
Juniper NetworksCertified Specialist, Security (JNCIS-SEC)
Domain 2Objective 3
IPsec Site-To-Site VPNs JN0-336 Practice Questions (Page 3)
Part of the IPsec VPN domain, which makes up ~16% of our current practice bank. Juniper Networks does not publish an official question count, but from its 90-minute exam (~35–60 total, ~6–10 in this domain), expect 1–2 from this objective — we provide 29 practice questions to prepare you well beyond it. (estimate)
29questions here
6free pages
7concepts
Questions 11–15
- 11
A company is setting up an IPsec VPN between two sites. The security team requires that the original IP header be protected from modification during transit. The engineer is configuring the IPsec proposal and must choose the appropriate mode. Which mode should be used?
Select an answer first - 12
A company has a main office and a remote office. They need to securely connect the two offices over the internet. The solution must support multiple subnets on each side and must be able to route traffic between them. Which technology should be used?
Select an answer first - 13
In IKE Phase 2, what is negotiated and established?
Select an answer first - 14
Which protocol in the IPsec suite provides authentication and integrity but does NOT encrypt the payload?
Select an answer first - 15
What is the role of the Security Parameter Index (SPI) in an IPsec security association?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Juniper Networks. “JN0-336” is a trademark of its owner, used for identification only.