Tuesday, April 18, 2017

C2070-587 IBM FileNet P8 V5.1

Test information:
Number of questions: 63
Time allowed in minutes: 120
Required passing score: 65%
Languages: English

Related certifications:
IBM Certified Deployment Professional - FileNet P8 V5.1

The test contains five sections totalling 63 multiple-choice questions. The percentages after each section title reflect the approximate distribution of the total question set across the sections.

Section 1 - Planning, Preparation and Security (27%)
Identify requirements for high availability, architecture and supported environments
Demonstrate knowledge of defining appropriate operating system accounts and privileges
Demonstrate knowledge of defining LDAP user/group roles for use in IBM FileNet P8
Show knowledge of operating system and network configuration pre-requisites for IBM FileNet P8
Demonstrate knowledge of creating databases
Demonstrate knowledge of file systems requirements
Demonstrate knowledge of supported fixed content devices
Demonstrate knowledge of application server configuration requirements
Identify baseline performance tuning parameters

Section 2 - Installation and Upgrade (28%)
Demonstrate knowledge of installation pre-requisites
Demonstrate knowledge and understanding of the Composite Platform Installation Toolkit (CPIT)
Demonstrate an understanding of installing a distributed system:
Demonstrate knowledge of installation using GUI and Silent modes
Identify the sequence of P8 component installation
Identify specific high availability installation methods
Demonstrate an understanding of P8 Engine client files
Demonstrate knowledge of the Configuration Manager tool
Identify and demonstrate the differences in upgrades processes and procedures between IBM FileNet P8 V3.5.2 and V4.x to IBM FileNet P8 V5.1

Section 3 - Configuration (19%)
Identify the proper procedures for creating and configuring object stores, database storage areas, filestores and fixed content devices
Demonstrate knowledge of the configuration and startup tasks
Identify knowledge of site preferences and the use of configuration tools
Explain the Legacy Content Search Engine to Content Search Services (CSS) migration
Demonstrate knowledge of Content Federation Services (CFS)
Demonstrate knowledge of Secure Socket Layer (SSL) configuration

Section 4 - System Validation (13%)
Demonstrate ability to test IBM FileNet P8 engine health
Demonstrate the ability to validate basic IBM FileNet P8 system interaction and functionality
Explain High Availability (HA) testing methodology

Section 5 - Troubleshooting (13%)
Demonstrate knowledge of using IBM FileNet P8 component trace logging
Demonstrate knowledge of using log4j and application server logging
Demonstrate knowledge of evaluating and applying system fixpacks
Demonstrate knowledge of operating system event logs

IBM Certified Deployment Professional - FileNet P8 V5.1

Job Role Description / Target Audience
This intermediate level certification is intended for deployment professionals that perform planning, installation, upgrade, configuration, configuration documentation, security, baseline performance tuning, and troubleshooting on IBM FileNet P8 V5.1 systems.

To attain the IBM Certified Deployment Professional - IBM FileNet P8 V5.1 certification, candidates must pass 1 test. To gain additional knowledge and skills, and prepare for the tests based on the job roles and test objectives, click on the link for Test 000-587 below.

Recommended Prerequisite Skills
Before preparing for this certification, basic understanding of the following is recommended and assumed:

Operating systems: Microsoft Windows, UNIX (HPUX, AIX, Solaris), Linux (Red Hat, SUSE, zLinux).
Databases: DB2, SQL Server, Oracle.
Application servers: WebSphere, WebLogic, JBoss.
Lightweight Directory Access Protocol (LDAP) servers: Tivoli, Active Directory.
High Availability (HA): load balancing, farming, and clustering technologies.
QUESTION 3
A P8 administrator for a company just finished deploying IBM FileNet P8 V5.1. The administrator
wants to use FileNet Enterprise Manager (FEM) to logon to P8 to perform further tasks. An error
occurs immediately upon logging on to P8. The administrator would like to use log4j to
troubleshoot the issue. Which sample log4j file should the administrator use?

