JN0-231 Exam QuestionsBrowse all questions from this exam

JN0-231 Exam - Question 39


Which two components are part of a security zone? (Choose two.)

Show Answer
Correct Answer: CD

In the context of security zones, each zone typically consists of interfaces and address books. The address book is a component where IP addresses and sets of addresses are defined to be used in security policies. Interfaces like ge-0/0/0.0 are included in security zones to control the traffic that enters or exits the network. Therefore, address book and ge-0/0/0.0 are considered components of a security zone.

Discussion

6 comments
Sign in to comment
IM_TechnicalOptions: CD
Oct 28, 2022

https://www.juniper.net/documentation/us/en/software/junos/security-policies/topics/topic-map/security-zone-configuration.html#id-security-zones-overview__d24375e72

mohdemaOptions: BD
Nov 29, 2022

Security zones are logical entities to which one or more interfaces are bound. With many types of Juniper Networks devices, you can define multiple security zones, the exact number of which you determine based on your network needs.

bigmokeyOptions: CD
Feb 2, 2023

don't belive you can add mgmt int to a sec policy

achonOptions: CD
Apr 22, 2023

https://www.juniper.net/documentation/us/en/software/junos/security-policies/topics/topic-map/security-address-books-sets.html#id-example-configuring-address-books-and-address-sets

fosi130Options: CD
Jul 30, 2023

CD for me

66dc178Options: CD
Jan 28, 2024

inet.0 (A) is the default inet routing table and not a component of a security zone. It's used for unicast routing and isn't directly assignable or part of a security zone configuration. fxp0 (B) is typically a management interface used for out-of-band management of the device and is generally not included in security zones that handle transit traffic, as it's isolated from data plane traffic for security and management purposes.