Practice Free JN0-232 Exam Online Questions
Which statement is correct about security policies?
- A . Security policies are evaluated before screen in first path processing.
- B . Zone-based security policies reference both source and destination zones.
- C . Security policies are evaluated in both first path and fast path processing.
- D . Zone-based security policies only apply to intra-zone traffic.
In which order does Junos OS process the various forms of NAT?
- A . destination NAT, source NAT, static NAT
- B . static NAT, destination NAT, source NAT
- C . source NAT, static NAT, destination NAT
- D . source NAT, destination NAT, static NAT
Referring to the exhibit, which two statements are correct? (Choose two.)

- A . This security policy is a zone-based security policy.
- B . This security policy uses a non-default inactivity timeout.
- C . This security policy permits HTTPS traffic.
- D . This security policy is the second security policy in the list.
Your company is acquiring a smaller company that uses the same private address range that your company currently uses in its North America division. You have a limited number of public IP addresses to use for the acquisition. You want to allow the new acquisition’s users to connect to the existing services in North America.
Which two features would you enable on your SRX Series Firewall to accomplish this task? (Choose two.)
- A . IDP
- B . BGP
- C . NAT
- D . PAT
When traffic enters an interface, which two results does a route lookup determine? (Choose two.)
- A . egress interface
- B . egress security zone
- C . ingress interface
- D . DNS name
You want to verify the effectiveness of Web filtering on the SRX Series Firewall.
How would you accomplish this task?
- A . by examining the content filtering policies
- B . by checking the file extensions of blocked content
- C . by installing a local NGWF server
- D . by attempting to access permitted or blocked URLs
Which two statements about global security policies are correct? (Choose two.)
- A . Global policies are processed before zone-based security policies.
- B . The from-zone and to-zone contexts are not required for a global security policy.
- C . Global security policies require specific zone contexts.
- D . You can use both zone-based security policies and global security policies at the same time.
Which statement is correct about capturing transit packets on an SRX Series Firewall?
- A . You can capture transit packets on the egress interface using a firewall filter.
- B . You can capture transit packets by using a firewall filter on the loopback interlace.
- C . You can capture transit packets by using the tcpdump utility in the shell.
- D . You can capture transit packets using sampling and port mirroring.
On the SRX Series Firewalls, which type of NAT is bi-directional?
- A . source NAT without PAT
- B . static NAT
- C . source NAT
- D . destination NAT
Which type of policy is shown in the exhibit?

- A . default policy
- B . intra-zone policy
- C . inter-zone policy
- D . global policy