A. \FileNet\ContentEngine\samples\log4j.xml.server
B. \FileNet\ContentEngine\samples\log4j.properties.client
C. \FileNet\ContentEngine\config\samples\log4j.xml.server
D. \FileNet\ContentEngine\config\samples\log4j.properties.client

Answer: C

Explanation:


QUESTION 4
An upgrade to a basic IBM FileNet P8 V5.1 BPM installation from IBM FileNet P8 V4.0 is being
planned. To minimize the downtime the customer wants to do staged upgrades. The Application
Engine is at V4.0.2 with the latest fix pack already installed. What is the best way to determine the
impact of installing fix packs in planning for this scenario?

A. No extra planning is necessary as you always install the latest fix packs during any upgrade.
B. Use the IBM FileNet P8 V5.X Fix Pack Compatibility Matrix to determine which fix packs are
compatible.
C. Go to Fix Central, review the fix pack Readme files for the new version applicable fix packs,
and only include those that are marked"REQUIRED".
D. Go to Fix Central, review all the latest component fix pack Readme files for dependencies, and
exclude them if the fixes do not relate to thesystem.

Answer: B

Explanation:


QUESTION 5
A P8 administrator fails to logon to an IBM FileNet P8 V5.1 system when using Workplace XT.
FileNet Enterprise Manager (FEM) is able to connect to P8 without issues. The administrator
would like to use log4j with Workplace XT to further troubleshoot the issue. In which directory
should the log4j file be placed so that logging is enabled for Workplace XT?

A. /FileNet/Config/AE
B. /FileNet/Config/WebClient
C. /FileNet/CEClient/config/samples
D. /FileNet/AE/CE_API/config/samples

Answer: B

Explanation:


QUESTION 6
A consultant has installed an IBM FileNet Process Engine client fix pack on a 3 node, horizontally
load balanced Application Engine installation. After an interactive installation, some users are
seeing the same problem intermittently, rather than constantly, as it was before the fix pack was
installed. What could still be the issue?

A. The fix pack did not correct the problem.
B. The fix pack install script did not deploy the war file properly.
C. The fix pack installer did not delete an application server temp directory.
D. The fix pack install script did not delete an Application Server temp directory.

Answer: C

Explanation:




Thursday, March 23, 2017

C2040-988 Administering IBM Lotus Sametime 8.5

Test information:
Number of questions: 66
Time allowed in minutes: 90
Required passing score: 75%
Test languages: English

IBM Certified System Administrator - IBM Lotus Sametime 8.5

Job Role Description / Target Audience
This intermediate level certification is intended for system administrators who perform the installation, configuration and day-to-day administration tasks associated with ensuring the smooth and efficient operation of an IBM Lotus Sametime 8.5 environment. This includes tasks associated with:

- Understanding the Architecture/Planning and Preparing the Environment
- Installing and Configuring
- Managing and Maintaining the Environment
- Managing Security
- Working with Policies

This administrator is generally self-sufficient and is able to perform most of the tasks involved in the role with limited assistance from peers, product documentation and vendor support services.

To attain the IBM Certified System Administrator - IBM Lotus Sametime 8.5, candidates must possess the skills outlined under Recommended Prerequisite Skills below and pass1 test. To gain additional knowledge and skills, and prepare for the tests based on the job role and test objectives, take the link to the test below, and refer to the Test Preparation tab.

