New Year Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: get65

Juniper Updated JN0-636 Exam Questions and Answers by reeva

Page: 8 / 8

Juniper JN0-636 Exam Overview :

Exam Name: Security, Professional (JNCIP-SEC)
Exam Code: JN0-636 Dumps
Vendor: Juniper Certification: JNCIP-SEC
Questions: 115 Q&A's Shared By: reeva
Question 32

which two statements about the configuration shown in the exhibit are correct ?

Exhibit:

Questions 32

Options:

A.

The remote IKE gateway IP address is 203.0.113.100.

B.

The local peer is assigned a dynamic IP address.

C.

The local IKE gateway IP address is 203.0.113.100.

D.

The remote peer is assigned a dynamic IP address.

Discussion
Question 33

You are connecting two remote sites to your corporate headquarters site; you must ensure that all traffic is secured and

only uses a single Phase 2 SA for both sites.

In this scenario, which VPN should be used?

Options:

A.

An IPsec group VPN with the corporate firewall acting as the hub device.

B.

Full mesh IPsec VPNs with tunnels between all sites.

C.

A hub-and-spoke IPsec VPN with the corporate firewall acting as the hub device.

D.

A full mesh Layer 3 VPN with the corporate firewall acting as the hub device.

Discussion
Question 34

Which statement is true about persistent NAT types?

Options:

A.

The target-host-port parameter cannot be used with IPv4 addresses in NAT46.

B.

The target-host parameter cannot be used with IPv6 addressee in NAT64.

C.

The target-host parameter cannot be used with IPv4 addresses in NAT46

D.

The target-host-port parameter cannot be used with IPv6 addresses in NAT64

Discussion
Page: 8 / 8

JN0-636
PDF

$36.75  $104.99

JN0-636 Testing Engine

$43.75  $124.99

JN0-636 PDF + Testing Engine

$57.75  $164.99