[Jan 18, 2022] H12-722_V3.0 Exam Dumps 100% Same Q&A In Your Real Exam
H12-722_V3.0 Test Engine Dumps Training With 189 Questions
NEW QUESTION 79
In the Huawei USG6000 product, after creating or modifying the security configuration file, the configuration content will not take effect immediately: you need to click the "Prompt" in the upper right corner of the interface.
"Hand in" to activate.
- A. True
- B. False
Answer: A
NEW QUESTION 80
Which patches does Policy Center support to management?(Choose 3 answers)
- A. Microsoft SQL Windows database patch
- B. android system patches
- C. Microsoft Internet Explorer patches
- D. Microsoft Windows operating system patches
Answer: A,C,D
NEW QUESTION 81
Regarding intrusion detection I defense equipment, which of the following statements are correct? (multiple choice)
- A. Protect the intranet from external attacks, and inhibit malicious flows, such as spyware, worms, etc.
from flooding and spreading to the intranet. - B. Ability to quickly adapt to threat changes
- C. It cannot effectively prevent the virus from spreading from the Internet to the intranet.
- D. The number of applications that NIP6000 can recognize reaches 6000+, which realizes refined application protection, saves export bandwidth, and guarantees key business services Experience.
Answer: A,B,D
NEW QUESTION 82
When configuring the terminal visits, we put some equipment configured exception equipment ,which of the following statements are true about the exception equipment?
- A. terminal in isolation domain can not access exception equipment .
- B. the exception equipment IP is not in controlled network segment.
- C. through identity authentication terminals can access exception equipment.
- D. only through security authentication terminals can access exception equipment.
Answer: B,C
NEW QUESTION 83
Threats detected by the big data intelligent security analysis platform will be synchronized to each network device at the same time C and then collected from the network device Collect it in the log for continuous learning and optimization.
- A. True
- B. False
Answer: A
NEW QUESTION 84
Which of the following options belong to the upgrade method of the anti-virus signature database of Huawei USG6000 products? (multiple choice)
- A. Online upgrade
- B. Manual upgrade
- C. Local upgrade
- D. Automatic upgrade
Answer: A,C
NEW QUESTION 85
Regarding the mail content filtering configuration of Huawei USG6000 products, which of the following statements is wrong?.
- A. When a POP3 message is detected, if it is judged to be an illegal email, the firewall's response action only supports sending alarm information, and will not block the email o
- B. Mail filtering will only take effect when the mail filtering configuration file is invoked when the security policy is allowed.
- C. When an IMAP message is detected, if it is judged to be an illegal email; the firewall's response action only supports sending alarm messages and will not block the email.
- D. The attachment size limit is for a single attachment, not for the total size of all attachments.
Answer: A
NEW QUESTION 86
Which of the following options is correct for the sequence of the flow-by-stream detection of AntiDDoS?
1. The Netflow analysis device samples the current network flow;
2. Send a drainage command to the cleaning center;
3. Discover the DDoS attack stream;
4.Netior: analysis equipment sends alarms to ATIC management center
5. The abnormal flow is diverted to the cleaning center for further inspection and cleaning;
6. The cleaning center sends the host route of the attacked target IF address server to the router to achieve drainage
7. The cleaning log is sent to the management center to generate a report;
8. The cleaned traffic is sent to the original destination server.
- A. 1-3-24-6-5-8-7
- B. 1-3-4-2-6-5-8-7
- C. 1-3-4-2-5-6-7-8
- D. 1-3-2-4-6-5-7-8
Answer: B
NEW QUESTION 87
When the Anti DDoS system finds the attack flow, the state will redirect the attack flow to the cleaning device.
After the cleaning device is cleaned, it will flow back.
Note to the original link, which of the following options does not belong to the method of re-injection?
- A. GRE back note:
- B. MPLS LSP back injection
- C. BGP back-annotation
- D. Policy routing back annotation,
Answer: C
NEW QUESTION 88
Regarding the global configuration of file filtering configuration files for Huawei USG6000 products, which of the following descriptions is correct?
- A. When the number of compression layers of a file is greater than the configured "Maximum Decompression Layers", the firewall cannot filter the file.
