JNCIP-SEC: Juniper Networks Certified Professional – Security (2024) — Question 8
You are deploying threat remediation to endpoints connected through third-party devices.
In this scenario, which three statements are correct? (Choose three.)
Answer options
- A. All third-party switches must support AAA/RADIUS and Dynamic Authorization Extensions to the RADIUS protocol.
- B. The connector uses an API to gather endpoint MAC address information from the RADIUS server.
- C. All third-party switches in the specified network are automatically mapped and registered with the RADIUS server.
- D. The connector queries the RADIUS server for the infected host endpoint details and initiates a change of authorization (CoA) for the infected host. D. The RADUIS server sends Status-Server messages to update infected host information to the connector.
Correct answer: A, B, D
Explanation
Option A is correct because it specifies the necessary support for AAA/RADIUS and Dynamic Authorization Extensions in third-party switches. Option B is accurate as it describes the connector's role in obtaining MAC address information from the RADIUS server. Option D is right since it details the connector's function in querying the RADIUS server for infected host details and initiating a CoA. Option C is incorrect because third-party switches are not automatically mapped and registered with the RADIUS server without specific configuration.