
Juniper NetworksCertified Specialist, Security (JNCIS-SEC)
Domain 6Objective 1
Certificates JN0-336 Practice Questions (Page 3)
Part of the SSL Proxy domain, which makes up ~9% of our current practice bank. Juniper Networks does not publish an official question count, but from its 90-minute exam (~35–60 total, ~3–5 in this domain), expect 1–2 from this objective — we provide 24 practice questions to prepare you well beyond it. (estimate)
24questions here
5free pages
5concepts
Questions 11–15
- 11
When replacing a certificate on an SSL proxy, what should be done to minimize disruption?
Select an answer first - 12
A security team wants to ensure that revoked certificates are detected promptly. They are concerned about the latency of CRL downloads. Which configuration should they use on the SRX?
Select an answer first - 13
Which certificate type is presented by a client to a server to prove the client's identity during mutual TLS authentication?
Select an answer first - 14
Which revocation checking method queries the CA in real time for the status of a specific certificate?
Select an answer first - 15
An administrator must replace an expiring server certificate on the SRX SSL proxy. The new certificate has been issued by the same CA and uses the same key pair. What is the most efficient way to update the SRX without disrupting existing SSL sessions?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Juniper Networks. “JN0-336” is a trademark of its owner, used for identification only.