A system administrator detects thousands of open idle connections from the same source.Which problem can arise from this type of attack?
A. It enables a hacker to know which operating system the system is running.
B. It creates a ping of death and can cause the entire network to be infected with a virus.
C. It can overflow the session table to its limit, which can result in rejection of legitimate traffic.
D. It enables an attacker to perform an IP sweep of devices.
正解:C
質問 2:
You are asked to implement the hashing algorithm that uses the most bits in the calculation on your Junos security device.
Which algorithm should you use?
A. MD5-Plus
B. SHA-256
C. SHA-512
D. MD5
正解:B
質問 3:
At which step in the packet flow are Junos Screen checks applied?
A. after source NAT services are applied
B. prior to the route lookup
C. prior to security policy processing
D. after ALG services are applied
正解:C
質問 4:
Click the Exhibit button.

Referring to the exhibit, you are not able to telnet to 192.168.10.1 from client PC
192.168.10.10.
What is causing the problem?
A. Telnet is not allowed because it is not considered secure.
B. Telnet is not being permitted by self policy.
C. Telnet is not enabled as a host-inbound service on the zone.
D. Telnet is not being permitted by security policy.
正解:C
質問 5:
Click the Exhibit button.
[edit security zones security-zone HR]
user@host# show
host-inbound-traffic {
system-services {
ping;
ssh;
https;
}}
interfaces {
ge-0/0/0.0;
ge-0/0/1.0 {
host-inbound-traffic {
system-services {
ping;
}}}
ge-0/0/2.0 {
host-inbound-traffic {
system-services {
ping;
ftp;
}}}
ge-0/0/3.0 {
host-inbound-traffic {
system-services {
all;
ssh {
except;
}}}
}}
All system services have been enabled.
Given the configuration shown in the exhibit, which interface allows both ping and SSH traffic?
A. ge-0/0/0.0
B. ge-0/0/1.0
C. ge-0/0/2.0
D. ge-0/0/3.0
正解:A
此奈 -
これからもほかのJuniper問題集を購入する予定があります。今後もお付き合いのほど、よろしくお願いいたします。