Huawei H12-711 Daily Practice Exam New 2021 Updated 290 Questions [Q76-Q98]

Share

Huawei H12-711 Daily Practice Exam  New 2021 Updated 290 Questions

Use Valid H12-711 Exam - Actual Exam Question & Answer

NEW QUESTION 76
A company employee account authority expires, but can still use the account to access the company server.
What are the security risks of the above scenarios? (Multiple Choice)

  • A. Access security risk
  • B. System security risk
  • C. Managing security risk
  • D. Physical security risk

Answer: A,B,C

 

NEW QUESTION 77
Data analysis technology is to find and -natch keywords or key ohrases in the acquired data stream or information flow, and analyze: he correlation of time. Which of the following is not an evidence analysis technique?

  • A. Password deciphering, data decryption technology
  • B. Techniques for discovering the connections between different evidences
  • C. Spam tracking technology
  • D. Document Digital Abstract Analysis Technology

Answer: C

 

NEW QUESTION 78
HTTP packets are carried by UDP, and the HTTPS protocol is based on TCP three-way handshake. Therefore, HTTPS is relatively secure, and HTTPS is recommended.

  • A. True
  • B. False

Answer: B

 

NEW QUESTION 79
How to view the matching number of security policy?

  • A. display policy all
  • B. display startup saved-configuration
  • C. display current-configuration
  • D. display device

Answer: A

 

NEW QUESTION 80
Check the firewall HRP status information as follows:
HRP_S [USG_ B] display hrp state 16:90: 13 2010/11/29 The firewall's config state is : SLAVE Current state of virtual routers configured as slave GigabitEthernet0/0/0 vird 1 : slave GigabitEthernet0/0/1 vied 2 : slave Which of the following description is correct?

  • A. The firewall VGMP group status is Master
  • B. The firewall G0/0/0 and 0/1 GO / interface of VRRP group status is Slave
  • C. The firewall must be in a state of preemption
  • D. The firewall ofHRP heartbeats interface is G0/0/0 and G0/0/1

Answer: B

 

NEW QUESTION 81
What is the difference between network address porttranslation (NAT) and conversion-only network address (No- PAT)? (Multiple Choice)

  • A. NAPT only supports protocol address translation at the network layer.
  • B. No-PAT supports protocol address translation at the network layer
  • C. After NATP conversion, for external network users, all messages are from the same IP address or several IP addresses.
  • D. No-PAT only supports protocol address translationat the application layer.

Answer: B,C

 

NEW QUESTION 82
After the firewall uses the hrp standby config enable command to enable the standby device configuration function, all the information that can be backed up can bedirectly configured on the standby device, and the configuration on the standby device can be synchronized to the active device.

  • A. True
  • B. False

Answer: A

 

NEW QUESTION 83
Whenconfiguring a GRE tunnel interface, the destination address generally refers to which of the following parameters?

  • A. IP address of the peertunnel interface
  • B. Local end network export IP address
  • C. Peer external network export IP address
  • D. Local tunnel interface IP address

Answer: C

 

NEW QUESTION 84
About the descriptions of windows Firewall Advanced Settings, which of the following is wrong? (Multiple choice)

  • A. When setting the pop-up rule, both local ports and remote ports can be restricted.
  • B. When setting the stacking rule, only the local port can be restricted, and the remote port cannot be restricted,
  • C. When setting the stacking rule, both the local port and the remote port can be restricted.
  • D. When setting the pop-up rule, only the local port can be restricted, and the remote port cannot be restricted,

Answer: A,C

 

NEW QUESTION 85
Which of the following is true about the description of the TCP/IP protocol stack packet encapsulation?
(Multiple choice)

  • A. After the transport layer (TCP) receives the data packet, the transport layer information is stripped after parsing, and the upper layer processing protocol, such as UDP, is known according to the parsing information
  • B. After receiving the data packet, the network layer is stripped after parsing, and the upper layer processing protocol is known according to the parsing information, such as HTTP
  • C. After the application layer receives the data packet, the application layer information is stripped after parsing, and the user data displayed at the end is exactly the same as the data sent by the sender host.
  • D. The data packet is firsttransmitted to the data link layer. After parsing, the data link layer information is stripped, and the network layer information is known according to the parsing information, such as IP.

