.Define a permitted IP address.
B.Define a policy from trust to untrust.
C.Define a trusted IP in the address table.
D.Define a manage IP address on this interface.
Answer: A

12. Which command would you run to check IPSec Phase 1 active status?
A.get sa
B.get event 427
C.get sa active
D.get ike cookie
Answer: D

13. Which type of NAT is performed when you implement interface-based NAT?
A.source IP address translation
B.destination IP address translation
C.source IP and port address translation
D.destination IP and port address translation
Answer: C

14. Click the Exhibit button.
In the exhibit, which two forms of address translation would have generated the output shown? (Choose two.)
A.MIP
B.NAT-src with no DIP
C.Interface-based translation
D.NAT-src with a DIP, fixed-port disabled
Answer: BC

15. You are configuring an interface in the untrust zone with an IP address, telnet enabled, and WebUI management.
Which sequence of steps must be performed to make the interface operational at the end of the configuration sequence?
A.Assign the interface to a zone, define the IP address, enable Web and telnet services.
B.Assign the interface to a zone, define the IP address, accept default management services.
C.Assign the interface to a virtual router, define the IP address, enable Web and telnet services.
D.Assign the interface to a zone, define the IP address, define a manage IP address, accept default management services.
Answer: A

JN0-521 Certification Practice Exams Description

It is well known that JN0-521 test is the hot exam of Juniper Networks certification. Just4cert offer you all the Q&A of the JN0-521 real test . It is the examination of the perfect combination and it will help you pass JN0-521 exam at the first time


About The Author

admin

Comments

Comments are closed.