Which two statements about the deployment are true?
You are asked to deploy dynamic VPNs between the corporate office and remote employees that work from
home. The gateway device at the corporate office consists of a pair of SRX650s in a chassis cluster. Which two
statements about the deployment are true? (Choose two.)
Which two statements about the new deployment are true?
You are asked to deploy a group VPN between various sites associated with your company. The gateway
devices at the remote locations are SRX240 devices. Which two statements about the new deployment are
true? (Choose two.)
Which statement is correct about the security flow sess…
Given the following session output:
Session ID. , Policy namE. default-policy-00/2, StatE. Active, Timeout: 1794, Valid
In: 2001:660:1000:8c00::b/1053 –> 2001:660:1000:9002::aafe/80;tcp, IF. reth0.0, Pkts: 4, Bytes: 574
Out: 192.168.203.10/80 –> 192.168.203.1/24770;tcp, IF. reth1.0, Pkts: 3, Bytes:
Which statement is correct about the security flow session output?
How would you resolve this problem?
You are attempting to establish an IPsec VPN between two SRX devices. However, there is another device
between the SRX devices that does not pass traffic that is using UDP port 4500.
How would you resolve this problem?
Which two components are required?
You must configure a central SRX device connected to two branch offices with overlapping IP address space.
The branch office connections to the central SRX device must reside in separate routing instances. Which two
components are required? (Choose two.)
Which type of persistent NAT is required?
You are asked to provide access for an external VoIP server to VoIP phones in your network using private
addresses. However, due to security concerns, the VoIP server should only be able to initiate connections to
each phone once the phone has logged into the VoIP server. The VoIP server requires access to the phones
using multiple ports.
Which type of persistent NAT is required?
How do you accomplish this goal?
Your SRX device is performing NAT to provide an internal resource with a public address. Your DNS server is
on the same network segment as the server. You want your internal hosts to be able to reach the internal
resource using the DNS name of the resource.
How do you accomplish this goal?
Which configuration setting will accomplish this goal?
You want to implement persistent NAT for an internal resource so that external hosts are able to initiate
communications to the resource, without the internal resource having previously sent packets to the external
hosts. Which configuration setting will accomplish this goal?
Which two are required for the SRX device to perform DN…
Which two are required for the SRX device to perform DNS doctoring? (Choose two.)
Which action would solve this problem?
You have configured static NAT for a Web server in your DMZ. Both internal and external users can reach the
Web server using its IP address. However, only internal users are able to reach the Web server using its DNS
name. External users receive an error message from their browser.
Which action would solve this problem?