ITexamReview H12-711 Dumps PDF - 100% Passing Guarantee [Q159-Q183]

Share

ITexamReview H12-711 Dumps PDF - 100% Passing Guarantee

H12-711 Braindumps Real Exam Updated on Mar 10, 2024 with 290 Questions


Huawei H12-711 exam comprises of 60 multiple-choice questions that need to be answered within 90 minutes. The questions are designed to test the technical knowledge and practical skills of candidates in the field of network security. H12-711 exam is conducted online, and candidates need to register through Huawei's website to take it. Moreover, the exam results are declared within three business days from the date of the exam.

 

NEW QUESTION # 159
Which of the following is wrong about the management of Internet users?

  • A. Each user belongs to at least one user group, also can belong to multiple user groups
  • B. Each user group can belong to multiple user groups
  • C. Each user group can include multiple users and user groups
  • D. The system has a default user group by default, which is also the system default authentication domain.

Answer: B


NEW QUESTION # 160
Regarding the relationship and role of VRRPA/GMP/HRP. which of the following statements are correct?(Multiple choice)

  • A. HRP is responsible for data backup during hot standby operation
  • B. VGMP group in the active state may include the VRRP group in the standby state.
  • C. VGMP is responsible for monitoring equipment failures and controlling fast switching of equipment.
  • D. VRRP is responsible for sending free ARP to direct traffic to the new primary device during active/standby switchover.

Answer: A,C,D


NEW QUESTION # 161
Except built-in Portal authentication, firewall also supports custom Portal authentication, when using a custom Portal authentication, no need to deploy a separate external Portal server.

  • A. True
  • B. False

Answer: B


NEW QUESTION # 162
Which of thefollowing are the default security zones of Huawei firewall? (Multiple Choice)

  • A. Untrust area
  • B. Security area
  • C. Zone area
  • D. Trust area

Answer: A,D


NEW QUESTION # 163
Which of the following are the main implementations of gateway anti-virus? (Multiple choice)

  • A. Stream scanning method
  • B. File killing method
  • C. Package inspection method
  • D. Agent scanning method

Answer: A,D


NEW QUESTION # 164
Which of the following is the default backup method for double hot standby?

  • A. Configuration of the active and standby FWs after the device is restarted
  • B. Manual batch backup
  • C. Session fast backup
  • D. Automatic backup

Answer: D


NEW QUESTION # 165
When Firewall does dual-system hot backup networking, in order to achieve the overall status of the backup group switching, which of the following protocol technology need to be used?

  • A. OSPF
  • B. VGMP
  • C. HRP
  • D. VRRP

Answer: B


NEW QUESTION # 166
Which ofthe following are core elements ofthe IATF (InformationAssurance Technology Framework) model?
(Multiple choice)

  • A. Environment
  • B. Operation
  • C. Technology
  • D. person

Answer: B,C,D


NEW QUESTION # 167
Which of the following is not included in the Corporate Impact Analysis (BIA)?

  • A. Impact assessment
  • B. Accident handling priority
  • C. Business priority
  • D. Risk identification

Answer: A


NEW QUESTION # 168
In practical applications, asymmetric encryption is mainly used to encrypt user data

  • A. True
  • B. False

Answer: B


NEW QUESTION # 169
What is the difference between network address porttranslation (NAT) and conversion-only network address (No- PAT)? (Multiple Choice)

  • A. NAPT only supports protocol address translation at the network layer.
  • B. No-PAT supports protocol address translation at the network layer
  • C. After NATP conversion, for external network users, all messages are from the same IP address or several IP addresses.
  • D. No-PAT only supports protocol address translationat the application layer.

Answer: B,C


NEW QUESTION # 170
Which of the following types of attacks does the DDoS attack belong to?

  • A. Malformed packet attack
  • B. Special message attack
  • C. Traffic attack
  • D. Snooping scanning attack

Answer: C


NEW QUESTION # 171
In SSL handshake protocol, what is the role of Server Key Exchange message?

