Juniper JN0-336 Practice Test Questions and Exam Dumps Part20 Q381-400

View Full Juniper JN0-336 Exam Dumps and Practice Test Dumps

 

Question 381.

Which BGP capability allows multiple equal-cost paths?

  1. BGP multipath
  2. Route reflection
  3. Community filtering
  4. MED comparison

Correct Answer: 1

Explanation:

BGP multipath allows multiple eligible paths to the same destination to be installed and used when they satisfy the required multipath conditions. Instead of selecting only one route, the routing system can maintain multiple paths and distribute traffic among them according to the platform’s forwarding behavior. This can improve redundancy and potentially provide better utilization of available links. Route reflection addresses internal BGP scalability, communities provide administrative route classification, and MED participates in path selection. BGP multipath therefore specifically supports simultaneous use of qualifying paths.

Question 382.

What does BGP graceful restart primarily preserve during control-plane interruption?

  1. Interface addressing
  2. Forwarding state
  3. VLAN membership
  4. NAT policies

Correct Answer: 2

Explanation:

BGP graceful restart is designed to help preserve forwarding continuity when a routing control process temporarily restarts or becomes unavailable under supported conditions. During the restart period, forwarding information may remain active while the control plane reestablishes routing sessions and refreshes information. This can reduce traffic disruption during certain software or process restarts. Interface addressing, VLAN membership, and NAT policies are separate configuration or forwarding functions. Graceful restart therefore focuses on maintaining useful forwarding behavior while BGP control-plane state is temporarily being recovered.

Question 383.

Which BGP capability can advertise additional paths without replacing the existing path?

  1. Graceful restart
  2. Route reflection
  3. Add-Path
  4. MED

Correct Answer: 3

Explanation:

BGP Add-Path allows a router to advertise multiple paths for the same destination instead of advertising only the selected best path. This capability can improve path diversity and provide downstream routers with additional alternatives for forwarding or policy decisions. It can be useful in complex routing environments where retaining more than one candidate path improves resilience. Graceful restart addresses control-plane recovery, route reflection improves internal BGP scalability, and MED influences path selection. Add-Path therefore specifically expands the number of paths that can be advertised for a destination.

Question 384.

Which BGP feature helps retain routes while a peer session temporarily restarts?

  1. Add-Path
  2. Route reflection
  3. Graceful restart
  4. Community tagging

Correct Answer: 3

Explanation:

BGP graceful restart can allow routing information to remain usable during a temporary restart of a BGP process or peer, depending on negotiated capabilities and configured behavior. This helps reduce unnecessary forwarding disruption while the control plane recovers and routing information is refreshed. Add-Path provides multiple path advertisements, route reflection changes internal route-distribution behavior, and communities classify routes for policy processing. Graceful restart therefore addresses temporary control-plane interruptions rather than route diversity or administrative tagging.

Question 385.

Which Junos feature can automatically restore a saved configuration after a serious configuration failure?

  1. Rescue configuration
  2. Policy schedule
  3. Route reflector
  4. Session timeout

Correct Answer: 1

Explanation:

A Junos rescue configuration provides a known-good configuration that can be used to recover a device after an incorrect or problematic configuration has been committed. Administrators can create and maintain a rescue configuration so that a reliable baseline is available during recovery. This is especially useful when management access or normal operation is affected by a configuration mistake. Policy schedules control when policies apply, route reflectors support BGP scalability, and session timeouts manage connection aging. The rescue configuration therefore serves as a recovery mechanism for configuration-related problems.

Question 386.

Which operational function checks whether a configuration contains syntax errors before commitment?

  1. Configuration comparison
  2. Commit check
  3. Policy deployment
  4. Log rotation

Correct Answer: 2

Explanation:

The Junos commit check function validates a candidate configuration before it is actually committed. It helps identify syntax or configuration consistency problems without activating the candidate changes as the device’s running configuration. This is useful when administrators want to verify a large or complex change before applying it. Configuration comparison identifies differences between configurations, policy deployment handles security-policy distribution, and log rotation manages stored log files. Commit checking therefore provides a preventive validation step before configuration activation.

Question 387.

Which Junos command category is primarily used to inspect current operational state?

  1. Operational mode
  2. Configuration mode
  3. Policy editor
  4. Rescue mode

Correct Answer: 1

Explanation:

Junos operational mode provides commands for examining the current operational state of the device and performing operational tasks. Administrators can use operational commands to inspect interfaces, routing information, sessions, system status, and other runtime information. Configuration mode is used to create or modify configuration statements, while policy editors and rescue functions serve more specialized purposes. Understanding the separation between operational and configuration modes is fundamental to Junos administration because it helps prevent confusion between viewing live state and changing the device configuration.

