[Sep-2022] Get 100% Real JN0-349 Exam Questions, Accurate & Verified ITexamReview Dumps in the Real Exam! [Q15-Q39]

Share

[Sep-2022] Get 100% Real JN0-349 Exam Questions, Accurate & Verified ITexamReview Dumps in the Real Exam!

Pass Your JNCIS-ENT Exams Fast. All Top JN0-349 Exam Questions Are Covered.


Juniper JN0-349 Exam Topics:

SectionObjectives
Layer 2 SecurityIdentify the concepts, benefits or operation of various Layer 2 protection or security features
  • BPDU, loop or root protection
  • Port security, including MAC limiting, DHCP snooping, Dynamic ARP inspection (DAI) or IP source guard
  • MACsec
  • Storm control

Identify the concepts, benefits or operation of Layer 2 firewall filters

  • Filter types
  • Processing order
  • Match criteria and actions

Demonstrate knowledge how to configure, monitor, or troubleshoot Layer 2 security

  • Protection
  • Port security
  • Storm control
  • Firewall filter configuration and application
High AvailabilityIdentify the concepts, benefits, applications or requirements for high availability in a Junos OS environment
  • Link aggregation groups (LAG)
  • Redundant trunk groups (RTG)
  • Virtual Chassis
  • Graceful restart (GR)
  • Graceful Routing Engine switchover (GRES)
  • Nonstop active routing (NSR)
  • Nonstop bridging (NSB)
  • Bidirectional Forwarding Detection (BFD)
  • Virtual Router Redundancy Protocol (VRRP)
  • Unified In-Service Software Upgrade (ISSU)

Demonstrate knowledge of how to configure, monitor, or troubleshoot high availability components

  • LAG and RTG
  • Virtual Chassis
  • GR, GRES, NSB, and NSR
  • VRRP
  • ISSU
  • Troubleshooting tools (e.g., trace options, show commands, logging)
IS-ISDescribe the concepts, operation or functionality of IS-IS
  • Link-state database
  • IS-IS PDUs
  • TLVs
  • Adjacencies and neighbors
  • Levels and areas
  • Designated intermediate system (DIS)
  • Metrics

Demonstrate knowledge of how to configure, monitor or troubleshoot IS-IS

  • Levels, interfaces and adjacencies
  • Additional basic options
  • Routing policy application
  • Troubleshooting tools (e.g., ping, traceroute, trace options, show commands, logging)
TunnelsIdentify the concepts, requirements or functionality of IP tunneling
  • Tunneling applications and considerations
  • GRE
  • IP-IP

Demonstrate knowledge of how to configure, monitor or troubleshoot IP tunnels

  • GRE
  • IP-IP
  • Troubleshooting tools (e.g., ping, traceroute, trace options, show commands, logging)
BGPDescribe the concepts, operation or functionality of BGP
  • BGP basic operation
  • BGP message types
  • Attributes
  • Route/path selection process
  • IBGP and EBGP functionality and interaction

Demonstrate knowledge of how to configure, monitor, or troubleshoot BGP

  • Groups and peers
  • Additional basic options
  • Routing policy application
  • Troubleshooting tools (e.g., ping, traceroute, trace options, show commands, logging)
Layer 2 Switching or VLANsIdentify the concepts, operation, or functionality of Layer 2 switching for the Junos OS
  • Bridging components
  • Frame processing

Describe the concepts, benefits, or functionality of VLANs

  • Ports
  • Tagging
  • Native VLANs and voice VLANs
  • Inter-VLAN routing

Demonstrate knowledge how to configure, monitor or troubleshoot Layer 2 switching or VLANs

  • Interfaces and ports
  • VLANs
  • Inter-VLAN Routing

 

NEW QUESTION 15
What are two advantages of a point-to-point OSPF adjacency? (Choose two.)

  • A. There are quicker neighbor establishment.
  • B. Only a DR is elected.
  • C. No Type 2 LSAs are generated.
  • D. No type 1 LSAs are generated.

Answer: A,C

 

NEW QUESTION 16
Which statement is true about IP-IP tunnels?

  • A. The time-to-live value of the original packet Is decremented.
  • B. The packet header is replaced before entering the tunnel
  • C. IP-IP tunnels are protocol agnostic.
  • D. The packet is encapsulated unchanged before entering the tunnel

Answer: D

 

NEW QUESTION 17
Click the Exhibit button. Your router is configured to peer with your ISP's router using BGP. You
can only control your BGP configuration.
Which address families are negotiated between the two BGP peers shown in the exhibit?

