Latest Nov 25, 2021 Real H12-722_V3.0 Exam Dumps Questions Valid H12-722_V3.0 Dumps PDF [Q64-Q87]

Share

Latest Nov 25, 2021 Real H12-722_V3.0 Exam Dumps Questions Valid H12-722_V3.0 Dumps PDF

Huawei H12-722_V3.0 Exam Dumps - PDF Questions and Testing Engine

NEW QUESTION 64
In order to protect the security of data transmission, more and more websites or companies choose to use SSL to encrypt transmissions in the stream. About using Huawei NIP6000 The product performs threat detection on (SSL stream boy, which of the following statements is correct?

  • A. After the process of "decryption", "threat detection", and "encryption"
  • B. NIP0OO does not support SSL Threat Detection.
  • C. NIP can directly crack and detect SSL encryption.
  • D. The traffic after threat detection is sent directly to the server without encryption

Answer: A

 

NEW QUESTION 65
Which of the following options is correct for the sequence of the flow-by-stream detection of AntiDDoS?
1. The Netflow analysis device samples the current network flow;
2. Send a drainage command to the cleaning center;
3. Discover the DDoS attack stream;
4.Netior: analysis equipment sends alarms to ATIC management center
5. The abnormal flow is diverted to the cleaning center for further inspection and cleaning;
6. The cleaning center sends the host route of the attacked target IF address server to the router to achieve drainage
7. The cleaning log is sent to the management center to generate a report;
8. The cleaned traffic is sent to the original destination server.

  • A. 1-3-4-2-5-6-7-8
  • B. 1-3-24-6-5-8-7
  • C. 1-3-4-2-6-5-8-7
  • D. 1-3-2-4-6-5-7-8

Answer: C

 

NEW QUESTION 66
The administrator has made the following configuration:
1. The signature set Protect_ all includes the signature ID3000, and the overall action of the signature set is to block.
2. The action of overwriting signature ID3000 is an alarm.

  • A. Unable to determine the action of signature ID3000
  • B. The action of signing ID3000 is to block
  • C. The action of signing iD3000 is an alarm
  • D. The signature set is not related to the coverage signature

Answer: C

 

NEW QUESTION 67
Which of the following files can the sandbox detect? (multiple choice)

  • A. PE file
  • B. Picture file
  • C. www file
  • D. Mail

Answer: A,B,C

 

NEW QUESTION 68
In the big data intelligent security analysis platform, it is necessary to collect data from data sources, and then complete a series of actions such as data processing, detection and analysis, etc.
Which of the following options does not belong to the action that needs to be completed in the data processing part?

  • A. Data preprocessing
  • B. Distributed storage
  • C. Distributed index
  • D. Threat determination

Answer: D

 

NEW QUESTION 69
Which three aspects should be considered in the design of cloud platform security solutions? (multiple choice)

  • A. Infrastructure security
  • B. Tenant security
  • C. Hardware maintenance
  • D. How to do a good job in management, operation and maintenance

Answer: A,B,D

 

NEW QUESTION 70
After the user deploys the firewall anti-virus strategy, there is no need to deploy anti-virus software

  • A. False.
  • B. True

Answer: A

 

NEW QUESTION 71
Analysis is the core function of intrusion detection. The analysis and processing process of intrusion detection can be divided into three phases; build an analyzer to perform analysis on actual field data.
Which of the analysis, feedback and refinement is the function included in the first two stages?

  • A. Data processing, data classification, post-processing
  • B. Data analysis, data classification, post-processing
  • C. Data processing, data classification, attack playback
  • D. Data processing, attack classification, post-processing

Answer: A

 

NEW QUESTION 72
With regard to APT attacks, the attacker often lurks for a long time and launches a formal attack on the enterprise at the key point of the incident.
Generally, APT attacks can be summarized into four stages:
1. Collecting Information & Intrusion
2. Long-term lurking & mining
3. Data breach
4. Remote control and penetration
Regarding the order of these four stages, which of the following options is correct?

  • A. 2-3-4-1
  • B. 1-4-2-3
  • C. 1-2-4-3
  • D. 2-1-4-3

Answer: B

 

NEW QUESTION 73
Single-packet attacks are divided into scanning and snooping attacks, malformed packet attacks, and special packet attacks. Ping of death is a special packet attack.

