Juniper Networks
Log in
|
How to Buy
|
Contact Us
|
United States (Change)
Choose Country
Close

Choose Country

North America

  • United States

Europe

  • Deutschland - Germany
  • España - Spain
  • France
  • Italia - Italy
  • Россия - Russia
  • United Kingdom

Asia Pacific

  • Asia Region
  • Australia
  • 中国 - China
  • India
  • 日本 - Japan
  • 대한민국 - Korea
  • 台灣 - Taiwan
Solutions
Products & Services
Company
Partners
Support
Education
Community
Security Intelligence Center

JNCIP-SEC EXAM OBJECTIVES (EXAM: JN0-632)

Education
Courses
 
Bootcamps
 
Certification
 
Getting Started
 
Already Certified
 
Certification Tracks
 
Exam Registration
 
Fast Track Program
 
News
 
Policies and Exam Security
 
Resources
 
Contact Information
 
Authorized Education Partners
 
Juniper Networks Academic Alliance
 
Juniper Networks Training Credits
 
Prescriptive Training
 
Juniper Networks Books
 
Education Updates
 
Print

This list is intended to provide a general view of the skill set required to successfully complete the specified certification exam. Topics listed are subject to change.

  • Advanced Security Policy
  • Virtualization
  • Advanced NAT
  • High Availability
  • Advanced IPsec
  • Introduction to Junos Intrusion Prevention System (IPS)
  • IPS Initial Configuration
  • IPS Attack Objects
  • Scanning and Reconnaissance
  • Blocking Attacks
  • Troubleshooting and Reporting

Advanced Security Policy

  • Given a scenario, describe and implement security policies, custom applications and ALGs
    • ALG processing
    • ALG configuration and application processing
    • Configure address books with dynamic addressing
    • Create security policies utilizing ALGs, custom applications and dynamic addressing
  • Given a scenario, demonstrate knowledge of how to analyze traffic flows and identify traffic processing patterns and problems

Virtualization

  • Given a scenario, describe and configure routing-instances
    • JUNOS routing instance types used for virtualization
    • Implement virtual routing-instances
    • Selectively forward traffic between virtual routing-instances
    • Implement filter-based forwarding

To Top

Advanced NAT

  • Given a scenario, describe and implement static, source, destination, and dual NAT
    • Describe and implement variations of persistent NAT
  • Given a scenario, describe the interaction between NAT and security policy

High Availability

  • Given a scenario, demonstrate knowledge of how to implement and monitor optimized chassis clustering
    • IPv6 support for chassis clusters
    • Implement graceful restart on SRX Series Services Gateways

To Top

Advanced IPsec

  • Given a scenario, demonstrate knowledge of how to differentiate, implement, and monitor various IPsec VPN implementations
    • Implement routing over IPsec VPNs
    • Implement NAT traversal
    • Configure standard point-to-point VPN tunnels and hub-and-spoke VPNs
    • Configure Group and Dynamic VPNs
  • Given a scenario, describe public key cryptography for certificates

Introduction to Junos Intrusion Prevention System (IPS)

  • Identify the IPS protection methods available on SRX Series Services Gateways
    • General types of network attacks and steps involved in network penetration
    • Describe the IPS engine's packet inspection process
    • IPS engine components

To Top

IPS Initial Configuration

  • Given a scenario, describe and implement initial configuration for SRX Series Services Gateways with IPS functionality
    • IPS deployment options
    • Network settings
    • Prepare SRX Series devices for IPS features

IPS Attack Objects

  • Identify various attack objects
    • IPS rules and rulebases
    • Signature-based attacks
  • Given a scenario, describe and configure custom signatures

To Top

Scanning and Reconnaissance

  • Given a scenario, describe how the IPS engine detects and blocks scans
    • How scanning is used to gather information about target hosts
    • Common types of scans
    • Fingerprinting
  • Given a scenario, demonstrate knowledge of how to configure scan protection on the IPS engine

Blocking Attacks

  • Given a scenario, describe the various evasion techniques and attacks
    • FIN scans, IP spoofing and IP source routing
    • Denial of service and distributed denial of service attacks
  • Given a scenario, demonstrate knowledge of how to configure mechanisms to detect and block evasion techniques and DoS/DDoS attacks

Troubleshooting and Reporting

  • Given a scenario, demonstrate knowledge of how to troubshoot Junos OS security issues
    • Follow a sound methodology for troubleshooting Junos security issues
    • Use Junos tools to troubleshoot Junos OS security and IPS implementations

To Top

 

 

 

 
  • About Juniper
  • Investor Relations
  • Press Releases
  • Newsletters
  • Juniper Offices
  • Green Networking
  • Resources
  • How to Buy
  • Partner Locator
  • Image Library
  • Visio Templates
  • Security Center
  • Community
  • Forums
  • Blogs
  • Junos Central
  • Social Media
  • Developers
  • Support
  • Technical Documentation
  • Knowledge Base (KB)
  • Software Downloads
  • Product Licensing
  • Contact Support
  • Follow Us
  • j-net
  • YouTube
  • Twitter
  • Facebook
  • RSS
Site Map / RSS Feeds / Careers / Accessibility / Feedback / Privacy & Policy / Legal Notices
Copyright© 1999-2012 Juniper Networks, Inc. All rights reserved.

Enterprise

Service Provider

Public Sector

Business Needs 

  • Application Infrastructure
  • Business Continuity
  • Mobility
  • Network Infrastructure
  • Security and Compliance

Locations / Architectures 

  • Campus & Branch
  • Cloud-Ready Data Center
  • Remote & Mobile Users

Industries 

  • Energy and Utilities
  • Financial Services
  • Government
  • Healthcare
  • Education

The Innovators 

  • Customer Stories

Business Needs 

  • Managed Service Provider
  • Network Infrastructure
  • Network Security
  • Network and Service Management
  • Residential
  • Telepresence

Locations / Architectures 

  • Core
  • Packet Transport
  • Cloud-Ready Data Center
  • Universal Access
  • Universal Edge

Segments 

  • Cable Operator
  • Wireline Carrier
  • Content Service Provider
  • Wireless Carrier

Business Needs 

  • Application Infrastructure
  • Disaster Recovery / Business Continuity
  • Security and Compliance
  • Certifications

Locations / Architectures 

  • Branch Office
  • Campus
  • Cloud-Ready Data Center
  • Remote Users
  • VPNs and WAN

Products by Category

  • Application Acceleration
  • Content and Media Delivery
  • Data Center Fabric
  • Identity and Policy Control
  • Juniper Developer Network
  • Mobile Infrastructure
  • Network Management
  • Network Operating System
  • Packet Transport
  • Routing
  • Security
  • Software
  • Switching
  • Time Synchronization
  • Wireless
  • End-of-Sale Products

Services

  • Consulting Services
  • Installation and Configuration Services
  • Technical Services

All Products & Services

A B C D E F G H I J K L M N O P Q R S T U V W X Y Z

About Juniper

News and Information

The Juniper Difference

  • Company Profile
  • Leadership
  • Business Partners
  • Careers
  • Contact Us
  • Analyst Relations
  • Press Center
  • Events
  • Subscriptions
  • Innovations
  • Awards
  • Recognition
  • Case Studies and Customer Quotes
  • Corporate Responsibility
  • Ventures
Help
|
My Account
|
Log Out