Passcert Huawei H12-711-ENU HCNA-Security-CBSN exam dumps are covered by the Passcert guarantee. The Huawei H12-711-ENU HCNA-Security-CBSN exam dumps are constantly being updated and revised, for the highest Passcert H12-711-ENU training experience. Get certified today by using our excellent Huawei H12-711-ENU HCNA-Security-CBSN exam dumps. Go ahead and add exam H12-711-ENU to your cart and see the difference.Huawei exam H12-711-ENU is one of the premier exams in the H12-711-ENU examination and Huawei certification industry
Share some HCNA-Security H12-711-ENU exam questions and answers below.
HRP session fast backup is the main equipment of corresponding state information table fast backup to the backup device, so that return packets in an alternate device able to find the corresponding state information table entries, so as to ensure the business of internal and external users don't interrupt.
A. TRUE
B. FALSE
Answer: A
Terminal security system supports Bluetooth, SD card and other computer peripherals monitoring function, and support configuration peripheral equipment prohibited.
A. TRUE
B. FALSE
Answer: A
In which encapsulation mode can ESP packet realize the original IP header data confidentiality?
A. transfer Mode
B. tunnel mode
C. transfer Mode + tunnel mode
D. encryption mode
Answer: B
Through display ike sa to see the result as follows, which statements are correct? (Multiple choice)
current ike sa number: 1
-------------------------------------------------------------------------
connection-id peer vpn flag phase doi
-------------------------------------------------------------------------
0x1f1
2.2.2.1 0 RD|ST v1£º 1 IPSEC 0x6043dc4
Flag meaning
RD--READY ST--STAYALIVE RL--REPLACED FD--FADING TO--TIMEOUT
A. The first stage ike sa has been successfully established
B. The second stage ipsec sa has been successfully established
C. ike is using version v1
D. ike is using version v2
Answer: AC
Which of the following components are terminal security system mainly composed of ? ( multiple choice)
A. Anti-virus server
B. SC control server
C. Access control equipment
D. SM management server
Answer: BCD
Huawei USG firewall VRRP HELLO packets for multicast packets, it requires each router in the backup group must be able to achieve directly two layer interflow.
A. TRUE
B. FALSE
Answer: A
Which of the following does not belong to the AES secret key length?
A. 64
B. 128
C. 192
D. 256
Answer: A
Which of the following is non-symmetric encryption algorithm?
A. RC4
B. 3DES
C. AES
D. DH
Answer: D
In USG series firewall, use non-well-known port provides well-known application service, can adopt the following techniques:
A. port mapping
B. the MAC and IP address binding
C. packet filter
D. long connection
Answer: A
Intrusion prevention system technical characteristics include (multiple choice)
A. online mode
B. real-time blocking
C. self learning and adaptive
D. straight road deployment
Answer: ABC
When configuring firewall security level of security zone , which description is wrong?
A. The new security zone, the system default security level is 1
B. can only set the security level for the custom security zones
C. Once you set the security level, is not allowed to change
D. In the same system, two security zones do not allow to configure the same level of security
Answer: A
How to view the matching number of security policy?
A. display firewall sesstion table
B. display security policy all
C. display security-policy count
D. count security policy hit
Answer: B
About terminal security system deployment, which description is error?
A. The main characteristics of centralized deployment can be based on management terminal number, such as choice of SM, SC, database components installed on the same server.
B. terminal relatively concentrated in a few areas, and between regions is relatively small bandwidth of recommended distributed network
C. Terminal size is quite large, you can consider to use the centralized network deployment, avoid a large number of terminal access to the terminal server security, take up a lot of network bandwidth.
D. distributed deployment, security agents to choose the nearest terminal security control server SC, to obtain authentication and access control, and other business
Answer: C
In IPSEC VPN, which of the following scenarios can be applied by tunnel mode?
A. between the host and the host
B. between hosts and security gateways
C. between security gateways
D. Between tunnel mode and transport mode
Answer: C
When ARP address resolution, ARP-REPLY packets sent by means of broadcast, hosts are able to receive on the same Layer 2 network , and thus learn the corresponding relations between the IP and MAC address.
A. TRUE
B. FALSE
Answer: B
Passcert Huawei H12-711-ENU HCNA-Security-CBSN exam dumps can help you to come true your dreams. Because it contains all the questions of Huawei H12-711-ENU examination. With Passcert Huawei H12-711-ENU HCNA-Security-CBSN exam dumps, you could throw yourself into the exam preparation completely. With high quality Huawei H12-711-ENU HCNA-Security-CBSN exam dumps by Passcert provided, you will certainly pass the exam. Passcert can give you a brighter future.

没有评论:
发表评论