- B. File filtering, content filtering and anti-virus detection cannot be performed when the file is damaged. At this time, the documents can be released or blocked according to business requirements.
- C. When the file type cannot be recognized, file filtering, content filtering and anti-virus detection are not performed.
- D. When the file extension does not match, if the action is "Allow" or "Alarm", file filtering, content filtering and anti-virus are performed according to the file type Detection.
Answer: A
NEW QUESTION 89
The IPS function of Huawei USG6000 supports two response methods: blocking and alarming.
- A. True
- B. False
Answer: A
NEW QUESTION 90
In order to protect the security of data transmission, more and more websites or companies choose to use SSL to encrypt transmissions in the stream. About using Huawei NIP6000 The product performs threat detection on (SSL stream boy, which of the following statements is correct?
- A. After the process of "decryption", "threat detection", and "encryption"
- B. NIP0OO does not support SSL Threat Detection.
- C. The traffic after threat detection is sent directly to the server without encryption
- D. NIP can directly crack and detect SSL encryption.
Answer: A
NEW QUESTION 91
Which of the following files can the sandbox detect? (multiple choice)
- A. PE file
- B. www file
- C. Picture file
- D. Mail
Answer: A,B,C
NEW QUESTION 92
Fage attack means that the original address and target address of TOP are both set to the IP address of a certain victim. This behavior will cause the victim to report to it.
SYN-ACK message is sent from the address, and this address sends back an ACK message and creates an empty connection, which causes the system resource board to occupy or target The host crashed.
- A. True
- B. False
Answer: B
NEW QUESTION 93
The results of the RBL black and white list query on the firewall are as follows:
Based on the above information only, which of the following statements is correct? (multiple choice)
- A. Mail with source address 10.17.1.0/24 will be blocked
- B. Mail with source address 10.18.1.0/24 will be blocked
- C. Mail with source address 10.17.1.0/24 will be released
- D. Mail with source address 10.18.1.0/24 will be released
Answer: C,D
NEW QUESTION 94
Content filtering is a security mechanism for filtering the content of files or applications through Huawei USCG00 products. Focus on the flow through deep recognition Contains content, the device can block or alert traffic containing specific keywords.
- A. True
- B. False
Answer: A
NEW QUESTION 95
Which of the following elements does PDCA include? (Choose 3 answers)
- A. Monitoring
- B. Plan
- C. Implementation
- D. termination
Answer: A,B,C
NEW QUESTION 96
Regarding the file filtering technology in the USG6000 product, which of the following options is wrong?
- A. It can identify the type of files transmitted by itself, and can block, alert and announce specific types of files.
- B. It supports filtering the contents of compressed files after decompression. "
- C. Even if the file type is modified, it can also identify the true type of the file
- D. It can identify the application that carries the file, the file transfer direction, the file type and the file extension.
Answer: A
NEW QUESTION 97
Information security is the protection of information and information systems to prevent unauthorized access, use, leakage, interruption, modification, damage, and to improve For confidentiality, integrity and availability. ,
- A. True
- B. False
Answer: A
NEW QUESTION 98
The following figure shows the configuration of the URL filtering configuration file. Regarding the configuration, which of the following statements is correct?
- A. The default action means that all websites are allowed to visit. So the configuration is wrong here.
- B. The user visits the website www.exzample.com, and when the black and white list is not hit, the next step is to query the predefined URL category entry.
- C. Assuming that the user visits the www.exzample.com website, which belongs to the categories of humanities and social networks at the same time, the user cannot access the website.
- D. The firewall will first check the blacklist entries and then the whitelist entries.
Answer: C
NEW QUESTION 99
When you suspect that the company's network has been attacked by hackers, you have carried out a technical investigation. Which of the following options does not belong to the behavior that occurred in the early stage of the attack?
- A. Planting malware
- B. Vulnerability attack"
- C. Brute force
- D. We6 Application Click
Answer: A
NEW QUESTION 100
......
H12-722_V3.0 Practice Test Pdf Exam Material: https://www.itexamreview.com/H12-722_V3.0-exam-dumps.html