  • A. False
  • B. True

Answer: A

 

NEW QUESTION 74
For the description of the principles of HTTP Flood and HTTPS Flood blow defense, which of the following options are correct? (multiple choice)

  • A. HTTPS Flood defense modes include basic mode, enhanced mode and 302 redirection.
  • B. HTTPS Flood defense can perform source authentication by limiting the request rate of packets.
  • C. The principle of HTTPS Flood attack is to request URIs involving database operations or other URIs that consume system resources, causing server resource consumption.
    Failed to respond to normal requests.
  • D. The principle of HTTPS Flood attack is to initiate a large number of HTTPS connections to the target server, causing the server resources to be exhausted and unable to respond to regular requests.
    begging.

Answer: B,C,D

 

NEW QUESTION 75
Which patches does Policy Center support to management?(Choose 3 answers)

  • A. Microsoft SQL Windows database patch
  • B. android system patches
  • C. Microsoft Internet Explorer patches
  • D. Microsoft Windows operating system patches

Answer: A,C,D

 

NEW QUESTION 76
Regarding the enhanced mode in HTTP Flood source authentication, which of the following descriptions are correct? Multiple choices

  • A. The enhanced mode is superior to the basic mode in terms of user experience.
  • B. Enhanced mode supports all HTTP Flood source authentication fields. " WWQQ: 922333
  • C. Enhanced mode refers to the authentication method using verification code.
  • D. Some bots have a redirection function, or the free proxy used during the attack supports the redirection function, which leads to the failure of the basic mode of defense Effective, enhanced mode can effectively defend.

Answer: C,D

 

NEW QUESTION 77
The anti-virus feature configured on the Huawei USG6000 product does not take effect. Which of the following are the possible reasons? (multiple choice)

  • A. No virus exceptions are configured.
  • B. The virus signature database version is older.
  • C. The anti-virus configuration file is configured incorrectly.
  • D. The security policy does not reference the anti-virus configuration file.

Answer: B,C,D

 

NEW QUESTION 78
Regarding the Anti-DDoS cloud cleaning solution; which of the following statements is wrong?

  • A. Ordinary attacks will usually be cleaned locally first.
  • B. The closer to the attacked self-labeled cloud cleaning service, the priority will be called.
  • C. If there is a large traffic attack on the network, send it to the cloud cleaning center to share the cleaning pressure.
  • D. Since the Cloud Cleaning Alliance will direct larger attack flows to the cloud for cleaning, it will cause network congestion.

Answer: D

 

NEW QUESTION 79
For Huawei USG600 products, which of the following statements about mail filtering configuration is correct?

  • A. When the spam processing action is an alert, the email will be blocked and an alert will be generated
  • B. You can control the size of the attachment of the received mail
  • C. Cannot control the number of received email attachments
  • D. Cannot perform keyword filtering on incoming mail

Answer: B

 

NEW QUESTION 80
What equipment do Policy Center supported servers include? (Choose 3 answers)

  • A. Internet behavior management equipment
  • B. remote control device
  • C. log collection server
  • D. mail server

Answer: A,B,D

 

NEW QUESTION 81
Which of the following features does Huawei NIP intrusion prevention equipment support? (multiple choice)

  • A. SSL traffic detection
  • B. Mail detection
  • C. Application identification and control
  • D. Virtual patch

Answer: A,C,D

 

NEW QUESTION 82
Which of the following options is not a special message attack?

  • A. Tracert packet attack
  • B. ICMP redirect message attack) 0l
  • C. IP fragment message item
  • D. Oversized ICMP packet attack

Answer: C

 

NEW QUESTION 83
Threats detected by the big data intelligent security analysis platform will be synchronized to each network device at the same time C and then collected from the network device Collect it in the log for continuous learning and optimization.

  • A. False
  • B. True

Answer: B

 

NEW QUESTION 84
SACG query right-manager information as follows, which options are correct? (Select 2 answers)

  • A. SACG and IP address 2.1.1.1 server linkage is not successful
  • B. master controller IP address is 2.1.1.1.
  • C. SACG linkage success with controller.
  • D. master controller IP address is 1.1.1.2.

Answer: A,C

 

NEW QUESTION 85
What content can be filtered by the content filtering technology of Huawei USG6000 products? (multiple choice)

  • A. Keywords contained in the content of the uploaded file
  • B. File type
  • C. Keywords contained in the downloaded file
  • D. File upload direction 335

Answer: A,C

 

NEW QUESTION 86
The security management system is only optional, and anti-virus software or anti-hacking technology can be a good defense against network threats.

  • A. False
  • B. True

Answer: A

 

NEW QUESTION 87
......

Reliable HCIP-Security H12-722_V3.0 Dumps PDF Nov 25, 2021 Recently Updated Questions: https://www.actualcollection.com/H12-722_V3.0-exam-questions.html