Which two statements are true regarding NAT64? (Choose two.)
A. An SRX Series device should be in flow-based forwarding mode for IPv6.
B. An SRX Series device should be in flow-based forwarding mode for IPv4.
C. An SRX Series device should be in packet-based forwarding mode for IPv4.
D. An SRX Series device should be in packet-based forwarding mode for IPv6.
正解:A,B
解説: (Pass4Test メンバーにのみ表示されます)
質問 2:
You are deploying OSPF over IPsec with an SRX Series device and third-party device using GRE.
Which two statements are correct? (Choose two.)
A. The GRE interface should use lo0 as endpoints.
B. Overlapping addresses are allowed between remote networks.
C. The OSPF protocol must be enabled under the VPN zone.
D. The GRE interface must be configured under the OSPF protocol.
正解:A,D
質問 3:
You configured two SRX series devices in an active/passive multimode HA setup.
In this scenario, which statement is correct?
A. Both devices are in the active state until the activeness determine determination process is completed.
B. Both devices are in the passive state until the activeness determination process is completed.
C. Both devices start in a hold state until the activeness determination process is completed.
D. Both devices start in the undiscovered state until the activeness determination process is completed.
正解:A
質問 4:
You need to generate a certificate for a PKI-based site-to-site VPN. The peer is expecting to user your domain name vpn.juniper.net.
Which two configuration elements are required when you generate your certificate request?
(Chose two,)
A. email [email protected]
B. ip-address 10.100.0.5
C. subject CN=vpn.juniper.net
D. domain-name vpn.juniper.net
正解:C,D
質問 5:
Exhibit:

Referring to the exhibit, which IKE mode will be configured on the HQ-Gateway and Subsidiary- Gateway?
A. Main mode on the HQ-Gateway and aggressive mode on the Subsidiary-Gateway
B. Aggressive mode on the HQ-Gateway and main mode on the Subsidiary-Gateway
C. Main mode on both the gateways
D. Aggressive mode on both the gateways
正解:D
質問 6:
Exhibit:

You have deployed an SRX Series device as shown in the exhibit. The devices in the Local zone have recently been added, but their SRX interfaces have not been configured. You must configure the SRX to meet the following requirements:
Devices in the 10.1.1.0/24 network can communicate with other devices in the same network but not with other networks or the SRX.
You must be able to apply security policies to traffic flows between devices in the Local zone.
Which three configuration elements will be required as part of your configuration? (Choose three.)
A. set protocols l2-learning global-mode switching
B. set security zones security-zone Local interfaces ge-0/0/1.0
C. set interfaces ge-0/0/1 unit 0 family ethernet-switching vlan-members 10
D. set protocols l2-learning global-mode transparent-bridge
E. set security zones security-zone Local interfaces irb.10
正解:B,C,D
解説: (Pass4Test メンバーにのみ表示されます)
966 お客様のコメント





广濑** -
JN0-637試験のテキストですが、これが実に解り易い。図が多く、イメージをつかみやすい