参考答案和解析
正确答案: A
解析: 暂无解析
更多“单选题Which security or functional zone name has special significance to the Junos OS?()A selfB trustC untrustD junos-global”相关问题
  • 第1题:

    Which type of zone is used by traffic transiting the device?()

    • A、transit zone
    • B、default zone
    • C、security zone
    • D、functional zone

    正确答案:C

  • 第2题:

    Which security or functional zone name has special significance to the Junos OS?()

    • A、self
    • B、trust
    • C、untrust
    • D、junos-global

    正确答案:D

  • 第3题:

    You want to allow your device to establish OSPF adjacencies with a neighboring device connected tointerface ge-0/0/3.0. Interface ge-0/0/3.0 is a member of the HR zone.Under which configuration hierarchy must you permit OSPF traffic?()

    • A、[edit security policies from-zone HR to-zone HR]
    • B、[edit security zones functional-zone management protocols]
    • C、[edit security zones protocol-zone HR host-inbound-traffic]
    • D、[edit security zones security-zone HR host-inbound-traffic protocols]

    正确答案:D

  • 第4题:

    In the Junos OS, which statement is true?()

    • A、vlan.0 belongs to the untrust zone.
    • B、You must configure Web authentication to allow inbound traffic in the untrust zone.
    • C、The zone name "untrust" has no special meaning.
    • D、The untrust zone is not configurable.

    正确答案:C

  • 第5题:

    What is the purpose of a zone in JUNOS Software?()

    • A、A zone defines a group of security devices with a common management.
    • B、A zone defines the geographic region in which the security device is deployed.
    • C、A zone defines a group of network segments with similar security requirements.
    • D、A zone defines a group of network segments with similar class-of-service requirements.

    正确答案:C

  • 第6题:

    You want to create an out-of-band management zone and assign the ge-0/0/0.0 interface to that zone.From the [edit] hierarchy, which command do you use to configure this assignment?()

    • A、set security zones management interfaces ge-0/0/0.0
    • B、set zones functional-zone management interfaces ge-0/0/0.0
    • C、set security zones functional-zone management interfaces ge-0/0/0.0
    • D、set security zones functional-zone out-of-band interfaces ge-0/0/0.0

    正确答案:C

  • 第7题:

    Regarding zone types, which statement is true?()

    • A、You cannot assign an interface to a functional zone.
    • B、You can specifiy a functional zone in a security policy.
    • C、Security zones must have a scheduler applied.
    • D、You can use a security zone for traffic destined for the device itself.

    正确答案:D

  • 第8题:

    单选题
    Which statement is true about interface-based static NAT? ()
    A

    It also supports PAT.

    B

    It requires you to configure address entries in the junos-nat zone.

    C

    It requires you to configure address entries in the junos-global zone.

    D

    The IP addresses being translated must be in the same subnet as the incoming interface.


    正确答案: D
    解析: 暂无解析

  • 第9题:

    单选题
    You want to create an out-of-band management zone and assign the ge-0/0/0.0 interface to that zone.From the [edit] hierarchy, which command do you use to configure this assignment?()
    A

    set security zones management interfaces ge-0/0/0.0

    B

    set zones functional-zone management interfaces ge-0/0/0.0

    C

    set security zones functional-zone management interfaces ge-0/0/0.0

    D

    set security zones functional-zone out-of-band interfaces ge-0/0/0.0


    正确答案: C
    解析: 暂无解析

  • 第10题:

    单选题
    Which statement is true about interface-based source NAT?()
    A

    PAT is a requirement.

    B

    It requires you to configure address entries in the junos-nat zone.

    C

    It requires you to configure address entries in the junos-global zone.

    D

    The IP addresses being translated must be in the same subnet as the egress interface.


    正确答案: C
    解析: 暂无解析

  • 第11题:

    单选题
    You want to allow your device to establish OSPF adjacencies with a neighboring device connected to interface ge-0/0/3.0. Interface ge-0/0/3.0 is a member of the HR zone.Under which configuration hierarchy must you permit OSPF traffic?()
    A

    [edit security policies from-zone HR to-zone HR]

    B

    [edit security zones functional-zone management protocols]

    C

    [edit security zones protocol-zone HR host-inbound-traffic]

    D

    [edit security zones security-zone HR host-inbound-traffic protocols]


    正确答案: D
    解析: 暂无解析

  • 第12题:

    单选题
    Regarding zone types, which statement is true?()
    A

    You cannot assign an interface to a functional zone.

