
2021 100% Free H12-722_V3.0 Daily Practice Exam With 189 Questions
H12-722_V3.0 exam torrent Huawei study guide
NEW QUESTION 63
When a virus is detected in an email, which of the following is not the corresponding action for detection?
- A. Warning
- B. Block
- C. Delete attachments
- D. Declare
Answer: B
NEW QUESTION 64
For the description of the Anti DDOS system, which of the following options is correct? C
- A. The firewall can only be used for inspection equipment
- B. The main function of the Green Washing Center is to detect and analyze DDoS attack traffic on the flow from mirroring or splitting, and provide analysis data to The management center makes a judgment.
- C. The management center mainly completes the processing of attack events, controls the drainage strategy and cleaning strategy of the cleaning center, and responds to various attack events and attack flows.
View in categories and generate reports. - D. The detection center is mainly to pull and clean the attack flow according to the control strategy of the security management center, and re-inject the cleaned normal flow back to the customer.
User network, send to the real destination.
Answer: C
NEW QUESTION 65
Place refers to the terminal environment when end-user use strategy management center access to controlled network office, which options are correct about place? (Choose 2 answers)
- A. The default place only support by way of cable access network scenario
- B. strategy management center only support the default place
- C. can be customized places
- D. when allocation strategy template for the end user, need to select the corresponding places
Answer: C,D
NEW QUESTION 66
Which of the following options are the possible reasons why a certain signature is not included after the IPS policy configuration is completed? (multiple choice)
- A. The severity level of the configuration is too high
- B. The protocol selection technique is correct
- C. The direction is turned on, but no specific direction is selected
- D. Direction is not enabled
Answer: A,B,C
NEW QUESTION 67
For full encryption registered mobile storage devices must be formatted to normal use in not installed NAC client terminal host.
- A. FALSE
- B. TRUE
Answer: B
NEW QUESTION 68
For SYIN Flood attacks, TCP source authentication and TCP proxy can be used for defense. Which of the following descriptions is correct?
- A. TCP source authentication is added to the whitelist after the source authentication of the client is passed, and the SYN packet of this source still needs to be verified in the future.
- B. TCP source authentication has the restriction that the return path must be consistent, so the application of TCP proxy is not common. State "QQ: 9233
- C. During the TCP proxy process, the firewall will proxy and respond to each SYN message received, and maintain a semi-connection, so when the SYN message is When the document flow is heavy, the performance requirements of the firewall are often high.
- D. TCP proxy means that the firewall is deployed between the client and the server. When the SYI packet sent by the client to the server passes through the firewall, the The firewall replaces the server and establishes a three-way handshake with the client. Generally used in scenarios where the back and forth paths of packets are inconsistent.
Answer: C
NEW QUESTION 69
Due to differences in network environment and system security strategies, intrusion detection systems are also different in specific implementation. From the perspective of system composition, the main Which four major components are included?
- A. Incident extraction, intrusion analysis, intrusion response and remote management.
- B. Incident recording, intrusion analysis, intrusion response and remote management.
- C. Event extraction, intrusion analysis, reverse intrusion and remote management.
- D. Incident extraction, intrusion analysis, intrusion response and on-site management.
Answer: A
NEW QUESTION 70
Based on the anti-virus gateway of streaming scan, which of the following descriptions is wrong?
- A. The performance is higher than the agent-based method
- B. The detection rate is higher than the proxy-based scanning method
- C. Rely on state detection technology and protocol analysis technology
- D. The cost is smaller than the agent-based approach
Answer: B
NEW QUESTION 71
Part of the reason why the APT attack becomes difficult to defend is that it uses the vulnerabilities to attack.
This kind of zero-day hole usually requires flowers
A lot of time to research and analyze and produce corresponding defense methods.
- A. True
- B. False
Answer: A
NEW QUESTION 72
For the description of the principles of HTTP Flood and HTTPS Flood blow defense, which of the following options are correct? (multiple choice)
- A. HTTPS Flood defense modes include basic mode, enhanced mode and 302 redirection.
- B. The principle of HTTPS Flood attack is to initiate a large number of HTTPS connections to the target server, causing the server resources to be exhausted and unable to respond to regular requests.
begging. - C. HTTPS Flood defense can perform source authentication by limiting the request rate of packets.
- D. The principle of HTTPS Flood attack is to request URIs involving database operations or other URIs that consume system resources, causing server resource consumption.
Failed to respond to normal requests.
Answer: B,C,D
NEW QUESTION 73
The analysis and processing capabilities of traditional firewalls at the application layer are weak, and they cannot correctly analyze malicious codes that are mixed in the flow of allowed application teaching: many Attacks or malicious behaviors often use the firewall's open application data flow to cause damage, causing application layer threats to penetrate the firewall
- A. True
- B. False
Answer: A
NEW QUESTION 74
Regarding worms and viruses, which of the following statements is correct?