Recommended Prerequisite Skills
Knowledge and skills one needs to possess before beginning to prepare for this job role certification:

- Basic IBM Lotus Sametime administration skills
- Hands on experience with Lotus Sametime 8.5
- Troubleshooting and problem determination skills

Exam 988: Administering IBM Lotus Sametime 8.5

Description:
Covers Lotus Sametime 8.5 system administration material as it relates to these competency areas:
Architecture
Install and Configure
Manage and Maintain
Managing Security
Working with Policies

Architecture
Planning/preparing the environment
Clustering Sametime servers for high availability
Network planning considerations
Planning a Lotus Sametime community server install
Planning a Lotus Sametime Media Manager Install
Planning deployment topologies
Planning for an LDAP Directory
Ports used by Lotus Sametime components
Supporting IPv6 addressing in a Lotus Sametime deployment
Understanding database concepts-preparing the database environment
WebSphere Application Server considerations

Install and Configure
Configuring and managing the Sametime Connect Client
Configuring Sametime Connect Client SPNEGO- Authentication
Configuring Sametime Connect Client\Provisioning
Configuring Sametime Connect Client\Secure Site Provisioning
Configuring Sametime Connect Client\Silent Installer
Configuring Directory Services
Configuring Directory Services\Domino Directory
Configuring Directory Services\LDAP Directory
Configuring file transfers
Configuring Sametime 8.5 proxy server
Configuring Sametime clusters
Configuring Sametime connectivity
Configuring Sametime logging
Configuring Sametime Media Server
Configuring Sametime Mobile
Configuring the Lotus Notes embedded Client
Configuring the Sametime 8.5 meeting server
Configuring Sametime meeting server conversion services
Configuring the Sametime Community server
Configuring the Sametime Community services multiplexer (MUX)
Configuring the Sametime system console
Configuring Tunneling
Configuring usage limits
Deploying MS Office integration features
Deploying Sametime across multiple domains
Deploying Sametime Connect via network deployment
Deploying Sametime Plug-ins
Implementing Business Cards
Implementing Community Services Clustering
Implementing SSL
Installing/configuring DB2
Understanding the capabilities of the Sametime Gateway

Manage and Maintain
Administering a Lotus Sametime Community Server
Administering a Llotus Sametime Media Manager
Administering a Lotus Sametime Meeting Server
Administering a Lotus Sametime Proxy server
Administering a Lotus Sametime System Console
Managing Anonymous Users Naming
Managing Recorded Meetings
Modifying Audio/Video Services
Modifying Community Services Clustering
Monitoring the Sametime Servers
Troubleshooting a Lotus Sametime Community Server
Troubleshooting a Lotus Sametime Connect Client
Troubleshooting a Lotus Sametime Media Server
Troubleshooting a Lotus Sametime Meeting Server
Troubleshooting a Lotus Sametime System Console
Troubleshooting Online Meetings
Tuning a WebSphere proxy server
Tuning Lotus Sametime Media Manager
Tuning Lotus Sametime Community Server
Understanding Breakout Sessions
Understanding Location Awareness
Understanding Polling in Meetings
Understanding Telephony in Sametime - click to call
Upgrading Sametime Clients
Utilizing the Name Conversion Utility
Utilizing the Sametime Administration Tool

Managing Security
Configuring Single Sign-on
Controlling user Sametime server access
Managing administrator access and roles
Managing security associated with the community server
Managing security associated with the Media Manager
Managing security associated with the meeting server
Modifying Sametime security
Understanding user policies

Working with Policies
Configuring the Sametime Policy Service
Instant messaging policies
Managing users with policies
Assigning policies to users and groups
Changing a user's policy's weight
Creating new user policies
Finding policies associated with a user
Media manager policies
Meeting policies
Upgrading to 8.5 and policies
 
QUESTION 1
You are planning to upgrade your Sametime community server to version 8.5 but do not want to
use the Sametime System Console to upgrade your server. Which of the following is correct?

A. You can manually run a guided activity without the System Console.
B. The Sametime System Console is required for you to upgrade your Sametime Community
server to 8.5.
C. You can configure the Lotus Sametime Community Server to directly access the Lotus Domino
Directory if you do not plan to use the Lotus Sametime System Console.
D. If you are not previously using LDAP for Sametime authentication, it is a required you use
LDAP authentication to authenticate to a Sametime 8.5 Community server.

