SEC,Specialist(JNCIS-SEC)
JN0-331 Examination content list:
Introduction to SRX-series
Zones
SCREEN Options
Security Policies
NAT
IPSec VPNs
HA Clustering
Intro to IDP
Firewall User Authentication
Introduction to SRX-series
Compare and contrast Junos OS for security platforms and traditional routing
Describe major components of Junos OS for Security Platforms
Contrast session and flow
Compare and contrast packet flow of the first and consecutive packets of a flow
Name elements used in session recognition.
Describe session management process
Zones
Describe the purpose of a zone
Identify the relationship between zones assignments, interfaces, and routing instances
Define zone types supported by Junos OS
Compare and contrast security and functional zones
List and identify the steps necessary to configure zones
Compare and contrast device's behavior resulting from various configurations, when handling transit packets and packets destined to various interfaces of the device.
Demonstrate understanding of configuration precedence significance of various zone knobs.
Describe the traffic behavior based on a sample zone configuration
SCREEN Options
Identify advantages of using SCREENs
Compare and contrast reconnaissance, DoS, and suspicious packets attacks
Identify best practices to be used when implementing SCREENs
Configure SCREENs with necessary parameters based on threats
Security Policies
Identify the purpose of a security policy
Define the purpose of security policy configuration components
Configure appropriate Junos Enhanced Services security policies actions
Describe the purpose of an address book
Based on policy configurations, compare and contrast scheduled and non-scheduled policies
Based on policy configurations, describe the impact of security policy changes on session in progress
Identify and explain the importance of policy ordering in the configuration file
NAT
Describe the purpose of NAT
Describe Junos OS support of NAT and different NAT types
Describe Junos OS NAT operation
Identify NAT scenarios requiring Proxy-ARP configurations
Identify types of NAT used, based on various NAT configurations
Configure NAT
IPSec VPNs
Correlate between major security concerns and solutions
Compare and contrast symmetric and asymmetric key encryption
Describe the DH key exchange process
List methods for IPSec VPN setup
List specifics of Security Associations
Describe the IKE phases functionality and purpose
Compare and contrast policy-based and route-based IPSec implementations
Configure route-based and policy-based IPSec VPNs
HA Clustering
Describe chassis cluster functionality
Identify chassis cluster interfaces and their functions
Configure redundany groups
Intro to IDP
Describe the purpose of IDP
Identify the components of Junos OS IDP
Identify IDP policy match conditions.
Identify IDP policy actions
Describe the procedure for updating the attack database.
Describe the procedure for implementing an IDP template policy
Firewall User Authentication
Compare and contrast types of firewall user authentication.
Describe the purpose of firewall user authentication
Configure access profiles.
Configure client groups.
Describe the behavior when using external authentication servers
Describe methods for monitoring firewall user authentication.
Examsoon JN0-331 Study Materials and JN0-331 Certification Training Tools are prepared by Experts and Certified Professionals who have years of experience in preparing Certification Training Material for Professionals and Students. Although there are other online JN0-331 Certification Training Tools in the market yet our esteemed clients like you prefer Examsoon JN0-331 Certification Training Tools because they are updated regularly and always offer an accurate JN0-331 Certification Exam Preparation。
Examsoon offers updates to its JN0-331 Certification Training Tools absolutely free of charge. For the duration of your Examsoon JN0-331 Preparation tool Subscription, you will get the latest and updated JN0-331 Training Tools from Examsoon.
With Examsoon JN0-331, your ultimate success in Juniper Networks JN0-331 Certification Exam is no more a dream. Examsoon guarantees your passing Juniper Networks JN0-331 Certification Exam.
In Examsoon you can find more IT certification: HP0-A02 exam, HP0-D04 exam, HP0-D05 exam and HP0-D06 exam and so on.
0 comments:
Post a Comment