Which security or functional zone name has special significance to the Junos OS?()A、selfB、trustC、untrustD、junos-global

题目

Which security or functional zone name has special significance to the Junos OS?()

  • A、self
  • B、trust
  • C、untrust
  • D、junos-global
如果没有搜索结果或未解决您的问题,请直接 联系老师 获取答案。
相似问题和答案

第1题:

At which two levels of the Junos CLI hierarchy is the host-inbound-traffic command configured? ()(Choose two.)

A. [edit security idp]

B. [edit security zones security-zone trust interfaces ge-0/0/0.0]

C. [edit security zones security-zone trust]

D. [edit security screen]


参考答案:B, C

第2题:

Which security or functional zone name has special significance to the Junos OS?()

A. self

B. trust

C. untrust

D. junos-global


参考答案:D

第3题:

In the Junos OS, which statement is true?()

A. vlan.0 belongs to the untrust zone.

B. You must configure Web authentication to allow inbound traffic in the untrust zone.

C. The zone name "untrust" has no special meaning.

D. The untrust zone is not configurable.


参考答案:C

第4题:

You want to allow your device to establish OSPF adjacencies with a neighboring device connected tointerface ge-0/0/3.0. Interface ge-0/0/3.0 is a member of the HR zone.Under which configuration hierarchy must you permit OSPF traffic?()

  • A、[edit security policies from-zone HR to-zone HR]
  • B、[edit security zones functional-zone management protocols]
  • C、[edit security zones protocol-zone HR host-inbound-traffic]
  • D、[edit security zones security-zone HR host-inbound-traffic protocols]

正确答案:D

第5题:

Assume the default-policy has not been configured.Given the configuration shown in the exhibit, which two statements about traffic from host_a inthe HR zone to host_b in the trust zone are true?() [edit security policies from-zone HR to-zone trust] user@host# show policy one { match { source-address any; destination-address any; application [ junos-http junos-ftp ]; } then { permit; } } policy two { match { source-address host_a; destination-address host_b; application [ junos-http junos-smtp ]; } then { deny; } }

  • A、DNS traffic is denied.
  • B、HTTP traffic is denied.
  • C、FTP traffic is permitted.
  • D、SMTP traffic is permitted.

正确答案:A,C

第6题:

You want to allow your device to establish OSPF adjacencies with a neighboring device connected to interface ge-0/0/3.0. Interface ge-0/0/3.0 is a member of the HR zone.Under which configuration hierarchy must you permit OSPF traffic?()

A. [edit security policies from-zone HR to-zone HR]

B. [edit security zones functional-zone management protocols]

C. [edit security zones protocol-zone HR host-inbound-traffic]

D. [edit security zones security-zone HR host-inbound-traffic protocols]


参考答案:D

第7题:

Which type of zone is used by traffic transiting the device?()

  • A、transit zone
  • B、default zone
  • C、security zone
  • D、functional zone

正确答案:C

第8题:

You want to create an out-of-band management zone and assign the ge-0/0/0.0 interface to that zone.From the [edit] hierarchy, which command do you use to configure this assignment?()

A. set security zones management interfaces ge-0/0/0.0

B. set zones functional-zone management interfaces ge-0/0/0.0

C. set security zones functional-zone management interfaces ge-0/0/0.0

D. set security zones functional-zone out-of-band interfaces ge-0/0/0.0


参考答案:C

第9题:

Which statement is true about interface-based source NAT?()

  • A、PAT is a requirement.
  • B、It requires you to configure address entries in the junos-nat zone.
  • C、It requires you to configure address entries in the junos-global zone.
  • D、The IP addresses being translated must be in the same subnet as the egress interface.

正确答案:A

第10题:

Which three statements are true when working with high-availability clusters? (Choose three.)()

  • A、The valid cluster-id range is between 0 and 255.
  • B、Junos OS security devices can belong to more than one cluster if cluster virtualization is enabled.
  • C、If the cluster-id value is set to 0 on a Junos security device, the device will not participate in the cluster.
  • D、A reboot is required if the cluster-id or node value is changed.
  • E、Junos OS security devices can belong to one cluster only.

正确答案:C,D,E

更多相关问题