You are configuring a DHCP pool at the [edit system services DHCP pool 10.3.3.0/24] hierarchy. Which configuration statement will cause the DHCP server to tell the clients to use 10.3.3.1 as their default gateway?
A. router {
10.3.3.1;
}
B. next-router {
10.3.3.1;
}
C. default-gateway {
10.3.3.1;
}
D. gateway {
10.3.3.1;
}
正解:A
質問 2:
You must configure a SCREEN option that would protect your router from a session table flood.
Which configuration meets this requirement?
A. [edit security screen]
user@hostl# show
ids-option protectFromFlood {
icmp {
ip-sweep threshold 5000;
flood threshold 2000;
}
B. [edit security screen]
user@hostl# show
ids-option protectFromFlood {
tcp {
syn-flood {
attack-threshold 2000;
destination-threshold 2000;
}
C. [edit security screen]
user@hostl# show
ids-option protectFromFlood {
udp {
flood threshold 5000;
}
D. [edit security screen]
user@hostl# show
ids-option protectFromFlood {
limit-session {
source-ip-based 1200;
destination-ip-based 1200;
}
正解:D
質問 3:
Click the Exhibit button.
You are not able to telnet to 192.168.10.1 from client PC 192.168.10.10.
What is causing the problem?

A. Telnet is not allowed because it is not considered secure.
B. Telnet is not being permitted by self policy.
C. Telnet is not enabled as a host-inbound service on the zone.
D. Telnet is not being permitted by security policy.
正解:C
質問 4:
Using a policy with the policy-rematch flag enabled, what happens to the existing and new sessions when you change the policy action from permit to deny?
A. The new sessions matching the policy are denied. The existing sessions continue until they are completed or their timeout is reached.
B. The new sessions matching the policy are denied. The existing sessions are dropped.
C. The new sessions matching the policy are denied. The existing sessions, not being allowed to carry any traffic, simply timeout.
D. The new sessions matching the policy might be allowed through if they match another policy. The existing sessions are dropped.
正解:B
質問 5:
Which two configurations are valid? (Choose two.)
A. [edit routing-instances]
user@host# show
foo {
interface ge-0/0/3.0;
interface ge-0/0/2.102;
}
bar {
interface ge-0/0/0.0;
interface ge-0/0/3.0;
}
B. [edit security zones]
user@host# show
security-zone foo {
interfaces {
ge-0/0/1.0;
ge-0/0/3.0;
}
security-zone bar {
interfaces {
ge-0/0/2.0;
ge-0/0/3.102;
}
C. [edit security zones]
user@host# show
security-zone foo {
interfaces {
ge-0/0/1.0;
ge-0/0/2.0;
}
security-zone bar {
interfaces {
ge-0/0/1.0;
ge-0/0/3.0;
}
D. [edit routing-instances]
foo {
interface ge-0/0/3.0;
interface ge-0/0/2.102;
}
bar {
interface ge-0/0/0.0;
interface ge-0/0/3.0;
}
正解:B,D
Takigawa -
本格的なJN0-330問題も掲載されてるし、索引も充実!このPass4TestのJN0-330問題中心にすすめるのをおすすめ。