Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
Juniper Networks logo

Juniper NetworksCertified Specialist, Security (JNCIS-SEC)

Domain 2Objective 2

IPsec Traffic Processing JN0-336 Practice Questions (Page 3)

Part of the IPsec VPN domain, which makes up ~16% of our current practice bank. Juniper Networks does not publish an official question count, but from its 90-minute exam (~35–60 total, ~6–10 in this domain), expect 1–2 from this objective — we provide 27 practice questions to prepare you well beyond it. (estimate)

27questions here
6free pages
10concepts

Questions 11–15

  1. 11foundation · easy

    What is the purpose of NAT-T (NAT Traversal) in IPsec?

    Select an answer first
  2. 12foundation · easy

    Which Junos operational command displays the active IPsec security associations?

    Select an answer first
  3. 13application · medium

    A network engineer is troubleshooting an inbound IPsec packet drop on a Junos device. The 'show security ipsec security-associations' output shows the SA is active. The engineer runs 'show security log' and sees the packet was dropped at the 'inbound SA' stage. Which field in the packet header is used to find the correct SA?

    Select an answer first
  4. 14foundation · easy

    What is a key characteristic of IPsec transport mode?

    Select an answer first
  5. 15application · medium

    A Junos device is receiving IPsec packets from a remote peer. The engineer notices that some packets are being dropped at the 'inbound SA' stage. The 'show security ipsec security-associations' output shows the SA is active with a valid SPI. Which condition is most likely causing the drops?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Juniper Networks. “JN0-336” is a trademark of its owner, used for identification only.