[2022] Verified H12-711_V3.0-ENU Dumps Q&As - 1 Year Free & Quickly Updates
Latest 2022 Realistic Verified H12-711_V3.0-ENU Dumps - 100% Free H12-711_V3.0-ENU Exam Dumps
NEW QUESTION 125
Drag the early warning levels of the network security emergency response on the left into the box on the right, and arrange them from top to bottom in order of severity.
Answer:
Explanation:
NEW QUESTION 126
Which of the following options are the key elements of information security protection? (Multiple Choice)
- A. Security products and technologies
- B. Asset management
- C. Safe operation and maintenance and management
- D. Personnel
Answer: A,C,D
NEW QUESTION 127
After the company ' s network administrator has configured the dual-system hot backup, he wants to check the status of the current VGMP group, so he typed in the command to display the following information
HRP_M<FW_A>__
Role: active, peer: active
Running priority: 45000, peer: 45000
Backup channel usage: 30X
Stable time: 1 days, 13 hours, 35 minutes
Last state change information: 2020-03-2216:01:56 HRP core state changed, old_state = normal ( active ) , new_state=normal ( active ) .1ocalpriority F 4
peer_priority = 45000.
Configuration:
hello interval: 1000ms
preempt: 60s
mirror configuration: off
mirror session: on
track trunk member: on
auto-sync configuration: on
auto-sync connection-status: on
adjust ospf cost: on
adjust ospfv3-cost: on
adjust bgp-cost: on
nat resource: off
Detail information:
Gigabit Ethernet 0/0/1: up
Gigabit Ethernet 0/0/3: up
ospf-cost: +0
Then the command he typed in the blank is________.
- A. display hrp state verbose
Answer: A
NEW QUESTION 128
In the symmetric encryption algorithm, the _______ algorithm is used in data communication channels, browsers or network links.
Answer:
Explanation:
Stream encryption
NEW QUESTION 129
Which of the following are necessary for firewall dual-machine hot backup scenarios? (Multiple choice)
- A. hrp preempt [delay interval]
- B. hrp interface interface-type interface-number
- C. hrp enable
- D. hrp mirror session enable
Answer: B,C
NEW QUESTION 130
Regarding the comparison between windows and linux, which of the following statements is wrong?
- A. Windows is open source, you can do whatever you want
- B. It is difficult for new linux users to get started, and some learning and guidance are needed.
- C. Linux is an open source code, you can do whatever you want
- D. Windows can be compatible with most software and play most games
Answer: A
NEW QUESTION 131
Regarding the description of the firewall fragment caching function, which of the following options are correct? (Multiple choice)
- A. By default, the maximum fragment cache number of an IPV4 message is 32, and the maximum fragment cache number of an IPv6 message is 255
- B. For fragmented packets, NAT ALG does not support the processing of SIP fragmented packets
- C. After configuring the direct forwarding of fragmented packets, the firewall will forward fragmented packets that are not the first fragment of packets according to the inter-domain security policy
- D. By default, the firewall caches fragmented packets
Answer: B,D
NEW QUESTION 132
Both GE1/0/1 and GE1/0/2 ports of the firewall belong to the DMZ zone. If you want to realize that the area connected by GE1/0/1 can access the area connected by GE1/0/2, which of the following is correct?
- A. Need to configure the security policy from local to DMZ
- B. No configuration required
- C. Need to configure inter-domain security policies
- D. Need to configure DMZ to local security policy
Answer: B
NEW QUESTION 133
Check the HRP status information of the firewall as follows:
HRP_S[USG_B] display hrp state
The firewall's config state is: Standby
Current state of virtual routers configured as standby:
GigabitEthernet1/0/0 vrid 1: standby
GigabitEthernet1/0/1 vrid 2: standby
According to the above information, which of the following description is correct?