Answer: C

Explanation:

QUESTION 2
Carol is planning to deploy Sametime 8.5 in her company and is looking to create a vertical cluster
of the Sametime Meeting Server, the Sametime Media Manager and the Sametime Proxy Server.
How many nodes does she need to deploy?

A. 2 nodes
B. 3 nodes
C. 4 nodes
D. 6 nodes

Answer: B

Explanation:

QUESTION 3
In Sametime 8.5, which best describes where can you configure the Sametime Community
Clusters documents?

A. In the stconfig.nsf
B. In the sametime.ini
C. In the Sametime System Console
D. In the stconfig.nsf and Sametime System Console

Answer: A

Explanation:

QUESTION 4
Which of the following is NOT required in an LDAP directory used for Sametime?

A. the base entries do not overlap
B. SSL is enabled on the LDAP server
C. each entry has a uniquely defined DN
D. the LDAP directory contains the mail attribute

Answer: B

Explanation:

QUESTION 5
Which one of the following components is NOT part of the Sametime Media Manager

A. Packet Switcher
B. Conference Manager
C. Sametime Reflector
D. SIP Proxy/Registrar

Answer: C

Explanation:

Saturday, February 4, 2017

C2020-615 IBM Cognos Real-time Monitoring Developer

Test information:
Number of questions: 60
Time allowed in minutes: 90
Required passing score: 65%
Languages: English

Related certifications:
IBM Certified Developer - Cognos Real-time Monitoring
IBM Certified Solution Expert - Cognos BI

If your job role includes configuring, modeling and maintaining the IBM Cognos Real-time Monitoring applications, then you may consider adding this certification to your professional portfolio.

The IBM Cognos Financial Statement Developer exam covers key concepts, technologies, and functionality of Real-time Monitoring. In preparation for an exam, we recommend a combination of training and hands-on experience, and a detailed review of product documentation.

Architecture (18%)
Demonstrate knowledge of architecture concepts
Demonstrate knowledge of integration with Cognos 10
Demonstrate knowledge of Streaming Data Store concepts
Describe data acquisition concepts
Describe Alerting Engine concepts
Demonstrate knowledge of various system settings

Business Requirements and Key Performance Indicators (10%)
Demonstrate appropriate use-cases for the solution
Demonstrate appropriate KPIs for the solution

Data Modeling (30%)
Demonstrate knowledge of Agents
Describe Data Streams concepts
Demonstrate knowledge of Lookup Tables
Demonstrate knowledge of View concepts
Demonstrate knowledge of View implementation
Demonstrate knowledge of Cubes

Security and Authentication Providers (9%)
Identify security model concepts
Demonstrate knowledge of Authentication Providers

Business Rules and Exception Management (14%)
Demonstrate basic knowledge of the exception management architecture
Demonstrate knowledge of exception management advanced capabilities
Demonstrate knowledge of alert subscription
Demonstrate knowledge of augmenting alerts with data

Dashboard (12%)
Demonstrate knowledge of Dashboard and Dashboard Object concepts
Demonstrate knowledge of Watchpoints

Business Insight (7%)
Demonstrate knowledge of using RTM objects
C2020-615 IBM Cognos Real-time Monitoring Developer
IBM Certified Developer - Cognos Real-time Monitoring

Job Role Description / Target Audience
The Real-time Monitoring developer is responsible for configuring, modeling and maintaining IBM Cognos Real-time Monitoring applications. This individual is a new to Real-time Monitoring and will be able to participate as an effective team member.

To achieve the IBM Certified Developer - Cognos Real-time Monitoring certification, candidates must possess the skills identified under Recommended Prerequisite Skills, if any, and pass one (1) exam.

Click the test link below to see the overview, objectives, and test preparation recommendations

Recommended Prerequisite Skills
Prior to your preparation for this associate-level certification, the following knowledge and skills are recommended and assumed:

Experience in database design
Working knowledge of SQL
Experience deploying software application infrastructure (databases, networking)
Experience in database performance and tuning
Knowledge of and experience in deploying application servers and Web Servers

Requirements
This certification requires 1 test(s).