  • A. it contains an X.509 certificate in server key exchange message, the public key is contained in the certificate, which is issued to the client to verify signatures or to encrypt messages when key exchange
  • B. server key exchange message indicates that the server has finished sending all the information
  • C. in the server key exchange message, it contains set of parameters required for completing key exchange
  • D. in the server key exchange message, it contains the negotiated CipherSuite which is copied to the state of the current connection

Answer: C


NEW QUESTION # 172
Which of the following are correct regarding the matching conditions of the security policy? (Multiple choice)

  • A. "Time period"in the matching condition is an optional parameter
  • B. "Apply" in the matching condition is an optional parameter
  • C. "Service" is an optional parameter in the matching condition
  • D. 'The source security zone' is an optional parameter in the matehing condition.

Answer: A,B,C,D


NEW QUESTION # 173
What are the main security capability of encryption service? (Choose three.)

  • A. Integrity
  • B. Non-repudiation
  • C. Scalability
  • D. Confidentiality

Answer: A,B,D


NEW QUESTION # 174
Which of the following is the encryption technology used by digital envelopes?

  • A. Hash algorithm
  • B. Asymmetric encryption algorithm
  • C. Symmetric encryption algorithm
  • D. Stream encryption algorithm

Answer: B


NEW QUESTION # 175
Which of the following is the correct description of windows log event type? (Multiple Choice)

  • A. Failure audit event refers to a failed audit security login attempt, such as a failure when the user views accesses the network drive is logged as a failed audit event.
  • B. When the disk space isinsufficient, it will be recorded as an "information event"
  • C. A warning event is asuccessful operation event of an application, driver, or service.
  • D. Error events usually refer to the loss of function and data. For example, if a service cannot be loaded as a system boot, an error event will be generated.

Answer: A,B,D


NEW QUESTION # 176
Which of the following is true about firewall security policies?

  • A. By default, the security policy can control unicast packets andbroadcast packets.
  • B. By default, the security policy can control multicast.
  • C. By default, the security policy only controls unicast packets.
  • D. By default, the security policy can control unicast packets, broadcast packets, and multicast packets.

Answer: C


NEW QUESTION # 177
Digital certificates can be divided into local certificates, CA certificates, root certificates, and self-signed certificates according to different usage scenarios

  • A. True
  • B. False

Answer: A


NEW QUESTION # 178
Which of the following description is correct about the sort of the call setup process for L2TP corridors?
1. L2TP tunnel
2. PPP connection
3. LNS authenticates users
4. Users access intranet resources
5. Establish an L2TP session

  • A. 2->3->1->5->4
  • B. 1->5->3->2->4
  • C. 1->2->3->5->4
  • D. 2->1->5->3->4

Answer: B


NEW QUESTION # 179
The European TCSEC Code is dividedinto two modules, Function and Evaluation, which are mainly used in the miitary, government and commercial fields

  • A. True
  • B. False

Answer: A


NEW QUESTION # 180
Which of the following attacks does not belong to special packet attack?

  • A. IP address scanning attack
  • B. ICMP redirect packet attack
  • C. Large ICMP packet attack
  • D. ICMP unreachable packet attack

Answer: A


NEW QUESTION # 181
The matching principle of the security policy is: firstly, find the inter-domain security policy configured manually, and if there is no match, the data packet is directly discarded

  • A. True
  • B. False

Answer: A


NEW QUESTION # 182
Regarding the relationship and role of VRRP/VGMP/HRP, which of the following statements are correct?
(Multiple choice)

  • A. HRP is responsible for data backup during hot standby operation
  • B. VGMP group in the active state may include the VRRP group in the standby state.
  • C. VRRP is responsible for sending free ARP to direct traffic to the new primary device duringactive/standby switchover
  • D. VGMP is responsible for monitoring equipment failures and controlling fast switching of equipment.

Answer: A,C,D


NEW QUESTION # 183
......

H12-711 Dumps With 100% Verified Q&As - Pass Guarantee or Full Refund: https://examkiller.itexamreview.com/H12-711-valid-exam-braindumps.html