- A. Worms exist in a parasitic way
- B. Viruses mainly rely on system vulnerabilities to spread
- C. The virus exists independently in the computer system.
- D. The target of the worm infection is other computer systems on the network.
Answer: D
NEW QUESTION 75
Regarding the sequence of the mail transmission process, which of the following is correct?
1. The sender PC sends the mail to the designated SMTP Server.
2. The sender SMTP Server encapsulates the mail information in an SMTP message and sends it to the receiver SMTP Server according to the destination address of the mail
3. The sender SMTP Server encapsulates the mail information in an SMTP message according to the destination address of the mail and sends it to the receiver POP3/MAP Senver
4. The recipient sends an email.
- A. 1->2->4,
- B. 1->3->2
- C. 1->2->3
- D. 1->4->3
Answer: A
NEW QUESTION 76
Which of the following options is not a cyber security threat caused by weak personal security awareness?
- A. Disclosure of personal information
- B. Leaking corporate information
- C. Threats to the internal network
- D. Increasing the cost of enterprise network operation and maintenance
Answer: D
NEW QUESTION 77
Regarding the enhanced mode in HTTP Flood source authentication, which of the following descriptions are correct? Multiple choices
- A. Some bots have a redirection function, or the free proxy used during the attack supports the redirection function, which leads to the failure of the basic mode of defense Effective, enhanced mode can effectively defend.
- B. The enhanced mode is superior to the basic mode in terms of user experience.
- C. Enhanced mode supports all HTTP Flood source authentication fields. " WWQQ: 922333
- D. Enhanced mode refers to the authentication method using verification code.
Answer: A,D
NEW QUESTION 78
Which of the following options belong to the network layer attack of the TCP/IP protocol stack? (multiple choice)
- A. Address scanning
- B. Buffer overflow p
- C. IP spoofing
- D. Port scan
Answer: A,C
NEW QUESTION 79
Buffer overflows, Trojan horses, and backdoor attacks are all attacks at the application layer.
- A. True
- B. False
Answer: A
NEW QUESTION 80
An enterprise has 3 server, which is the most reasonable plan when deploy Policy Center system planning?
- A. manager + controller + FTP + mirror database, controller + FTP + witness database, controller + FTP + master database
- B. manager + controller + FTP + witness database, controller + master database + FTP, controller + mirror database+ FTP
- C. manager + controller + FTP, controller + FTP + witness databases, controller + FTP + master database
- D. manager + controller + FTP + master database, controller + FTP + witness database, controller + FTP
+ mirror database
Answer: B
NEW QUESTION 81
For the description of URPF technology, which of the following options are correct? (multiple choice)
- A. The main function is to prevent network attacks based on source address spoofing.
- B. The loose mode not only requires corresponding entries in the forwarding table, but also requires that the interface must match to pass the URPF check.
- C. Use URPF's loose mode in an environment where routing symmetry cannot be guaranteed.
- D. In strict mode, it does not check whether the interface matches. As long as there is a route to the source address, the message can pass.
Answer: A,C
NEW QUESTION 82
Threats detected by the big data intelligent security analysis platform will be synchronized to each network device at the same time C and then collected from the network device Collect it in the log for continuous learning and optimization.
- A. True
- B. False
Answer: A
NEW QUESTION 83
Cloud sandbox refers to deploying the sandbox in the cloud and providing remote detection services for tenants. The process includes:
1. Report suspicious files
2. Retrospective attack
3. Firewall linkage defense
4. Prosecution in the cloud sandbox
For the ordering of the process, which of the following options is correct?
- A. 1-4-2-3
- B. 1-4-3-2
- C. 3-1-4-2
- D. 1-3-4-2
Answer: B
NEW QUESTION 84
SQI Server2005 may not be properly installed, which of the following may be the possible reasons?
- A. without prior installation of Microsoft SQL Server 2005 Toolkit
- B. The operating system is Microsoft Windows Server 2003
- C. equipment 21 port is occupied
- D. 1433 port are occupied by the other processes
Answer: D
NEW QUESTION 85
What content can be filtered by the content filtering technology of Huawei USG6000 products? (multiple choice)
- A. File type
- B. Keywords contained in the content of the uploaded file
- C. Keywords contained in the downloaded file
- D. File upload direction 335
Answer: B,C
NEW QUESTION 86
In the deployment of Huawei NIP6000 products, only port mirroring can be used for streaming replication.
- A. True
- B. False
Answer: B
NEW QUESTION 87
......
Use Valid New H12-722_V3.0 Test Notes & H12-722_V3.0 Valid Exam Guide: https://realpdf.pass4suresvce.com/H12-722_V3.0-pass4sure-vce-dumps.html