Master 2021 Latest The Questions HCNP-Security and Pass H12-722-ENU Real Exam! [Q58-Q83]

Share

Master 2021 Latest The Questions HCNP-Security and Pass H12-722-ENU  Real Exam!

Penetration testers simulate H12-722-ENU exam PDF

NEW QUESTION 58
For the URL is htpt://www.abcd. com:8080/news/education. aspx?name=tom&age=20, which option is path?

  • A. htttp://www.abcd. com:8080,te
  • B. /news/education. aspx
  • C. htttp://www.abcd. com:8080/news/education. aspx
  • D. /news/education. aspx?name=tom&age=20

Answer: B

 

NEW QUESTION 59
If the user's FTP operation matches the FTP filtering policy, what actions can be performed? (multiple choice)

  • A. Execution
  • B. Block
  • C. Declare
  • D. Alarm

Answer: B,D

 

NEW QUESTION 60
Which of the following is the correct configuration idea for the anti-virus strategy?
1. Load the feature library
2. Configure security policy and reference AV Profile
3. Apply and activate the license
4. Configure AV Profile
5. Submit

  • A. 3->1->4->2->5
  • B. 3->1->2->4->5
  • C. 3->2->1->4->5
  • D. 3->2->4->1->5

Answer: A

 

NEW QUESTION 61
When a data file hits the whitelist of the firewall's anti-virus module, the firewall will no longer perform virus detection on the file.

  • A. False
  • B. True

Answer: B

 

NEW QUESTION 62
IPS is an intelligent intrusion detection and defense product. It can not only detect the occurrence of intrusions, but also can respond in real time through certain response methods.
Stop the occurrence and development of intrusions, and protect the information system from substantial attacks in real time. According to the description of PS, the following items are wrong?

  • A. IPS is an intrusion detection system that can block real-time intrusions when found
  • B. IPS unifies IDS and firewall
  • C. IPS must use bypass deployment in the network
  • D. Common IPS deployment modes are in-line deployment,

Answer: C

 

NEW QUESTION 63
Which of the following options are common behavioral characteristics of viruses? (multiple choices)

  • A. Self-hidden features
  • B. Network attack characteristics
  • C. Information collection characteristics
  • D. Download and backdoor features

Answer: A,B,C,D

 

NEW QUESTION 64
The application behavior control configuration file takes effect immediately after being referenced, without configuration submission.

  • A. False
  • B. True

Answer: B

 

NEW QUESTION 65
Cloud sandbox refers to deploying the sandbox in the cloud and providing remote detection services for tenants. The process includes:
1. Report suspicious files
2. Retrospective attack
3. Firewall linkage defense
4. Prosecution in the cloud sandbox
For the ordering of the process, which of the following options is correct?

  • A. 1-4-2-3
  • B. 1-3-4-2
  • C. 3-1-4-2
  • D. 1-4-3-2

Answer: D

 

NEW QUESTION 66
What are the risks to information security caused by unauthorized access? (Multiple choices)

  • A. recoverability
  • B. Confidentiality
  • C. Availability
  • D. Integrity

Answer: B,D

 

NEW QUESTION 67
Which of the following are the network layer attacks of the TCP/IP stack? (Multiple Choices)

  • A. Buffer overflow
  • B. Address scan
  • C. IP spoofing
  • D. Port scanning

Answer: B,C

 

NEW QUESTION 68
Which of the following statements is wrong about anti-spam answerback codes?

  • A. The answerback code will be different for different RBL service providers.
  • B. The answerback code is uniformly set as 127.0.0.1.
  • C. USG treats the mail that matches the answerback code as spam.
  • D. Release the message if the answerback code does not reply to or the replied answerback code is not configured on the USG.

Answer: B

 

NEW QUESTION 69
Regarding the anti-spam response code, which of the following statements is wrong?

  • A. USG treats mails that match the answer code as spam.
  • B. The response code will vary depending on the RBL service provider.
  • C. If the response code is not returned or the response code is not configured on the USG, the mail is released.
  • D. The response code is specified as 127.0.0.1 in the second system.

Answer: D

 

NEW QUESTION 70
An enterprise administrator configures a Web reputation website in the form of a domain name, and configures the domain name as www. abc; example. com. .
Which of the following is the entry that the firewall will match when looking up the website URL?

  • A. www. abc. example. com
  • B. example. com
  • C. www.abc. example
  • D. example

Answer: D

 

NEW QUESTION 71
The most common form of child-like attack is to send a large number of seemingly legitimate packets to the target host through Flood, which ultimately leads to network bandwidth.
Or the equipment resources are exhausted. Which of the following options is not included in traffic attack packets?

