单选题How many IDP policies can be active at one time on an SRX Series device by means of the set security idp active-policy configuration statemen?()A 1B 2C 4D 8

题目
单选题
How many IDP policies can be active at one time on an SRX Series device by means of the set security idp active-policy configuration statemen?()
A

1

B

2

C

4

D

8


相似考题
更多“单选题How many IDP policies can be active at one time on an SRX Series device by means of the set security idp active-policy configuration statemen?()A 1B 2C 4D 8”相关问题
  • 第1题:

    How many IDP policies can be active at one time on an SRX Series device by means of the set security idp active-policy configuration statemen?()

    • A、1
    • B、2
    • C、4
    • D、8

    正确答案:A

  • 第2题:

    Which three statements are true regarding IDP?()

    • A、IDP cannot be used in conjunction with other JUNOS Software security features such as SCREEN options,zones, and security policy.
    • B、IDP inspects traffic up to the Application layer.
    • C、IDP searches the data stream for specific attack patterns.
    • D、IDP inspects traffic up to the Presentation layer.
    • E、IDP can drop packets, close sessions, prevent future sessions, and log attacks for review by network administrators when an attack is detected.

    正确答案:B,C,E

  • 第3题:

    How many transmitters (TXs) can be configured to an omni antenna using a CDU-C+?()

    • A、1
    • B、2
    • C、4
    • D、6
    • E、8

    正确答案:B

  • 第4题:

    You are installing a MAG Series device for access control using an SRX Series device as the firewall enforcer. The MAG Series device resides in the same security zone as users. However, the users reside in different subnets and use the SRX Series device as an IP gateway.Which statement is true?()

    • A、You must configure a security policy on the SRX Series device to allow traffic to flow from the user devices to the MAG Series device.
    • B、No security policy is necessary on the SRX Series device to allow traffic to flow from the user devices to the MAG Series device.
    • C、You must configure host-inbound traffic on the SRX Series device to allow SSL traffic between the MAG Series device and the user devices.
    • D、You must configure host-inbound traffic on the SRX Series device to allow EAP traffic between the MAG Series device and the user devices.

    正确答案:A

  • 第5题:

    Which three are necessary for antispam to function properly on a branch SRX Series device? ()(Choose three.)

    • A、an antispam license
    • B、DNS servers configured on the SRX Series device
    • C、SMTP services on SRX
    • D、a UTM profile with an antispam configuration in the appropriate security policy
    • E、antivirus (full or express)

    正确答案:A,B,D

  • 第6题:

    When configuring a single SRX210 as a firewall enforcer to a MAG4610 active/passive cluster, which statement supports a fault-tolerant configuration?()

    • A、The cluster VIP is defined on the MAG4610 cluster, and the VIP of the cluster is defined as an instance on the SRX Series device.
    • B、The cluster VIP is not defined on the MAG4610 cluster, and the IP address of both the active and passive nodes of the cluster are defined as separate instances on the SRX Series device.
    • C、The cluster VIP is defined on the MAG4610 cluster, and the IP address of the active node is defined as an instance on the SRX Series device.
    • D、The cluster VIP is not defined on the MAG4610 cluster, and the IP address of the passive node is defined as an instance on the SRX Series device.

    正确答案:A

  • 第7题:

    You have been tasked with performing an update to the IDP attack database. Which three requirements areincluded as part of this task?()

    • A、The IDP security package must be installed after it is downloaded.
    • B、The device must be rebooted to complete the update.
    • C、The device must be connected to a network.
    • D、An IDP license must be installed on your device.
    • E、You must be logged in as the root user

    正确答案:A,C,D

  • 第8题:

    多选题
    Which three are necessary for antispam to function properly on a branch SRX Series device? ()(Choose three.)
    A

    an antispam license

    B

    DNS servers configured on the SRX Series device

    C

    SMTP services on SRX

    D

    a UTM profile with an antispam configuration in the appropriate security policy

    E

    antivirus (full or express)


    正确答案: B,C
    解析: 暂无解析

  • 第9题:

    多选题
    You are performing the initial setup of a new MAG Series device and have installed a valid CA- signed certificate on the MAG Series device. Connectivity to an existing SRX Series firewall enforcer cannot be obtained.What are two explanations for this behavior?()
    A

    The MAG Series device has multiple ports associated with the certificate.