  • A. inet-unicast
  • B. inet-unicast inet-vpn-unicast 12vpn-signaling
  • C. inet-unicast inet-vpn-unicast 12vpn
  • D. inet-vpn-unicast

Answer: A

 

NEW QUESTION 18
You were provided a network diagram that told you to number your network from the
191.255.0.0/16 space. OSPF is enabled and adjacencies are up, but no routers are learning any
routes. What can explain this?

  • A. You need to enable OSPF on the lo0 interface to provide a route to the RID of each router in the network
  • B. You need to modify the martian table with a 191.255.0.0/16 accept statement
  • C. The default OSPF import policy rejects all OSPF routes, so you need to apply import policy
  • D. The default OSPF export policies advertise nothing, so you need to apply export policy

Answer: B

 

NEW QUESTION 19
Which OSPF packet type is sent when an OSPF router detects its database is state?

  • A. Link-state request
  • B. Database description
  • C. Link-state acknowledgment
  • D. Hello

Answer: A

 

NEW QUESTION 20
What types of authentication are supported in Junos for OSPF?

  • A. MD5 checksum
  • B. Simple password
  • C. All of the above
  • D. Hitless key chain of MD5 keys/checksums

Answer: C

 

NEW QUESTION 21
Exhibit.

Click the Exhibit button Referring to the exhibit, what will be the IS-IS adjacency result of the configurations?

  • A. A level 2 IS4S adjacency will form
  • B. A level 1 IS-IS adjacency will form
  • C. A level 1 and level 2 IS-IS adjacency will form
  • D. No IS-IS adjacencies will form

Answer: D

 

NEW QUESTION 22
Which two characteristics are true for EBGP peerings? (Choose two.)

  • A. EBGP peers can be connected over a multihop connection.
  • B. EBGP connect peer devices in two different autonomous systems.
  • C. EBGP peers must be directly connected.
  • D. EBGP connects peer device in the same autonomous system.

Answer: A,B

 

NEW QUESTION 23
Click the Exhibit button.

Referring to the output shown in the exhibit, which statement is correct?

  • A. 11.0.0.102/32 is being per-flow load-balanced
  • B. 11.0.0.102/32 is being per-packet load-balanced
  • C. 11.0.0.108/32 is being per-flow load-balanced
  • D. 11.0.0.108/32 is being per-packet load-balanced

Answer: D

 

NEW QUESTION 24
Click the Exhibit button.

Referring to the exhibit, Router-1 is attempting to form an EBGP session with Router-2. However, BGP routes are never exchanged between Router-1 and Router-2.
What is causing the problem?

  • A. The EBGP session is configured to use the wrong AS
  • B. The TCP-MSS value is set too low
  • C. The EXT group is not configured as an external type BGP peering session
  • D. The keep all statement is preventing the session from establishing

Answer: A

 

NEW QUESTION 25
Click the Exhibit button.

Your switches are managed using Junos Space Network Director. You want to secure the switches using a Network Director filter profile. A filter profile containing one term shown in the exhibit is deployed to ports on managed devices.
Which traffic will be accepted by the filter?

  • A. Traffic containing a destination MAC of 02:85:05:00:00:00/24 will be accepted.
  • B. Traffic containing a source MAC of 02:85:05:00:00:00/24 will be accepted.
  • C. All traffic will be accepted.
  • D. No traffic will be accepted.

Answer: B

 

NEW QUESTION 26
Click the Exhibit button.

Your router is configured to peer with your ISP's router using BGP. You can only control your BGP configuration.
Which address families are negotiated between the two BGP peers shown in the exhibit?

  • A. inet-unicast
  • B. inet-unicast inet-vpn-unicast 12vpn-signaling
  • C. inet-unicast inet-vpn-unicast 12vpn
  • D. inet-vpn-unicast

Answer: A

 

NEW QUESTION 27
You are enabling dynamic ARP inspection on an EX4300 switch Which service is enabled by default in this scenario?

  • A. IP Source Guard
  • B. MAC limiting
  • C. DHCP snooping
  • D. persistent MAC learning

Answer: C

 

NEW QUESTION 28
Which statement is true when using LAGs with an EX4300?

  • A. Member links must be contiguous.
  • B. Half duplex is supported on the LAG.
  • C. Speeds on member links can differ.
  • D. You can have up to 16 member links per LAG.

Answer: D

 

NEW QUESTION 29
Which two statement are correct? (Choose two.)