Answer: C,D

 

NEW QUESTION 86
Which of the following addresses can be used for web management address of USG product? (Choose three.)

  • A. Slave IP address of the interface
  • B. Interface Address
  • C. Sub-interface address
  • D. AUX interface address

Answer: A,B,C

 

NEW QUESTION 87
Evidence identification needs to resolve the integrity verification of the evidence and determine whether it meets the applicable standards. Which of the following statements iscorrect about the standard of evidence identification?

  • A. Objective standard means that the acquisition, storage, and submission of electronic evidence should be legal, and the basic rights such as national interests, social welfare, and personal privacy are not strictly violated
  • B. Relevance criterion means that if the electronic evidence can have a substantial impact on the facts of the case to s certain extent, the court should determine that it is relevant.
  • C. Legality standard is to ensure that the electronic evidence is collected from the initial collection, and there is no change in the content of the evidence submitted as evidence.
  • D. Fairness standard refers to the evidence obtained by the legal subject through egal means, which has the evidence ability.

Answer: B

 

NEW QUESTION 88
To implement the " anti-virus function " in the security policy, you must perform a License activation

  • A. True
  • B. False

Answer: A

 

NEW QUESTION 89
Device destruction attacks are generally not easy to cause information leakage, but usually cause network communication services to be interrupted.

  • A. True
  • B. False

Answer: A

 

NEW QUESTION 90
In the environment of GRE configuration, which of the following statements are true? (Choose three.)

  • A. If both ends enable the configuration of keyword verification, the keyword must be the same
  • B. When the local device send data packets, by identifying the protocol field value of IP header for GRE to determine whether send the data packet to GRE module for processing
  • C. In order to make the ends of the tunnel forward data packets normally, the devices of both ends are configured routing which through the Tunnel interface
  • D. When the opposite end receives data packets, by identifying the protocol field value of IP header for GRE to determine whether send the data packet to GRE module for processing

Answer: A,C,D

 

NEW QUESTION 91
Which of the following is not a key technology for anti-virus software?

  • A. Self-protection
  • B. Real-time upgrade ofthe virus database
  • C. Shelling technology
  • D. Format the disk

Answer: D

 

NEW QUESTION 92
After the network intrusion event occurs,according to the plan to obtain the identity of the intrusion, the attack source and other information, and block the intrusion behavior, which links of the above actions are involved in the PDRR network security model? (Multiple Choice)

  • A. Recovery link
  • B. Response link
  • C. Testing link
  • D. Protection link

Answer: B,C

 

NEW QUESTION 93
The preservation of electronicevidence is directly related to the legal effect of evidence, and it is in conformity with the preservation of legal procedures, and its authenticity and reliability are guaranteed. Which of the following is not an evidence preservation technique?

  • A. Encryption technology
  • B. Packet tag tracking technology
  • C. Digital signature technology
  • D. Digital certificate technology

Answer: B

 

NEW QUESTION 94
As shown, when configuring the point-to-multipoint scenarios, the headquarters network segment is
10.1.1.0/24, the segment of branch 1 is 10.1.2.0/24, of branch 2 is 10.1.3.0/24.
About the protected data flow configuration which defined by headquarters and branch offices, which of the following combinations can be the full matched requirements?

  • A. 1 2 4 6
  • B. 3 4 5 6
  • C. 1 2 3 5
  • D. 1 2

Answer: C

 

NEW QUESTION 95
The attacker by sending ICMP response request, and will request packet destination address set to suffer Internet radio address. Which kind of attack does this behavior belong to9

  • A. Smurf attack
  • B. IP spoofing attack
  • C. SYN flood attack
  • D. ICMP redirect attack

Answer: A

 

NEW QUESTION 96
Which of the following are the hazards of traffic attacks? (Multiple choice)

  • A. Network paralysis
  • B. The page has been tampered with
  • C. Data is stolen
  • D. Server downtime

Answer: A,D

 

NEW QUESTION 97
Which of the following attacks is not a malformed packet attack?

  • A. ICMP unreachable packet attack
  • B. Teardrop attack
  • C. TCP fragmentation attack
  • D. Smurf attack

Answer: A

 

NEW QUESTION 98
......

Test Engine to Practice H12-711 Test Questions: https://www.actualpdf.com/H12-711_exam-dumps.html