Get New 2021 Valid Practice To your H12-711_V3.0 Exam (Updated 396 Questions) [Q181-Q197]

Share

Get New 2021 Valid Practice To your H12-711_V3.0 Exam (Updated 396 Questions)

HCIA-Security H12-711_V3.0 Exam Practice Test Questions Dumps Bundle!

NEW QUESTION 181
Which of the following SSL VPN functions can only access all TCP resources?

  • A. Network expansion
  • B. WEB agency
  • C. Port forwarding
  • D. File sharing

Answer: C

 

NEW QUESTION 182
Regarding the description of IP Spoofing, which of the following is wrong?

  • A. After an IP spoofing attack is successful, the attacker can use any forged IP address to imitate a legitimate host to access key information
  • B. The attacker needs to disguise the source IP address as a trusted host and send a data segment marked with SYN to request a connection
  • C. Hosts in a trust relationship based on IP addresses can log in directly without entering password verification
  • D. IP spoofing attacks are launched by using the normal IP address-based trust relationship between hosts

Answer: B

 

NEW QUESTION 183
According to the requirements of level protection, which of the following behaviors belong to the scope of information security operation and maintenance management? (Multiple choice)

  • A. Develop an emergency response plan
  • B. Harden the security of the host
  • C. Back up or restore data
  • D. Participate in information security training

Answer: A,B,C,D

 

NEW QUESTION 184
Which of the following about the difference between pre-accident prevention strategies and post-accident recovery strategies is correct? (Multiple choice)

  • A. Prevention strategies focus on minimizing the possibility of accidents before the story occurs. Recovery strategies focus on minimizing the impact and loss on the enterprise after the accident
  • B. The role of pre-disaster prevention strategies does not include minimizing the economic and reputation losses caused by the accident
  • C. Recovery strategies are part of the business continuity plan
  • D. Recovery strategies are used to improve business high availability

Answer: A,C

 

NEW QUESTION 185
IPSec VPN uses an asymmetric algorithm to calculate the ______ key to encrypt data messages.

  • A. Symmetry

Answer: A

 

NEW QUESTION 186
Regarding the business continuity plan, which of the following statements is correct? (Multiple choice)

  • A. The business continuity plan does not require the participation of the company's senior management during the project scope stage
  • B. Not all safety incidents must be reported to the company's senior management
  • C. The business continuity plan does not require the participation of the company's senior management before it is formally documented
  • D. All possible accidents are thought not to be predicted, so BCP needs to be flexible

Answer: B,C,D

 

NEW QUESTION 187
In addition to supporting built-in Portal authentication, firewall also supports custom Portal authentication, and does not require separate deployment of external Portal servers when using custom Portal authentication.

  • A. True
  • B. False

Answer: B

 

NEW QUESTION 188
Which of the following is not the business scope of the National Internet Emergency Response Center?

  • A. Cooperate with other organizations to provide training services
  • B. Early warning and notification of security incidents
  • C. Emergency handling of security incidents
  • D. Provide security evaluation services for government departments, enterprises and institutions

Answer: A

 

NEW QUESTION 189
_______ is a defect in the specific implementation of hardware, software, and protocol or system security strategy, which can enable an attacker to access or destroy the system without authorization.

  • A. Vulnerabilities

Answer: A

 

NEW QUESTION 190
Regarding the firewall security zone, which of the following statements are correct? (Multiple Choice)

  • A. A firewall can have 12 security zones at most
  • B. When data flow occurs between different security zones, the security check of the device is triggered, and the corresponding security policy is implemented.
  • C. Firewall can create two security areas of the same priority
  • D. The firewall has four security zones by default, and the four security zone priorities do not support modification.

Answer: B,D

 

NEW QUESTION 191
The attacker scans the ports to find the ports currently open by the attacked object to determine the attack method. In port scanning attacks, attackers usually use PortScan attack software to initiate a series of TCP/UDP connections, and determine whether the host uses these ports to provide services based on the response message.
Such network detection behavior is called _______ scanning.

  • A. Port

Answer: A

 

NEW QUESTION 192
Regarding the problem that users with two-way binding in authentication-free mode cannot access network resources, which of the following options are possible reasons? (Multiple choices)

  • A. The authentication-free user does not use a PC with the specified IP/MAC address
  • B. Authentication-free users and authenticated users are in the same security zone
  • C. Online users have reached the maximum value
  • D. The authentication action in the authentication policy is set to "no account/authentication-free"

Answer: A,C

 

NEW QUESTION 193
Which of the following options does not belong to the log type of the windows operating system?

  • A. Security log
  • B. Business log
  • C. Application log
  • D. System log

Answer: B

 

NEW QUESTION 194
The protocol field in the IP header identifies the protocol used by the upper layer. Which of the following field values indicates that the upper layer protocol is the UDP protocol?

  • A. 0
  • B. 1
  • C. 2
  • D. 3

Answer: B

 

NEW QUESTION 195
Which of the following is not a file format for saving certificates supported by USG6000 series devices?

  • A. PKCS#12
  • B. PEM
  • C. PKCS#
  • D. DER

Answer: C

 

NEW QUESTION 196
Which of the following information is not the backup content included in the status information backup in dual-system hot backup?

  • A. Routing table
  • B. NAPT related entries
  • C. IPSEC tunnel
  • D. IPv4 Session Table

Answer: A

 

NEW QUESTION 197
......

Fully Updated Dumps PDF - Latest H12-711_V3.0 Exam Questions and Answers: https://www.itpassleader.com/Huawei/H12-711_V3.0-dumps-pass-exam.html

0
0
0
0