Question 388.

Which Junos mechanism can schedule configuration changes for a future time?

  1. Routing instance
  2. Commit scheduling
  3. Session synchronization
  4. Packet capture

Correct Answer: 2

Explanation:

Commit scheduling allows a configuration change to be committed at a specified future time rather than immediately. This can be useful when administrators need changes to occur during a planned maintenance window or outside normal usage periods. Scheduling helps coordinate configuration activation while reducing the need for manual intervention at the exact change time. Routing instances separate routing information, session synchronization maintains state between relevant devices, and packet capture records traffic for troubleshooting. Commit scheduling therefore provides time-based control over when a prepared configuration becomes active.

Question 389.

Which Junos feature can automatically revert a configuration if confirmation is not received?

  1. Commit confirmed
  2. Route reflection
  3. Policy versioning
  4. Log rotation

Correct Answer: 1

Explanation:

Commit confirmed allows an administrator to activate a configuration while specifying that it must be confirmed within a defined period. If confirmation is not received before the timer expires, Junos can automatically roll back to the previous committed configuration. This is particularly useful for remote changes because an incorrect configuration that disrupts management access can recover automatically. Route reflection manages BGP route distribution, policy versioning tracks policy changes, and log rotation manages log storage. Commit confirmed therefore provides a safeguard against configuration changes that unintentionally disconnect administrators.

Question 390.

Which configuration feature shows differences between candidate and active settings?

  1. Commit confirmed
  2. Configuration comparison
  3. Rescue configuration
  4. Commit scheduling

Correct Answer: 2

Explanation:

Configuration comparison is used to identify differences between configuration states, such as the candidate configuration and the currently active configuration. Reviewing these differences helps administrators verify exactly what changes are prepared before committing them. This is especially valuable when working with large configurations because unintended modifications can be identified before activation. Commit confirmed provides automatic rollback protection, rescue configuration provides a recovery baseline, and commit scheduling controls activation timing. Configuration comparison therefore focuses on visibility into pending changes rather than directly controlling when or whether those changes become active.

Question 391.

Which logging feature controls how long stored log information is retained?

  1. Retention policy
  2. Route preference
  3. Interface priority
  4. BGP community

Correct Answer: 1

Explanation:

A log retention policy determines how long stored log information is preserved before it is removed or archived according to the configured behavior. Retention settings help administrators balance troubleshooting requirements against available storage resources. Security and operational environments may need longer retention periods for investigations, while high-volume logs can require careful storage management. Route preference influences routing decisions, interface priority affects certain protocol elections, and BGP communities classify routes. Retention policy therefore directly addresses the lifecycle of stored logging information rather than network-path or routing behavior.

Question 392.

Which system resource can become a concern when extensive packet captures are retained?

  1. Storage capacity
  2. OSPF cost
  3. BGP local preference
  4. VLAN priority

Correct Answer: 2

Explanation:

Extensive packet captures can consume significant storage capacity, particularly when captures contain large packets or operate for extended periods. Administrators should therefore limit capture scope, duration, or retained data according to the troubleshooting requirement. Filtering traffic before or during capture can also reduce unnecessary storage usage. OSPF cost determines routing preference within OSPF, BGP local preference influences internal BGP path selection, and VLAN priority relates to Layer 2 traffic handling. Storage capacity is consequently the system resource most directly affected by retaining large packet-capture datasets.

Question 393.

Which VPN mechanism can reduce repeated IKE negotiation overhead for established peers?

  1. IKE security association reuse
  2. OSPF adjacency reset
  3. BGP route reflection
  4. NAT pool expansion

Correct Answer: 1

Explanation:

Established IKE security associations allow VPN peers to maintain negotiated security parameters without requiring a completely new initial negotiation for every protected packet flow. IKE maintains the control-plane information needed to establish and manage IPsec security associations. Rekey operations can later refresh cryptographic material according to configured lifetimes without treating every packet as a new VPN negotiation. OSPF adjacency resets, BGP route reflection, and NAT pool expansion address unrelated networking functions. Maintaining appropriate IKE state therefore helps VPN peers manage protected communication efficiently.

Question 394.

Which IPsec mechanism helps detect replayed packets?

