Juniper Enterprise Routing and Switching, Professional JN0-649 JNCIP-ENT Exam Practice Test

Page: 1 / 14
Total 65 questions
Question 1

Your enterprise network is running BGP VPNs to support multitenancy. Some of the devices with which you peer BGP do not support the VPN NLRI. You must ensure that you do not send BGP VPN routes to the remote peer.

Which two configuration steps will satisfy this requirement? (Choose two.)



Answer : B, D

Apply both the VRF export and BGP group or neighbor export policies (VRF first, then BGP) before routes from the vrf or l2vpn routing tables are advertised to other PE routers.

https://www.juniper.net/documentation/us/en/software/junos/bgp/topics/ref/statement/vpn-apply-export-edit-protocols-bgp-vp.html


Question 2

Referring to the outputs shown in the exhibit, which two statements are correct about the IS-IS adjacency? (Choose two.)



Answer : A, D


Question 3
Question 4

You must ensure that all routes in the 10.0.0/8 address range are not advertised outside of your AS.

Which well-known BGP community should be assigned to these addresses to accomplish this task?



Answer : A

For specifying the BGP community attribute only, you also can specify community-ids as one of the following well-known community names defined in RFC 1997:

no-advertise---Routes containing this community name are not advertised to other BGP peers.

no-export---Routes containing this community name are not advertised outside a BGP confederation boundary.

no-export-subconfed---Routes containing this community are advertised to IBGP peers with the same AS number, but not to members of other confederations.

llgr-stale---Adds a community to a long-lived stale route when it is readvertised.

no-llgr---Marks routes which a BGP speaker does not want to be retained by LLGR. The Notification message feature does not have any associated configuration parameters.

https://www.juniper.net/documentation/us/en/software/junos/bgp/topics/ref/statement/community-edit-routing-options.html


Question 5

You are deploying an 802.1X solution and must determine what would happen if clients are unable to re-authenticate to the RADIUS server.

In this scenario, which configuration would provide access to the network if the supplicant is already authenticated?



Answer : D


Question 6

Referring to the exhibit, ServerA sends a single IP packet destined to 10.0.0.127.

Which two statements correctly describe the behavior of the resulting outbound VXLAN packets that contain the original packet destined to 10.0.0.127? (Choose two.)



Answer : A, D


Question 7

You enable the Multiple VLAN Registration Protocol (MVRP) to automate the creation and management of virtual LANs.

Which statement is correct in this scenario?



Answer : A

The forbidden mode does not register or declare VLANs. You can change the registration mode of a specific interface to forbidden. An interface in forbidden registration mode does not participate in MVRP even if MVRP is enabled on the switch.

https://www.juniper.net/documentation/us/en/software/junos/multicast-l2/topics/topic-map/mvrp.html

MVRP is disabled by default on the switches and, when enabled, affects only trunk interfaces. Once you enable MVRP, all VLAN interfaces on the switch belong to MVRP (the default normal registration mode) and those interfaces accept PDU messages and send their own PDU messages. forbidden---The interface does not register or declare VLANS (except statically configured VLANs).


Page:    1 / 14   
Total 65 questions