    B

    The MAG Series device's serial number needs to be configured on the SRX Series device.

    C

    The SRX Series device must have a certificate signed by the same authority as the MAG Series device.

    D

    The MAG Series device and SRX Series device are not synchronized to an NTP server.


    正确答案: A,C
    解析: 暂无解析

  • 第10题:

    单选题
    You are installing a MAG Series device for access control using an SRX Series device as the firewall enforcer. The MAG Series device resides in the same security zone as users. However, the users reside in different subnets and use the SRX Series device as an IP gateway.Which statement is true?()
    A

    You must configure a security policy on the SRX Series device to allow traffic to flow from the user devices to the MAG Series device.

    B

    No security policy is necessary on the SRX Series device to allow traffic to flow from the user devices to the MAG Series device.

    C

    You must configure host-inbound traffic on the SRX Series device to allow SSL traffic between the MAG Series device and the user devices.

    D

    You must configure host-inbound traffic on the SRX Series device to allow EAP traffic between the MAG Series device and the user devices.


    正确答案: C
    解析: 暂无解析

  • 第11题:

    单选题
    Which statement regarding the implementation of an IDP policy template is true?()
    A

    IDP policy templates are automatically installed as the active IDP policy.

    B

    IDP policy templates are enabled using a commit script.

    C

    IDP policy templates can be downloaded without an IDP license.

    D

    IDP policy templates are included in the factory-default configuration.


    正确答案: B
    解析: 暂无解析

  • 第12题:

    单选题
    You are configuring an active/passive cluster of SRX Series devices as the firewall enforcer on a MAG Series device.Which statement is true?()
    A

    Multiple Infranet Enforcer instances are created with a single serial number of an SRX Series device defined in each configuration.

    B

    A single Infranet Enforcer instance is created with both serial numbers of the clustered SRX Series devices defined in the configuration.

    C

    Multiple Infranet Enforcer instances are created with a single IP address of an SRX Series device defined in each configuration.

    D

    A single Infranet enforcer instance is created with the VIP of the clustered SRX Series device defined in the configuration.


    正确答案: D
    解析: 暂无解析

  • 第13题:

    Which Web-filtering technology can be used at the same time as integrated Web filtering on a single branch SRX Series device?()

    • A、Websense redirect Web filtering
    • B、local Web filtering (blacklist or whitelist)
    • C、firewall user authentication
    • D、ICAP

    正确答案:B

  • 第14题:

    Which statement regarding the implementation of an IDP policy template is true?()

    • A、IDP policy templates are automatically installed as the active IDP policy.
    • B、IDP policy templates are enabled using a commit script.
    • C、IDP policy templates can be downloaded without an IDP license.
    • D、IDP policy templates are included in the factory-default configuration.

    正确答案:B

  • 第15题:

    How many AMD processors can be installed inside a x3755? ()

    • A、1
    • B、2
    • C、4
    • D、All of the above

    正确答案:D

  • 第16题:

    How many traffic classes are supported on the ERX Edge Router?()

    • A、1
    • B、2
    • C、4
    • D、8

    正确答案:D

  • 第17题:

    Which two statements are true regarding IDP?()

    • A、IDP can be used in conjunction with other JUNOS Software security features such as SCREEN options,zones, and security policy.
    • B、IDP cannot be used in conjunction with other JUNOS Software security features such as SCREEN options, zones, and security policy.
    • C、IDP inspects traffic up to the Presentation layer.
    • D、IDP inspects traffic up to the Application layer.

    正确答案:A,D

  • 第18题:

    Which three situations will trigger an e-mail to be flagged as spam if a branch SRX Series device has been properly configured with antispam inspection enabled for the appropriate security policy? ()(Choose three.)