  • A. FTP message
  • B. TCP packets
  • C. UDP packet
  • D. ICMP message

Answer: A

 

NEW QUESTION 72
Which of the following is wrong about intrusion prevention?

  • A. Intrusion prevention is a security mechanism that analyzes network traffic and detects intrusions (including buffer overflow attacks, Trojans, worms, etc.).
  • B. Intrusion prevention technology, after discovering intrusions, must link firewalls to prevent intrusions
  • C. Intrusion prevention is a new type of security technology that can detect and prevent intrusions.
  • D. Intrusion prevention can block attacks in real time.

Answer: B

 

NEW QUESTION 73
When users deploy a firewall anti-virus policy, there is no need to deploy anti-virus software.

  • A. FALSE
  • B. TRUE

Answer: A

 

NEW QUESTION 74
In the deployment of Huawei NIP6000 products, only port mirroring can be used for streaming replication.

  • A. False
  • B. True

Answer: A

 

NEW QUESTION 75
Regarding the network intrusion detection system (NIDS), which of the following statements is wrong?

  • A. Used to monitor network traffic, and can be deployed independently.
  • B. It is mainly used for real-time monitoring of the information of the critical path of the network, listening to all packets on the network, collecting data, and analyzing suspicious objects
  • C. Real-time monitoring through the network adapter, and analysis of all communication services through the network;
  • D. Use the newly received network packet as the data source;

Answer: D

 

NEW QUESTION 76
Regarding the sequence of the mail transmission process, which of the following is correct?
1. The sender PC sends the mail to the designated SMTP Server.
2. The sender SMTP Server encapsulates the mail information in an SMTP message and sends it to the receiver SMTP Server according to the destination address of the mail
3. The sender SMTP Server encapsulates the mail information in an SMTP message according to the destination address of the mail and sends it to the receiver POP3/MAP Senver
4. The recipient sends an email.

  • A. 1->4->3
  • B. 1->2->4,
  • C. 1->3->2
  • D. 1->2->3

Answer: B

 

NEW QUESTION 77
Regarding the description of file reputation technology in anti-virus engines, which of the following options is correct?

  • A. File reputation is to perform virus detection by calculating the full text MD5 of the file to be tested and matching it with the local reputation MD5 cache
  • B. Local reputation MD5 cache only has static cache, which needs to be updated regularly
  • C. File reputation database update and upgrade can only be achieved through linkage with sandbox
  • D. File reputation database can only be upgraded by manual upgrade

Answer: A

 

NEW QUESTION 78
Which of the following options are common reasons for IPS detection failure? (multiple choices)

  • A. IPS policy is not submitted for compilation
  • B. False Policy IDs are associated with IPS policy domains
  • C. Bypass function is closed in IPS
  • D. The IPS function is not turned on

Answer: A,B,D

 

NEW QUESTION 79
Which of the following options belong to the upgrade method of the anti-virus signature database of Huawei USG6000 products? (multiple choice)

  • A. Manual upgrade
  • B. Online upgrade
  • C. Automatic upgrade
  • D. Local upgrade

Answer: B,D

 

NEW QUESTION 80
The security management system is optional, and anti-virus software or anti-hacking technology can be very good against network threats.

  • A. False
  • B. True

Answer: A

 

NEW QUESTION 81
Which three aspects should be considered in the design of cloud platform security solutions? (multiple choice)

  • A. Infrastructure security
  • B. Tenant security
  • C. Hardware maintenance
  • D. How to do a good job in management, operation and maintenance

Answer: A,B,D

 

NEW QUESTION 82
Configure the following command on the Huawei firewall:
[USG] interface G0/0/1
[USG] ip urpf loose allow-default-route acl 3000
Which of the following options are correct? (Multiple choice)

  • A. If the default route is configured but the parameter allow-default-route is not configured. As long as the source address of the packet does not exist in the FIB table of the firewall, the packet will be rejected.
  • B. If the default route is configured and the allow-default-route parameter is also matched, if the source address of the packet does not exist in the FIB table of the firewall, but for the loose type check, the packet will pass through URPF check, and perform normal forwarding.
  • C. If the source address of the packet does not exist in the FIB table of the firewall and the default route is configured and the allow-default-route parameter is also matched, the packet cannot pass the URPF check even if it is a loose type check.
  • D. For the loose type check, if the source address of the packet exists in the FIB table of the firewall, the packet passes the check.

Answer: A,B,D

 

NEW QUESTION 83
......

Penetration testers simulate H12-722-ENU exam: https://www.prepawayete.com/Huawei/H12-722-ENU-practice-exam-dumps.html

 

Contact Us

If you have any question please leave me your email address, we will reply and send email to you in 12 hours.

Our Working Time: ( GMT 0:00-15:00 )
From Monday to Saturday

Support: Contact now