Test(s) required:
Test C2020-615 - IBM Cognos Real-time Monitoring Developer

IBM Certified Solution Expert - Cognos BI

Job Role Description / Target Audience
The BI Solution Expert (Professional) is responsible to analyze, plan, design, deploy, and operate Cognos applications using an appropriate methodology and development approach.

To achieve the IBM Certified Solution Expert - Cognos BI certification, candidates must possess the skills identified under Recommended Prerequisite Skills, if any, and pass four (4) exams.

Click the test link below to see the overview, objectives, and test preparation recommendations.

Recommended Prerequisite Skills
Prior to your preparation for this professional-level certification, the following knowledge and skills are recommended and assumed:

Knowledge of the Cognos Solutions Implementation Methodology
Technical proficiency in features of the Cognos Managers and Studios

QUESTION 1
Which three settings are required to synchronize the user and/or roles from an external directory
server, like LDAP, to Real-time Monitoring? (Choose three.)

A. LDAP User Primary Email
B. LDAP User Base DN
C. LDAP Port
D. LDAP Synchronization User DN
E. LDAP Principal DN Prefix

Answer: B,C,D

Explanation:


QUESTION 2
What contains the minimum required access permissions to create a cube?

A. CREATE for Views, Cubes, and Dimensions, CREATE for Lookup Tables and Data Streams,
and READ-ONLY for an existing View
B. CREATE for Views, Cubes, and Dimensions, CREATE for Lookup Tables and Data Streams,
and READ-ONLY for the dimensions to include in the cube
C. CREATE for Views, Cubes, and Dimensions, READ-ONLY for an existing View, and READONLY
for the dimensions to include in the cube
D. CREATE for Views, Cubes and Dimensions, and READ-ONLY for an existing View

Answer: C

Explanation:


QUESTION 3
When editing a user's Access Permissions, what is meant by the term Effective Permissions?

A. the greatest level of permission assigned by Role-Granted and User-Specific permissions
B. the user's permissions against the currently selected object
C. the lowest level of permission assigned by Role-Granted and User-Specific permissions
D. the permission implementation that most effectively secures your application

Answer: A

Explanation:



Wednesday, February 1, 2017

C2020-006 IBM Algo Credit Manager v5.3

Test information:
Number of questions: 71
Time allowed in minutes: 100
Required passing score: 63%
Languages: English

Related certifications:
IBM Certified Technical Associate - Algo Credit Manager v5.3

The IBM Certified Technical Associate for Algo Credit Manager (also known as an Integration Engineer) has fundamental knowledge of IBM Algo Credit Manager Foundation. The successful candidate is capable of planning, installing, configuring, integrating and migrating/loading data within an implementation project. This professional can perform basic troubleshooting and maintenance techniques, and is able to participate as an effective team member on implementation projects with minimal supervision.

ACM Architecture (10%)
Explain the ACM architecture
Explain the ACM services
Explain internal service integration
Explain service deployment options
Explain using risk calculations

Planning (10%)
Describe how to understand the customer non-functional requirements
Explain selecting a suitable deployment architecture
Describe how the major components are allocated
Describe the data sources
Describe using the compatibility report
Identify the purpose of the Standard Edition dataset

Installation (10%)
Identify deployment on Windows
Identify deployment on UNIX/LINUX
Describe creating the initial instance property file
Explain the common product environment variables
Explain using the JLIB environment
Describe web application deployment on WAS

Software Configuration (15%)
Explain the instance properties
Describe creating database schemas and initial configuration data
Describe setting up ACSWeb and basic user configuration
Describe assigning function permissions to users, roles, and groups
Describe assigning data access permissions to user groups
Describe configuring the ACM Superuser role
Describe using ACMWeb
Describe validating the installation by loading Standard Edition