    • A、The server sending the e-mail to the SRX Series device is a known open SMTP relay.
    • B、The server sending the e-mail to the SRX Series device is running unknown SMTP server software.
    • C、The server sending the e-mail to the SRX Series device is on an IP address range that is known to be dynamically assigned.
    • D、The e-mail that the server is sending to the SRX Series device has a virus in its attachment.
    • E、The server sending the e-mail to the SRX Series device is a known spammer IP address.

    正确答案:A,C,E

  • 第19题:

    You are performing the initial setup of a new MAG Series device and have installed a valid CA- signed certificate on the MAG Series device. Connectivity to an existing SRX Series firewall enforcer cannot be obtained.What are two explanations for this behavior?()

    • A、The MAG Series device has multiple ports associated with the certificate.
    • B、The MAG Series device's serial number needs to be configured on the SRX Series device.
    • C、The SRX Series device must have a certificate signed by the same authority as the MAG Series device.
    • D、The MAG Series device and SRX Series device are not synchronized to an NTP server.

    正确答案:C,D

  • 第20题:

    单选题
    You are validating the configuration of your SRX Series device and see the output shown below. What does this indicate?()
    A

    The SRX Series device has been configured correctly, the Junos Pulse Access Control Service is reachable on the network, and the SRX Series device is waiting to receive the initial connection from the Junos Pulse Access Control Service.

    B

    The SRX Series device has confirmed that the Junos Pulse Access Control Service is configured and is reachable on the network, the SRX Series device is waiting to receive the connection from the Junos Pulse Access Control Service, and all that remains to be accomplished is to configure the SRX Series device.

    C

    The SRX Series device is configured correctly and connected to the Junos Pulse Access Control Service. All that remains to be done to complete the configuration is to configure the SRX Series device on the Junos Pulse Access Control Service.

    D

    Both the Junos Pulse Access Control Service and the SRX Series device are configured correctly and communicating with each other.


    正确答案: The SRX Series device has been configured correctly, the Junos Pulse Access Control Service is reachable on the network, and the SRX Series device is waiting to receive the initial connection from the Junos Pulse Access Control Service., The SRX Series device has confirmed that the Junos Pulse Access Control Service is configured and is reachable on the network, the SRX Series device is waiting to receive the connection from the Junos Pulse Access Control Service, and all that remains to be accomplished is to configure the SRX Series device., The SRX Series device is configured correctly and connected to the Junos Pulse Access Control Service. All that remains to be done to complete the configuration is to configure the SRX Series device on the Junos Pulse Access Control Service., Both the Junos Pulse Access Control Service and the SRX Series device are configured correctly and communicating with each other.
    解析: 暂无解析

  • 第21题:

    单选题
    Which Web-filtering technology can be used at the same time as integrated Web filtering on a single branch SRX Series device?()
    A

    Websense redirect Web filtering

    B

    local Web filtering (blacklist or whitelist)

    C

    firewall user authentication

    D

    ICAP


    正确答案: D
    解析: 暂无解析

  • 第22题:

    单选题
    When configuring a single SRX210 as a firewall enforcer to a MAG4610 active/passive cluster, which statement supports a fault-tolerant configuration?()
    A

    The cluster VIP is defined on the MAG4610 cluster, and the VIP of the cluster is defined as an instance on the SRX Series device.

    B

    The cluster VIP is not defined on the MAG4610 cluster, and the IP address of both the active and passive nodes of the cluster are defined as separate instances on the SRX Series device.

    C

    The cluster VIP is defined on the MAG4610 cluster, and the IP address of the active node is defined as an instance on the SRX Series device.

    D

    The cluster VIP is not defined on the MAG4610 cluster, and the IP address of the passive node is defined as an instance on the SRX Series device.


    正确答案: C
    解析: 暂无解析

  • 第23题:

    多选题
    You have been tasked with performing an update to the IDP attack database. Which three requirements areincluded as part of this task?()
    A

    The IDP security package must be installed after it is downloaded.

    B

    The device must be rebooted to complete the update.

    C

    The device must be connected to a network.

    D

    An IDP license must be installed on your device.

    E

    You must be logged in as the root user


    正确答案: E,C
    解析: 暂无解析