JNCIA-SEC Content Security Practice Question
An administrator is troubleshooting an antivirus profile on an SRX Series device where certain archive files (.zip) containing test malware are bypassing inspection. Which THREE configuration elements or factors should the administrator verify? (Choose three.)
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
Confirm whether password-protected or encrypted archives are configured to be blocked or bypassed.
When archives bypass antivirus inspection, it is often due to archive nesting depth limits, encrypted/password-protected archives exceeding inspection capabilities, or file size limits configured in the UTM profile that cause large files to be skipped.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
Ensure the AppID service object is explicitly disabled for all antivirus inspection policies.
Why it's wrong here
AppID is required for application identification and should not be disabled for UTM to function correctly.
- ✓
Confirm whether password-protected or encrypted archives are configured to be blocked or bypassed.
Why this is correct
Encrypted archives cannot be scanned by default, and policies dictate whether they are blocked or permitted.
- ✓
Check if the file size exceeds the configured max-file-size limit for antivirus inspection.
Why this is correct
Files exceeding the maximum file size limit are bypassed by the antivirus scanner to conserve memory and CPU.
- ✓
Verify whether archive-depth is set too low to inspect nested compressed files.
Why this is correct
If an archive exceeds the maximum archive depth, inner files will not be extracted and scanned.
- ✗
Verify that the antispam whitelist contains the specific MIME type of the .zip file.
Why it's wrong here
Antispam whitelists apply to email sender addresses or IP addresses, not MIME types of attachments.
About these practice questions
This JNCIA-SEC question is part of Courseiva's 520-question bank — original exam-style content with full explanations and wrong-answer analysis, never real exam questions or exam dumps. Learn why practice questions differ from exam dumps →
JA
Written and reviewed by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
Last reviewed August 2026 · checked against the official Juniper Networks exam blueprint
This JNCIA-SEC practice question is part of Courseiva's free Juniper Networks certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the JNCIA-SEC exam.