System Integration (15%)
Identify how to implement batch jobs
Describe using the application interfaces
Describe integration with common security policy standards
Describe integration with messaging services
Describe integration with common monitoring and logging standards

Data Integration (20%)
Identify databox types
Describe how to use standard databox structures
Describe using actions supported by the databox format
Describe importing and exporting datasets
Describe deploying model changes
Describe how to load databoxes
Describe mapping between source and destination systems
Explain the ACM RESTful API

Troubleshooting (20%)
Describe logging capabilities
Describe monitoring capabilities
Describe JLIB command line processing
Describe how to apply a troubleshooting strategy
Describe how to validate an installation
Identify how to create a run book
Identify 3rd party patch levels
Identify system resources issues
Describe verifying the ACM engines

IBM Certified Technical Associate - Algo Credit Manager v5.3

Job Role Description / Target Audience
The IBM Certified Technical Associate for Algo Credit Manager (also known as an Integration Engineer) has fundamental knowledge of IBM Algo Credit Manager Foundation. The successful candidate is capable of planning, installing, configuring, integrating and migrating/loading data within an implementation project. This professional can perform basic troubleshooting and maintenance techniques, and is able to participate as an effective team member on implementation projects with minimal supervision.

Recommended Prerequisite Skills
Before preparing for this certification, the following skills are recommended and assumed (not tested) :
- Familiarity with credit lifecycle management
- Experience with IBM Installation Manager
- Basic understanding of middleware
- Basic understanding of application webservices deployment (WAS)
- Intermediate knowledge of UNIX and Linux
- Intermediate knowledge of UNIX scripting
- Basic understanding of XML
- Basic knowledge of Java Runtime
- Intermediate knowledge of relational database concepts and SQL (Oracle or DB2)

Requirements
This certification requires 1 test(s).

Click on the link(s) below to see test details, test objectives, suggested training and sample tests.
Test C2020-006 - IBM Algo Credit Manager v5.3

Saturday, January 21, 2017

700-260 Advanced Security Architecture for Account Manager


QUESTION: No: 1
Increased employee productivity, confidence in data confidentiality, and increased visibility are features
that demonstrate which Cisco business value?

A. Cost effectiveness
B. Protection
C. Control
D. Flexibility
E. Completeness

Answer: C


QUESTION: No: 2
Which licensing feature enables customers to better manage their software assets and optimize their IT
spending?

A. Cisco ONE
B. Smart Accounts
C. Enterprise License Agreements
D. License Bundling

Answer: B


QUESTION: No: 3
Which Cisco network security solution helps protect against threats by monitoring and responding to any
network anomalies, continually analyzing for potential threats and reacting to them in real time?

A. Cisco Security Manager
B. Cisco ASA Firewall Senrices
C. Cisco ASA Next-Generation Firewall Services
D. Cisco Next-Generation Intrusion Prevention System
E. Cisco Web Security Appliance
F. Cisco Email Security Appliance
G. Cisco Identity Services Engine
H. Cisco Site-to-Site VPN

Answer: D


QUESTION: No: 4
Which Cisco security technology delivers the best real-time threat intelligence?

A. Cisco Security Intelligence Operations
B. Cisco ASA Next-Generation Firewall Services
C. Cisco Identity Senrices Engine
D. Cisco Security Manager
E. Cisco TrustSec

Answer: A

Tuesday, January 3, 2017

JN0-102 Junos, Associate (JNCIA-Junos)

JNCIA-Junos Exam Objectives (Exam: JN0-102)

Networking Fundamentals
Identify the concepts and functionality of various fundamental elements of networking
Collision domains and broadcast domains
Function of routers and switches
Optical network fundamentals – SONET/SDH, OTN
Ethernet networks
Layer 2 addressing, including address resolution
IPv4 and IPv6 fundamentals
Layer 3 / IP addressing, including subnet masks
Subnetting and supernetting
Decimal to binary conversion
Longest match routing
Connection-oriented vs. connectionless protocols

