[Dec 30, 2021] Free HCIP-Security H12-722_V3.0 Official Cert Guide PDF Download [Q30-Q49]

Share

[Dec 30, 2021] Free HCIP-Security H12-722_V3.0 Official Cert Guide PDF Download

Huawei H12-722_V3.0 Official Cert Guide PDF

NEW QUESTION 30
Which of the following options are common reasons for IPS detection failure? (multiple choices)

  • A. Bypass function is closed in IPS
  • B. False Policy IDs are associated with IPS policy domains
  • C. IPS policy is not submitted for compilation
  • D. The IPS function is not turned on

Answer: B,C,D

 

NEW QUESTION 31
Since the sandbox can provide a virtual execution environment to detect files in the network, the sandbox can be substituted when deploying security equipment Anti-Virus, IPS, spam detection and other equipment.

  • A. True
  • B. False

Answer: B

 

NEW QUESTION 32
Which patches does Policy Center support to management?(Choose 3 answers)

  • A. Microsoft SQL Windows database patch
  • B. android system patches
  • C. Microsoft Internet Explorer patches
  • D. Microsoft Windows operating system patches

Answer: A,C,D

 

NEW QUESTION 33
Which of the following descriptions about the black and white lists in spam filtering is wrong? c

  • A. Set local blacklist and whitelist: Both blacklist and whitelist can be configured at the same time, or only one of them can be configured.
  • B. In the "Whitelist" text box, enter the P address and mask of the SMTP Server to be added to the whitelist. You can enter multiple IP addresses, one IP address Address one line. v
  • C. The priority of the blacklist is higher than that of the whitelist.
  • D. Enter the IP address and mask of the SMITP Server to be added to the blacklist in the "Blacklist" text box, you can enter multiple IP addresses, one IP Address one line.

Answer: C

 

NEW QUESTION 34
Regarding intrusion detection I defense equipment, which of the following statements are correct? (multiple choice)

  • A. Protect the intranet from external attacks, and inhibit malicious flows, such as spyware, worms, etc.
    from flooding and spreading to the intranet.
  • B. Ability to quickly adapt to threat changes
  • C. It cannot effectively prevent the virus from spreading from the Internet to the intranet.
  • D. The number of applications that NIP6000 can recognize reaches 6000+, which realizes refined application protection, saves export bandwidth, and guarantees key business services Experience.

Answer: A,B,D

 

NEW QUESTION 35
Under the CLI command, which of the following commands can be used to view the AV engine and virus database version?

  • A. display version av-sdb
  • B. display utm version
  • C. display av utm version
  • D. display utm av version

Answer: A

 

NEW QUESTION 36
Which of the following options are the possible reasons why a certain signature is not included after the IPS policy configuration is completed? (multiple choice)

  • A. Direction is not enabled
  • B. The severity level of the configuration is too high
  • C. The direction is turned on, but no specific direction is selected
  • D. The protocol selection technique is correct

Answer: B,C,D

 

NEW QUESTION 37
The network-based intrusion detection system is mainly used to monitor the information of the critical path of the network in real time, listen to all packets on the network, collect data, and divide Analyze the suspicious object, which of the following options are its main features? (multiple choices)

  • A. The monitoring speed is fast (the problem can be found in microseconds or seconds, and the host-based DS needs to take an analysis of the audit transcripts in the last few minutes
  • B. Need a lot of monitors.
  • C. It can detect the source address and destination address, identify whether the address is illegal, and locate the real intruder.
  • D. Good concealment, the network-based monitor does not run other applications, does not provide network services, and may not respond to other computers, so Not vulnerable to attack.

Answer: A,D

 

NEW QUESTION 38
If the processing strategy for SMTP virus files is set to alert, which of the following options is correct?

  • A. Add announcement and generate log
  • B. Generate logs and forward them
  • C. Generate logs and discard
  • D. Delete the content of the email attachment

Answer: B

 

NEW QUESTION 39
Which of the following options belong to the network layer attack of the TCP/IP protocol stack? (multiple choice)

  • A. Buffer overflow p
  • B. Port scan
  • C. IP spoofing
  • D. Address scanning

Answer: C,D

 

NEW QUESTION 40
When configuring the URL filtering configuration file, www.bt.com is configured in the URL blacklist-item:
At the same time, set it in the custom URL category.
A URL is set as bt.com, and the action of customizing URL classification is a warning. Regarding the above configuration, which of the following statements are correct? (More select)

  • A. When users visit www.bt. com, they will be blocked.
  • B. User cannot access all the sites ending with bt com.
  • C. The user can visit the www.bt.com website, but the administrator will receive a warning message.
  • D. Users can visit www.videobt.com website.

Answer: A,D

 

NEW QUESTION 41
In the Policy Center strategy configuration, how many violations rating of definition are there?

  • A. 0
  • B. 1
  • C. 2
  • D. 3

Answer: B

 

NEW QUESTION 42
Anti-DDoS defense system includes: management center, detection center and cleaning center.

  • A. True
  • B. False

Answer: A

 

NEW QUESTION 43
Regarding the description of intrusion detection technology, which of the following statements is correct?

  • A. Unable to find traces of the system being attacked.
  • B. is an active and static security defense technology.
  • C. It can detect all kinds of authorized and unauthorized intrusions.
  • D. It is impossible to detect violations of security policies.

Answer: C

 

NEW QUESTION 44
For full encryption registered mobile storage devices must be formatted to normal use in not installed NAC client terminal host.

  • A. TRUE
  • B. FALSE

Answer: A

 

NEW QUESTION 45
When configuring the terminal visits, we put some equipment configured exception equipment ,which of the following statements are true about the exception equipment?

  • A. terminal in isolation domain can not access exception equipment .
  • B. the exception equipment IP is not in controlled network segment.
  • C. through identity authentication terminals can access exception equipment.
  • D. only through security authentication terminals can access exception equipment.

Answer: B,C

 

NEW QUESTION 46
Which of the following threats cannot be detected by IPS?

  • A. Worms
  • B. DoS
  • C. Virus
  • D. Spam

Answer: D

 

NEW QUESTION 47
Which of the following is the default port number of Portal authentication service?

  • A. 0
  • B. 1
  • C. 2
  • D. 3

Answer: A,C

 

NEW QUESTION 48
Regarding firewall and IDS, which of the following statements is correct?

  • A. IDS is a straight line equipment and cannot be used for in-depth inspection
  • B. The firewall cannot detect malicious operations or misoperations by insiders
  • C. The firewall is a bypass device, used for fine-grained detection
  • D. IDS cannot be linked with firewall

Answer: B

 

NEW QUESTION 49
......

Free H12-722_V3.0 Exam Dumps to Improve Exam Score: https://www.real4prep.com/H12-722_V3.0-exam.html