Huawei H12-711_V3.0-ENU Certification Exam Dumps with 396 Practice Test Questions
New H12-711_V3.0-ENU Exam Dumps with High Passing Rate
NEW QUESTION 219
On the surface, threats such as viruses, vulnerabilities, and Trojan horses are the causes of information security incidents, but at the root, information security incidents are also closely related to people and the information system itself.
- A. True
- B. False
Answer: A
NEW QUESTION 220
Please sort the following steps according to the level protection process.
Answer:
Explanation:
NEW QUESTION 221
Which of the following is not a stand-alone anti-virus technology?
- A. Install anti-virus software
- B. Use virus detection tools
- C. Patch the system
- D. Configure anti-virus technology on the network firewall
Answer: D
NEW QUESTION 222
Please sort by iptables table processing priority from largest to smallest.
Answer:
Explanation:
NEW QUESTION 223
Some applications such as Oracle Database Applications, has no data streaming for a long time, so that the firewall session connection is interrupted, resulting in business interruption, which of the following is the optimal solution?
- A. Configure a long connection for one business
- B. Optimize safety strategy
- C. Open the ASPF function
- D. Open Split Cache
Answer: A
NEW QUESTION 224
Encryption technology can convert readable information into unreadable information through a certain method.
- A. True
- B. False
Answer: A
NEW QUESTION 225
Regarding the description of the data packet in the iptables transmission process, which of the following is wrong?
- A. When a data packet enters the network card, it matches the PREROUTING chain firstly
- B. If the destination address of the data packet is not the local machine, the system sends the data packet to the OUTPUT chain
- C. If the destination address of the data packet is the local machine, the system will send the data packet to the INPUT chain.
- D. If the destination address of the data packet is not the local machine, the system will send the data packet to the FORWARD chain.
Answer: B
NEW QUESTION 226
After a network intrusion event occurs, according to the plan to obtain the identity of the intrusion, the source of the attack and other information, and block the intrusion behavior, which links in the PDRR network security model do the above actions belong to? (Multiple choice)
- A. Testing link
- B. Protection link
- C. Recovery link
- D. Response link
Answer: A,D
NEW QUESTION 227
Which of the following descriptions of the VGMP protocol is wrong?
- A. VGMP adds multiple VRRP backup groups on the same firewall to a management group, and the management group manages all VRRP backup groups in a unified manner
- B. VGMP group devices in Active state will periodically send hello messages to the opposite end, and the stdandby end is only responsible for listening to hello messages and will not respond
- C. VGMP uniformly controls the switching of the status of each VRRP backup group to ensure that the status of all VRRP backup groups in the management group is consistent.
- D. By default, when the standby end does not receive the hello message sent by the opposite end for three hello message cycles, it will consider the opposite end to be faulty and switch itself to the Active state.
Answer: B
NEW QUESTION 228
"Be good at observation" and "keep suspicion" can help us better identify security threats in the online world.
- A. True
- B. False
Answer: A
NEW QUESTION 229
Which of the following is the encryption technology used in the digital envelope?
- A. Asymmetric encryption algorithm
- B. Symmetric encryption algorithm
- C. Hashing algorithm
- D. Streaming algorithm
Answer: A
NEW QUESTION 230
What protection levels are included in TCSEC standard? (Multiple Choice)
- A. Verification Protection
- B. Passive Protection
- C. Self-protection
- D. Forced Protection
Answer: A,C,D
NEW QUESTION 231
As shown in the figure, the nat server global 202.106.1.1 inside 10.10.1.1 is configured on the firewall. Which of the following configuration is correct for inter-domain rules?
- A. rule name b, source-zone untrust, destination-zone trust, source-address 202.106.1.1 32, action permit
- B. rule name b, source-zone untrust, destination-zone trust, source-address 10.10.1.1 32, action permit
- C. rule named, source-zone untrust, destination-zone trust, destination-address 10.10.1.1 32, action permit
- D. rule name c, source-zone untrust, destination-zone trust, destination-address 202.106.1.1 32, action permit
Answer: C
NEW QUESTION 232
Which of the following descriptions about dual-system hot backup is wrong?
- A. Whether it is a Layer 2 or Layer 3 interface, whether it is a business interface or a heartbeat interface, it needs to be added to the security zone
- B. The dual-system hot backup function requires license support
- C. The preemption delay is 60s by default
- D. The active preemption function is enabled by default
Answer: B
NEW QUESTION 233
In which of the following scenarios does the firewall generate a server map table? (Multiple choice)
- A. Security policies are deployed on the firewall and traffic is released
- B. NAT Server is deployed on the firewall
- C. If the firewall generates a session table, it will generate a Server-map table
- D. ASPF is deployed on the firewall and the traffic of the multi-channel protocol is forwarded
Answer: B,D
NEW QUESTION 234
When NAT Server is configured on the USG system firewall, a server-map table will be generated. Which of the following is not included in the table?
- A. Protocol number
- B. Source IP
- C. Destination IP
- D. Destination port number
Answer: B
NEW QUESTION 235
What item is not included in the design principle of questionnaire surveys?
- A. Consistency
- B. Openness
- C. Specificity
- D. Integrity
Answer: B
NEW QUESTION 236
Security policy conditions can be divided into multiple fields, such as source address, destination address, source port, destination port, etc. These fields have an "and" relationship, that is, only the information in the message matches all fields It is considered that this strategy has been hit by the above.
- A. True
- B. False
Answer: A
NEW QUESTION 237
When an information security incident occurs, the priority is to adopt _____ emergency response to provide customers with technical technical support.
- A. MPDRR
Answer: A
NEW QUESTION 238
Which of the following is the status information that can be backed up by the HRP (Huawei Redundancy Protocol) protocol? (Multiple Choice)
- A. Conference table
- B. Routing table
- C. Dynamic blacklist
- D. ServerMap entry
Answer: A,C,D
NEW QUESTION 239
......
Get H12-711_V3.0-ENU Braindumps & H12-711_V3.0-ENU Real Exam Questions: https://passleader.briandumpsprep.com/H12-711_V3.0-ENU-prep-exam-braindumps.html