- A. This firewall's HRP heartbeat interface is G1/0/0 and G1/0/1
- B. The VRRP group status of this firewall G1/0/0 and G1/0/1 interface is standby
- C. This firewall VGMP group status is Active
- D. This firewall must be in a preemptive state
Answer: B
NEW QUESTION 134
Which of the following are the response actions after the gateway anti-virus detects the mail virus? (Multiple choice)
- A. Block
- B. Delete attachment
- C. Declaration
- D. Warning
Answer: B,C,D
NEW QUESTION 135
Regarding the windows log, which of the following descriptions is wrong?
- A. Application log contains events recorded by applications or system programs, mainly recording events related to program operation
- B. The security log of windows server 2008 is stored in security.evtx
- C. The system log of windows server 2008 is stored in Application.evtx
- D. The system log is used to record events generated by operating system components, mainly including driver, system components and application software crashes and data
Answer: C
NEW QUESTION 136
The SSL VPN routing mode determines the route of the message sent by the client. In the _______ mode, no matter what resource is accessed, the data will be intercepted by the virtual network card and forwarded to the virtual gateway for processing.
- A. Network expansion
Answer: A
NEW QUESTION 137
In the USG series firewall system view, the device configuration will be restored to the default configuration after the reset saved-configuration command is executed, and it will take effect without other operations.
- A. False
- B. True
Answer: A
NEW QUESTION 138
Security policy conditions can be divided into multiple fields, such as source address, destination address, source port, destination port, etc. These fields have an "and" relationship, that is, only the information in the message and all fields If they all match, it is considered to have hit this strategy.
- A. False
- B. True
Answer: A
NEW QUESTION 139
Which of the following is the encryption technology used in the digital envelope?
- A. Asymmetric encryption algorithm
- B. Symmetric encryption algorithm
- C. Hashing algorithm
- D. Streaming algorithm
Answer: A
NEW QUESTION 140
Which of the following options are harmful to traffic-based attacks? (Multiple choices)
- A. Data is stolen
- B. The webpage has been tampered with
- C. The network is down
- D. Server down
Answer: C,D
NEW QUESTION 141
Gratuitous ARP can be used to detect if _____address conflicts, and it can also refresh the MAC address table of the switch.
- A. IP
Answer: A
NEW QUESTION 142
Which of the following does not belong to the log format of the firewall?
- A. ASCII encoding format
- B. net flow format
- C. Syslog format
- D. Binary format
Answer: A
NEW QUESTION 143
Which of the following NAT technologies can realize a public network address to provide source address translation for multiple private network addresses? (Multiple choice)
- A. NAT No-PAT
- B. NAT Server
- C. NAPT
- D. Easy-ip
Answer: C,D
NEW QUESTION 144
In the USG series firewall, you can use the ______ function to provide a well-known application service for the non-knowledge port.
- A. Port mapping
- B. Packing filter
- C. Long connection
- D. Mac and IP address binding
Answer: A
NEW QUESTION 145
The matching principle of the security policy is: first search for the manually configured inter-domain security policy, if it does not match, then directly discard the data packet.
- A. True
- B. False
Answer: A
NEW QUESTION 146
In tunnel encapsulation mode, there is no need to have the routing to the destination private network segment, because the data will reseal using the new IP header to find routing table.
- A. False
- B. True
Answer: A
NEW QUESTION 147
Which of the following is not the default security zone of the firewall?
- A. trust zone
- B. isp zone
- C. untrust trust
- D. dmz zone
Answer: B
NEW QUESTION 148
The HRP (Huawei Redundancy Protocol) protocol is used to synchronize the key configuration and connection status of the firewall to the standby firewall. Which of the following options does not belong to the scope of synchronization?
- A. NAT strategy
- B. Security strategy
- C. IPS signature set
- D. Blacklist
Answer: C
NEW QUESTION 149
In the classification of the information security level protection system, which of the following levels defines if the information system is damaged, it will damage the social order and public interests? (Multiple choice)
- A. Level 3 Security mark protection
- B. Second level System audit protection level
- C. Level 4 Structured protection
- D. First level User self-protection level
Answer: A,B,C
NEW QUESTION 150
......
H12-711_V3.0-ENU Dumps PDF and Test Engine Exam Questions: https://www.braindumpsvce.com/H12-711_V3.0-ENU_exam-dumps-torrent.html