
Juniper NetworksCertified Specialist, Security (JNCIS-SEC)
Domain 2Objective 1
IPsec Tunnel Establishment JN0-336 Practice Questions (Page 2)
Part of the IPsec VPN domain, which makes up ~16% of our current practice bank. Juniper Networks does not publish an official question count, but from its 90-minute exam (~35–60 total, ~6–10 in this domain), expect 1–2 from this objective — we provide 28 practice questions to prepare you well beyond it. (estimate)
28questions here
6free pages
9concepts
Questions 6–10
- 6
A junior administrator is troubleshooting an IPsec VPN that is not passing traffic. The administrator sees that the IKE Phase 1 is complete, but the tunnel is not established. What should the administrator check next?
Select an answer first - 7
A site-to-site IPsec tunnel between two Juniper SRX devices fails to establish. The IKE Phase 1 completes successfully, but Phase 2 fails. The configuration on both devices uses the same encryption and integrity algorithms. What is the most likely cause?
Select an answer first - 8
In IPsec, which phase is responsible for negotiating the security associations that directly protect user data traffic?
Select an answer first - 9
What is the final result of a successful IKE Phase 1 negotiation?
Select an answer first - 10
During IPsec tunnel establishment, what is the primary purpose of IKE Phase 1?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Juniper Networks. “JN0-336” is a trademark of its owner, used for identification only.