Junos OS Fundamentals
Identify the concepts, benefits and functionality of the core elements of the Junos OS
Junos device portfolio – product families, general functionality
Software architecture
Control and forwarding planes
Routing Engine and Packet Forwarding Engine
Protocol daemons
Transit traffic processing
Exception traffic

User Interfaces
Identify the concepts, operation and functionality of the Junos user interfaces
CLI functionality
CLI modes
CLI navigation
CLI Help
Filtering output
Active vs. candidate configuration
Reverting to previous configurations
Modifying, managing, and saving configuration files
Viewing, comparing, and loading configuration files
J-Web – core/common functionality

Junos Configuration Basics
Identify the main elements for configuring Junos devices
Factory-default state
Initial configuration
User accounts
Login classes
User authentication methods
Interface types and properties
Configuration groups
Additional initial configuration elements – NTP, SNMP, syslog, etc.
Configuration archival
Logging and tracing
Rescue configuration
Describe how to configure basic components of a Junos device

Operational Monitoring and Maintenance
Identify methods of monitoring and maintaining Junos devices
Show commands
Monitor commands
Interface statistics and errors
Network tools – ping, traceroute, telnet, SSH, etc.
Real-time performance monitoring (RPM)
Junos OS installation
Software upgrades
Powering on and shutting down Junos devices
Root password recovery
Describe monitoring and maintenance procedures for a Junos device

Routing Fundamentals
Identify basic routing concepts and functionality for Junos devices
Packet forwarding concepts
Routing tables
Routing vs. forwarding tables
Route preference
Routing instances
Static routing
Advantages of / use cases for dynamic routing protocols
Describe how to configure and monitor basic routing elements for a Junos device

Routing Policy and Firewall Filters
Identify the concepts and functionality of routing policy and firewall filters on Junos devices
Default routing policies
Import and export policies
Routing policy flow
Effect of policies on routes and routing tables
Policy structure and terms
Policy match criteria, match types, and actions
Firewall filter concepts
Firewall filter concepts
Filter match criteria and actions
Effect of filters on packets
Unicast reverse-path-forwarding (RPF)
Describe how to configure and monitor routing policies and firewall filters on a Junos device



QUESTION 1
The IP address 10.1.1.1 belongs to which class of IP address space?

A. Class A
B. Class B
C. Class C
D. Class D

Answer: D

Explanation:


QUESTION 2
For the interface ge-1/2/3.4, what does "ge" represent?

A. SONET/SDH
B. Gigabit Ethernet
C. Aggregated Ethernet
D. GRE

Answer: A

Explanation:


QUESTION 3
Which word starts a command to display the operational status of a Junos device?

A. put
B. set
C. show
D. get

Answer: A

Explanation:


QUESTION 4
Which command prompt indicates that you are in operational mode?

A. user@router&
B. user@router#
C. user@router%
D. user@router>

Answer: D

Explanation:


QUESTION 5
What is the decimal equivalent of 00000100?

A. 2
B. 4
C. 9
D. 12

Answer: D

Explanation:


Thursday, December 29, 2016

JN0-633 Security, Professional (JNCIP-SEC) Exam

JN0-633 Security, Professional (JNCIP-SEC) Exam

Application-Aware Security Services
Describe the concepts, operation and functionality of AppSecure
AppSecure traffic processing
AppID
AppTrack
User FW
SSL proxy
AppFW
AppQoS
Given a scenario, demonstrate knowledge of how to configure, monitor and troubleshoot the various AppSecure modules

Virtualization
Describe the concepts, operation and functionality of various virtualization components on SRX Series Services Gateways
Routing instances
RIB groups
Routing between instances
Logical systems (LSYS)
Intra-LSYS and Inter-LSYS communication
Given a scenario, demonstrate knowledge of how to configure, monitor and troubleshoot the various elements of virtualization
Given a scenario, describe and implement filter-based forwarding (FBF)

