JN0-231 Online Practice Questions

Home / Juniper / JN0-231

Latest JN0-231 Exam Practice Questions

The practice questions for JN0-231 exam was last updated on 2025-06-03 .

Viewing page 1 out of 7 pages.

Viewing questions 1 out of 38 questions.

Question#1

You are deploying an SRX Series firewall with multiple NAT scenarios.
In this situation, which NAT scenario takes priority?

A. interface NAT
B. source NAT
C. static NAT
D. destination NAT

Question#2

What is the default timeout value for TCP sessions on an SRX Series device?

A. 30 seconds
B. 60 minutes
C. 60 seconds
D. 30 minutes

Explanation:
By default, TCP has a 30-minute idle timeout, and UDP has a 60-second idle timeout. Additionally, known IP protocols have a 30-minute timeout, whereas unknown ones have a 60-second timeout. Setting the inactivity timeout is very useful, particularly if you are concerned about applications either timing out or remaining idle for too long and filling up the session table. According to the Juniper SRX Series Services Guide, this can be configured using the 'timeout inactive' statement for the security policy.

Question#3

Which two IKE Phase 1 configuration options must match on both peers to successfully establish a tunnel? (Choose two.)

A. VPN name
B. gateway interfaces
C. IKE mode
D. Diffie-Hellman group

Question#4

Click the Exhibit button.



Referring to the exhibit, a user is placed in which hierarchy when the exit command is run?

A. [edit security policies from-zone trust to-zone dmz] user@vSRX-1#
B. [edit] user@vSRX-1#
C. [edit security policies] user@vSRX-1#
D. user@vSRX-1>

Question#5

Which Juniper Networks solution uses static and dynamic analysis to search for day-zero malware threats?

A. firewall filters
B. UTM
C. Juniper ATP Cloud
D. IPS

Exam Code: JN0-231Q & A: 106 Q&AsUpdated:  2025-06-03

 Get All JN0-231 Q&As