
Juniper NetworksCertified Specialist, Security (JNCIS-SEC)
Domain 2Objective 1
IPsec Tunnel Establishment JN0-336 Practice Questions (Page 6)
Part of the IPsec VPN domain, which makes up ~16% of our current practice bank. Juniper Networks does not publish an official question count, but from its 90-minute exam (~35–60 total, ~6–10 in this domain), expect 1–2 from this objective — we provide 28 practice questions to prepare you well beyond it. (estimate)
28questions here
6free pages
9concepts
Questions 26–28
- 26
A network engineer is troubleshooting an IPsec VPN that fails to rekey. The tunnel establishes successfully, but when the Phase 2 lifetime expires, the rekey fails. The configuration uses PFS with DH group 14. The engineer checks the logs and sees that the rekey is failing during the Quick Mode exchange. What is the most likely cause?
Select an answer first - 27
During IPsec troubleshooting, you see an authentication failure in IKE Phase 1. What is a common cause?
Select an answer first - 28
What is the primary purpose of Perfect Forward Secrecy (PFS) in IPsec?
Select an answer first
Finished these 3 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to JN0-336
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Juniper Networks. “JN0-336” is a trademark of its owner, used for identification only.