Advanced NAT
Describe the concepts, operation and functionality of various types of NAT
NAT traffic processing
Destination NAT
Source NAT
Persistent NAT
Static NAT
Double NAT
NAT traversal
DNS doctoring
IPv6 NAT (Carrier-grade NAT) - NAT64, NAT46, NAT444, DS-Lite
Routing
NAT and FBF
NAT and security policy
Given a scenario, demonstrate knowledge of how to configure, monitor and troubleshoot advanced NAT implementations

Advanced IPSec VPNs
Describe the concepts, operation and functionality of various IPSec VPN implementations
IPSec traffic processing
Site-to-site VPNs
Hub-and-spoke VPNs
Group VPNs
Dynamic VPNs
Routing over VPNs
VPNs and NAT
Public key infrastructure (PKI) for IPSec VPNs
Traffic Selectors
VPNs and dynamic gateways
Given a scenario, demonstrate knowledge of how to configure, monitor and troubleshoot advanced IPSec VPN implementations

Intrusion Prevention
Describe the concepts, operation and functionality of Junos Intrusion Prevention System (IPS) for SRX Series Services Gateways
IPS packet inspection process
IPS rules and rulebases
Signature-based attack detection
Reconnaissance scans and fingerprinting
Flooding, attacks and spoofing
Describe how to perform setup and initial configuration for SRX Series Services Gateways with IPS functionality
IPS deployment options and considerations
Network settings
Attack database
Given a scenario, demonstrate knowledge of how to configure mechanisms to detect and protect against scans and attacks
Custom signatures
Scan prevention

Transparent Mode
Describe the concepts, operation and functionality of various transparent mode implementations
High Availability
VLAN translation
Layer 2 security
IRB
Bridge groups
Spanning tree traffic processing
Given a scenario, demonstrate knowledge of how to configure, monitor and troubleshoot transparent mode implementations

Troubleshooting
Given a scenario, demonstrate knowledge of how to troubleshoot Junos OS security issues
Flow analysis
SNMP
show commands
Logging and syslog
Tracing, including flow traceoptions
Policy flow
Packet capture


QUESTION 1
Which AppSecure module provides Quality of Service?

A. AppTrack
B. AppFW
C. AppID
D. AppQoS

Answer: D


QUESTION 2
You are asked to configure your SRX Series device to support IDP SSL inspections for up to 6,000 concurrent HTTP sessions to a server within your network.
Which two statements are true in this scenario? (Choose two.)

A. You must add at least one PKI certificate.
B. Junos does not support more than 5000 sessions in this scenario.
C. You must enable SSL decoding.
D. You must enable SSL inspection.

Answer: C,D


QUESTION 3
You are troubleshooting an SRX240 acting as a NAT translator for transit traffic. Traffic is dropping at the SRX240 in your network.Which three tools would you use to troubleshoot the issue? (Choose three.)

A. security flow traceoptions
B. monitor interface traffic
C. show security flow session
D. monitor traffic interface
E. debug flow basic

Answer: A,B,C
Reference: http://kb.juniper.net/InfoCenter/index?page=content&id=KB16110


QUESTION 4
You are asked to establish a baseline for your company's network traffic to determine the bandwidth usage per application. You want to undertake this task on the central SRX device that connects all segments together.What are two ways to accomplish this goal? (Choose two.)

A. Configure a mirror port on the SRX device to capture all traffic on a data collection server for further investigation.
B. Use interface packet counters for all permitted and denied traffic and calculate the values using Junos scripts.
C. Send SNMP traps with bandwidth usage to a central SNMP server.
D. Enable AppTrack on the SRX device and configure a remote syslog server to receive AppTrack messages.

Answer: A,D

Explanation:
AppTrack is used for visibility for application usage and bandwidth
Reference:http://www.juniper.net/us/en/local/pdf/datasheets/1000327-en.pdf