    B

    You can specifiy a functional zone in a security policy.

    C

    Security zones must have a scheduler applied.

    D

    You can use a security zone for traffic destined for the device itself.


    正确答案: D
    解析: 暂无解析

  • 第13题:

    Assume the default-policy has not been configured.Given the configuration shown in the exhibit, which two statements about traffic from host_a inthe HR zone to host_b in the trust zone are true?() [edit security policies from-zone HR to-zone trust] user@host# show policy one { match { source-address any; destination-address any; application [ junos-http junos-ftp ]; } then { permit; } } policy two { match { source-address host_a; destination-address host_b; application [ junos-http junos-smtp ]; } then { deny; } }

    • A、DNS traffic is denied.
    • B、HTTP traffic is denied.
    • C、FTP traffic is permitted.
    • D、SMTP traffic is permitted.

    正确答案:A,C

  • 第14题:

    Which statement is true about interface-based source NAT?()

    • A、PAT is a requirement.
    • B、It requires you to configure address entries in the junos-nat zone.
    • C、It requires you to configure address entries in the junos-global zone.
    • D、The IP addresses being translated must be in the same subnet as the egress interface.

    正确答案:A

  • 第15题:

    Which two statements are true about pool-based destination NAT?()

    • A、It also supports PAT.
    • B、PAT is not supported.
    • C、It allows the use of an address pool.
    • D、It requires you to configure an address in the junos-global zone.

    正确答案:A,C

  • 第16题:

    Which two steps are performed when configuring a zone?()

    • A、Define a default policy for the zone.
    • B、Assign logical interfaces to the zone.
    • C、Assign physical interfaces to the zone.
    • D、Define the zone as a security or functional zone

    正确答案:B,D

  • 第17题:

    At which two levels of the Junos CLI hierarchy is the host-inbound-traffic command configured? ()(Choose two.)

    • A、[edit security idp]
    • B、[edit security zones security-zone trust interfaces ge-0/0/0.0]
    • C、[edit security zones security-zone trust]
    • D、[edit security screen]

    正确答案:B,C

  • 第18题:

    Which statement is true about interface-based static NAT? ()

    • A、It also supports PAT.
    • B、It requires you to configure address entries in the junos-nat zone.
    • C、It requires you to configure address entries in the junos-global zone.
    • D、The IP addresses being translated must be in the same subnet as the incoming interface.

    正确答案:D

  • 第19题:

    多选题
    Which two statements are true about pool-based destination NAT?()
    A

    It also supports PAT.

    B

    PAT is not supported.

    C

    It allows the use of an address pool.

    D

    It requires you to configure an address in the junos-global zone.


    正确答案: D,A
    解析: 暂无解析

  • 第20题:

    单选题
    Which security or functional zone name has special significance to the Junos OS?()
    A

    self

    B

    trust

    C

    untrust

    D

    junos-global


    正确答案: A
    解析: 暂无解析

  • 第21题:

    单选题
    Your task is to provision the JUNOS security platform to permit transit packets from the Private zone to theExternal zone by using an IPsec VPN and log information at the time of session close. Which configurationmeets this requirement?()
    A

    A

    B

    B

    C

    C

    D

    D


    正确答案: D
    解析: 暂无解析

  • 第22题:

    多选题
    At which two levels of the Junos CLI hierarchy is the host-inbound-traffic command configured? ()(Choose two.)
    A

    [edit security idp]

    B

    [edit security zones security-zone trust interfaces ge-0/0/0.0]

    C

    [edit security zones security-zone trust]

    D

    [edit security screen]


    正确答案: B,D
    解析: 暂无解析

  • 第23题:

    单选题
    In the Junos OS, which statement is true?()
    A

    vlan.0 belongs to the untrust zone.

    B

    You must configure Web authentication to allow inbound traffic in the untrust zone.

    C

    The zone name untrust has no special meaning.

    D

    The untrust zone is not configurable.


    正确答案: A
    解析: 暂无解析

  • 第24题:

    单选题
    What is the purpose of a zone in JUNOS Software?()
    A

    A zone defines a group of security devices with a common management.

    B

    A zone defines the geographic region in which the security device is deployed.

    C

    A zone defines a group of network segments with similar security requirements.

    D

    A zone defines a group of network segments with similar class-of-service requirements.


    正确答案: B
    解析: 暂无解析