Free Huawei H12-711 Test Practice Test Questions Exam Dumps
Prepare Top Huawei H12-711 Exam Audio Study Guide Practice Questions Edition
NEW QUESTION # 113
Which of the following are remote authentication methods? (Multiple choice)
- A. RADIUS
- B. Local
- C. LLDP
- D. HWTACACS
Answer: A,D
NEW QUESTION # 114
Which of the following desciipliuri uf firewall hul standby is cuie? (multiple choice)
- A. The hot standby of the firewall needs to synchronize the backup between the master device and the slave device by using the session table. MAC table, and routing table.
- B. The status of all VRRP backup groups in the same VGMP management group on the same firewall is the same
- C. VCMP i3 to ensure the consistency of all VRRPbackup group switching
- D. When multiple areas of the firewall need to provide dual-system backup, you need to configure multiple VRRP backup groups on the firewall.
Answer: B,C,D
NEW QUESTION # 115
Which of the following description are correct about the security policy action and security configuration file? (Multiple Choice)
- A. The security configuration file can be applied without being applied to the security policy allowed by the action.
- B. The security configuration file must be applied to the security policy that is allowed to take effect.
- C. If the action of the security policy is "prohibited", the device will discard this traffic and will not perform content security check later.
- D. If the security policy action is "Allow", the traffic will not match the security configuration file.
Answer: B,C
NEW QUESTION # 116
The process of electronic forensics includes: protecting the site, obtaining evidence, preserving evidence,identifying evidence, analyzing evidence, tracking and presenting evidence
- A. True
- B. False
Answer: A
NEW QUESTION # 117
Information security levelprotection is the basic system of national information security work
- A. True
- B. False
Answer: A
NEW QUESTION # 118
When the user single sign-on is configured, the receiving PC message mode is adopted. The authentication process has the following steps: 1 The visitor PC executes the login script and sends the user login information to the AD monitor. 2 The firewall extracts the correspondence between the user and the IP from the login information. Add to the online user table 3 AD monitor connects to the AD server to query the login user information, and forwards the queried user information to the firewall. 4 The visitor logs in to the AD domain. The AD server returns the login success message to the user and delivers the login script. which of the following order is correct?
- A. 3-2-1-4
- B. 4-1-3-2
- C. 1-4-3-2
- D. 1-2-3-4
Answer: B
NEW QUESTION # 119
Which of the following description is wrong aoout the intrusion detection system?
- A. The intrusion detection system can dynamically collect a large amount of key information 3nd materials through the network and computer, and can timely analyze and judge the current state of the entire system environment.
- B. Intrusion detection system includes all hardware and software systems for intrusion detection
- C. The flood detection system can be linked with firewalls and switches to become a powerfu 'helper' of the firewall, which is better and more precise to control traffic access between domains.
- D. The intrusion detection system can perform blocking operation if it finds that there is a violation of the security policy or the system has traces of being attacked.
Answer: B
NEW QUESTION # 120
The matching principle of the security policy is: firstly, find the inter-domain security policy configured manually, and if there is no match, the data packet is directly discarded
- A. True
- B. False
Answer: A
NEW QUESTION # 121
In the construction of information security system, the security model is needed to accurately describe the relationship between important aspects of security and system behavior
- A. True
- B. False
Answer: B
NEW QUESTION # 122
Which of the following is not in the quintuple range?
- A. Destination port
- B. Source IP
- C. Source MAC
- D. Destination IP
Answer: C
NEW QUESTION # 123
In a Firewall hot standby configuration, HRP key configuration includes which of the following? (Choose three.)
- A. Enabling fast backup session summary
hrp mirror session enable - B. Enable HRP backup
hrp enable - C. Specifies the heartbeat port
hrp interface interface-type interface-number - D. Preemption delay
hrp preempt [delay interval]
Answer: A,B,C
NEW QUESTION # 124
Which ofthe following descriptions is correct about port mirroring? (Multiple Choice)
- A. The mirrored port copies the packet to the observing port.
- B. The observing port copies the packet to the mirrored port.
- C. The observing port sends the "eceived packet to the monitoring device.
- D. The mirrored port sends the received packet to the monitoring device.
Answer: A,C
NEW QUESTION # 125
Which of the following are key elements of information securityprevention? (Multiple choice)
- A. Security operation and management
- B. Asset management
- C. Security products and technologies
- D. Personnel
Answer: A,B,C,D
NEW QUESTION # 126
Regarding the AH and ESP security protocols, which ofthe following options is correct? (Multiple Choice)
- A. The agreement number of AH is 51.
- B. The agreement number of ESP is51.
- C. ESP can provide encryption and verification functions
- D. AH can provide encryption and verification functions
Answer: A,C
NEW QUESTION # 127
Which of the following information will be encrypted during the use of digital envelopes? (Multiple Choice)
- A. User data
- B. Receiver public key
- C. Symmetric key
- D. Receiver private key
Answer: A,C
NEW QUESTION # 128
Which of the following is the core part of the P2DR model?
- A. Response
- B. Policy Strategy
- C. Protection
- D. Detection
Answer: B
NEW QUESTION # 129
The following security policy command, representatives of the meaning:
- A. banned from trust region access to untrust region and the source address is10.2.10.10 host to all the hosts ICMP message
- B. banned from trust region access to untrust region and the destination address is 10.1 0 0/16 segment all hosts ICMP message
- C. banned from trust region access to untrust region and the destination address is 10 1 10 10 host ICMP message
- D. banned from trust region access to untrust region and the source address is 10.1 0 0/16 segment all the hosts ICMP message
Answer: D
NEW QUESTION # 130
The administrator PC and the USG firewall management interface directly connected using the web the way initialization. Which nether following statements are true? (Multiple choice)
- A. IP address ofthe management PC is manually set to 192.168.0.2-'92.168.0.254
- B. Manage PC browser accesshttp://192.168.0.1
- C. Set the NIC ofthe management PC to automatically obtain the IP address.
- D. Manage PC browser access http://192.168.1.1
Answer: A,B
NEW QUESTION # 131
Which of the following is not a key technology for anti-virus software?
- A. Self-protection
- B. Shelling technology
- C. Format the disk
- D. Real-time upgrade ofthe virus database
Answer: C
NEW QUESTION # 132
Which of the following is used to encrypt digital fingerprints in digital signature technology?
- A. sender private key
- B. Receiver public key
- C. sender public key
- D. Receiver private key
Answer: A
NEW QUESTION # 133
Regarding the description of the packet in the iptables transmission process, which of the following option is wrong?
- A. If the destination address of the packet is not local, the system sends the packet to the FORWARD chain.
- B. If the destination address of the packet is local, the packet will be sent to the INPUT chain.
- C. If the destination address of the packet is not local, the system sends the packet to the OUTPUT chain.
- D. When a packet enters the network card, it first matches the PREROUTING chain.
Answer: C
NEW QUESTION # 134
......
Go to H12-711 Questions - Try H12-711 dumps pdf: https://www.actual4dumps.com/H12-711-study-material.html
Dumps Practice Exam Questions Study Guide for the H12-711 Exam: https://drive.google.com/open?id=1Y_Gn5zrL8O3Etyjn-FrWwhRfPOYcFlqw