  • A. Router a sends routers learned from Router E to Router B, Router C, and Router D.
  • B. Router A sends routers learned from Router D to Router B and router C.
  • C. Router A does not send routes learned from Router D to Router B and Router C.
  • D. Router A does not send routers learned from Router E to Route B, Router C, and Router D.

Answer: A,C

 

NEW QUESTION 30
Which two routers belong to the 172.16.0.0/22 aggregate route? (Choose two.)

  • A. 172.16.0.0/24
  • B. 172.16.4.0/24
  • C. 172.16.5.0/24
  • D. 172.16.3.0/24

Answer: A,D

 

NEW QUESTION 31
You manage the layer 2 network shown in the exhibit, You experience a failure on the ge-0/0/0
link between Swicth-1 and Switch-2.
Which statement is correct about expected behavior?

  • A. Swicth-2's ge0/0/2 port role and state will transition to root and forwarding.
  • B. Switch-2's ge0/0/2 port role and state will remain as designated and forwarding.
  • C. Switch-2 will remove itself from the RSTP topology.
  • D. Switch-2 will become the root bridge for a separate RSTP topology.

Answer: A

 

NEW QUESTION 32
Which statement is true about IP-IP tunnels?

  • A. Intermediate devices must have a route to both the tunnel source address and the tunnel
    destination address.
  • B. Intermediate devices must have a route to the tunnel source address but do not require a route to the tunnel destination address
  • C. Intermediate devices must have a route to the tunnel destination address but do not require a
    route to the tunnel source address.
  • D. Intermediate devices must have a route to the destination address of the traffic being tunneled.

Answer: A

Explanation:
Routing is based on destination, not source; Only the route for the destination tunnel endpoint is
necessary for each packet.
If you're thinking about a lab environment with a single intermediary device, it's incidental that it
will have a route for both tunnel endpoint IPs. Only the relevant destination will be considered
with each packet it processes.

 

NEW QUESTION 33
Click the Exhibit button. A recent security audit indicates that peer-to-peer applications are
allowed on the guest VLAN and employees may have been using the guest VLAN for this
purpose.
You deploy the configuration shown in the exhibit, but it does not stop the peer-to-peer traffic.

In this scenario, what must you do to implement the security policy?

  • A. Implement 802.1X on the guest VLAN
  • B. Deploy storm control to block unknown unicast traffic
  • C. Attach the filter to the VLAN
  • D. Use persistent MAC learning

Answer: A

 

NEW QUESTION 34
Which static route next-hop value indicates that the packet will be silently dropped?

  • A. next-table
  • B. discard
  • C. resolve
  • D. reject

Answer: B

 

NEW QUESTION 35
Click the Exhibit button.

You manage the Layer 2 network shown in the exhibit. You experience a failure on the ge-0/0/0 link between Switch-1 and Switch-2.
Which statement is correct about the expected behavior?

  • A. Switch-2 will remove itself from the RSTP topology
  • B. Switch-2's ge-0/0/2 port role and state will transition to root and forwarding
  • C. Switch-2's ge-0/0/2 port role and state will remain as designated and forwarding
  • D. Switch-2 will become the root bridge for a separate RSTP topology

Answer: B

 

NEW QUESTION 36
Click the Exhibit button.

Referring to the exhibit, what will be the IS-IS adjacency result of the configurations?

  • A. A level 2 IS-IS adjacency will form.
  • B. No IS-IS adjacencies will form.
  • C. A level 1 and level 2 IS-IS adjacency will form.
  • D. A level 1 IS-IS adjacency will form.

Answer: B

 

NEW QUESTION 37
Click the Exhibit button.

A recent security audit indicates that peer-to-peer applications are allowed on the guest VLAN and employees may have been using the guest VLAN for this purpose. You deploy the configuration shown in the exhibit, but it does not stop the peer-to-peer traffic.
In this scenario, what must you do to implement the security policy?

  • A. Implement 802.1X on the guest VLAN
  • B. Deploy storm control to block unknown unicast traffic
  • C. Use persistent MAC learning
  • D. Attach the filter to the VLAN

Answer: D

 

NEW QUESTION 38
When electing a DIS in an IS-IS network, what is used to break a priority tie?

  • A. highest MAC address
  • B. highest router ID
  • C. lowest MAC address
  • D. lowest router ID

Answer: A

 

NEW QUESTION 39
......

Penetration testers simulate JN0-349 exam: https://www.itexamreview.com/JN0-349-exam-dumps.html

Free Test Engine For Enterprise Routing and Switching, Specialist (JNCIS-ENT) Certification Exams: https://drive.google.com/open?id=10wMvm6bLIgXd87IjMOPUUn8HZ2dc8a4T