  1. Traffic selector
  2. Anti-replay window
  3. Tunnel interface
  4. NAT mapping

Correct Answer: 2

Explanation:

The IPsec anti-replay mechanism uses sequence information and a replay window to detect packets that are duplicated or arrive outside acceptable sequence conditions. This protects against an attacker attempting to resend previously captured valid packets. The receiving device tracks packet sequence values and determines whether an arriving packet falls within the acceptable window and has not already been processed. Traffic selectors determine which traffic belongs to a VPN, tunnel interfaces provide routing connectivity, and NAT mappings translate addresses or ports. Anti-replay protection therefore focuses specifically on repeated packet detection.

Question 395.

Which VPN parameter defines the traffic that should enter an IPsec tunnel?

  1. Proxy identity
  2. Syslog facility
  3. BGP community
  4. OSPF priority

Correct Answer: 1

Explanation:

An IPsec proxy identity can define the traffic characteristics that are associated with a VPN security association, depending on the VPN configuration. These identities can represent local and remote addresses, protocols, or ports and help determine which traffic should be protected by the tunnel. Correct matching is important because mismatched identities can prevent the expected VPN security association from forming or carrying the intended traffic. Syslog facilities classify logging messages, BGP communities provide route tags, and OSPF priority affects designated-router elections. Proxy identity therefore relates directly to VPN traffic selection.

Question 396.

Which security policy capability allows different actions for matching application traffic?

  1. Policy rule action
  2. OSPF metric
  3. BGP origin
  4. VLAN tag

Correct Answer: 1

Explanation:

A security policy rule action determines what the firewall should do when traffic matches the configured policy conditions. Depending on the platform and policy design, actions can include permitting, denying, rejecting, logging, or applying additional security processing. The action is evaluated after the relevant matching criteria identify the applicable rule. OSPF metrics influence routing paths, BGP origin describes route introduction, and VLAN tags identify Layer 2 traffic membership. Policy rule actions therefore provide the enforcement decision for traffic that satisfies the conditions of a security policy.

Question 397.

Which Junos feature can preserve policy changes as separate revisions?

  1. Policy versioning
  2. Interface monitoring
  3. RPM probing
  4. Route leaking

Correct Answer: 1

Explanation:

Policy versioning can preserve separate revisions of security policies so administrators can track changes and maintain historical versions. This can be useful when reviewing modifications, auditing administrative activity, or restoring an earlier policy state when supported by the management workflow. Interface monitoring checks operational conditions, RPM probing measures reachability, and route leaking controls selected route exchange between routing instances. Policy versioning therefore focuses on lifecycle management of policy changes rather than traffic forwarding or network-health monitoring.

Question 398.

Which monitoring method actively tests reachability to a remote destination?

  1. RPM
  2. Syslog
  3. Policy logging
  4. Configuration comparison

Correct Answer: 1

Explanation:

RPM, or Real-time Performance Monitoring, actively generates probes to measure characteristics such as reachability, delay, or packet loss toward configured destinations. The resulting measurements can be used for monitoring, troubleshooting, or integration with other network mechanisms. Unlike passive logging, RPM creates test traffic and evaluates the returned results. Syslog records events, policy logging records traffic-related information, and configuration comparison identifies configuration differences. RPM therefore provides an active method for determining whether a remote destination is reachable and how the path is performing.

Question 399.

Which BGP behavior can select multiple paths for forwarding when requirements are satisfied?

  1. Multipath selection
  2. Community tagging
  3. Cluster prevention
  4. Origin classification

Correct Answer: 3

Explanation:

BGP multipath selection can allow multiple qualifying routes to be installed for forwarding when the configured multipath requirements are satisfied. This differs from normal best-path processing, where one route is selected as the preferred path for a destination. Multipath can provide additional resilience and allow traffic to use more than one suitable path. Community tagging classifies routes, cluster mechanisms help prevent route-reflection loops, and origin classification describes how routes entered BGP. Multipath selection therefore specifically concerns retaining multiple eligible forwarding paths.

Question 400.

Which Junos function can display the currently active routing information?

  1. Show route information
  2. Commit configuration
  3. Edit policy hierarchy
  4. Schedule activation

Correct Answer: 4

Explanation:

Junos operational routing commands can display the routing information currently maintained by the device, including learned routes, next hops, preferences, and other route attributes. This information is valuable when troubleshooting forwarding decisions or verifying whether expected routes are present in the active routing table. Committing a configuration changes device settings, editing a policy hierarchy modifies configuration content, and scheduling activation controls when a prepared configuration becomes active. Operational route-display functions therefore provide visibility into the current routing state without requiring a configuration change.