Verified H12-722-ENU dumps Q&As 100% Pass in First Attempt Guaranteed Updated Dump from Real4Prep [Q64-Q89]

Share

Verified H12-722-ENU dumps Q&As 100% Pass in First Attempt Guaranteed Updated Dump from Real4Prep

Pass HCNP-Security H12-722-ENU Exam With  180 Questions

NEW QUESTION 64
URL filtering technology can perform URL access control on users according to different time objects and address objects to achieve precise management of users.
The purpose of the Internet behavior.

  • A. False
  • B. True

Answer: B

 

NEW QUESTION 65
After the Huawei USG6000 product license expires, the RBL function is unavailable.
Users can only use local black and white lists to filter spam.

  • A. FALSE
  • B. TRUE

Answer: B

 

NEW QUESTION 66
In the security protection system of the cloud era, reforms need to be carried out in the three stages before, during and after the event, and a closed-loop continuous improvement should be formed.
And development. Which of the following key points should be done in "things"? (multiple choice)

  • A. Vulnerability intelligence
  • B. Fight back against hackers
  • C. Defense in Depth
  • D. Offensive and defensive situation

Answer: B,C

 

NEW QUESTION 67
What content can be filtered by the content filtering technology of Huawei USG6000 products? (multiple choice)

  • A. Keywords contained in the content of the uploaded file
  • B. File type
  • C. Keywords contained in the downloaded file
  • D. File upload direction 335

Answer: A,C

 

NEW QUESTION 68
In the following options, which of the two attacks use similar attack methods, they will generate a large number of useless response packets, occupying network bandwidth, Consume equipment resources?

  • A. Fraggle and Smurt
  • B. Land and Smurf
  • C. Teardrop and Land35
  • D. Fraggle and Land

Answer: A

 

NEW QUESTION 69
Which of the following options does not belong to packet message attack?

  • A. Tracert packet attacks
  • B. IP fragmentation packet attacks
  • C. ICMP redirect packet attack
  • D. Large ICMP packet attacks

Answer: B

 

NEW QUESTION 70
In order to protect the security of data transmission, more and more websites or companies choose to use SSL to encrypt transmissions in the stream. About using Huawei NIP6000 The product performs threat detection on (SSL stream boy, which of the following statements is correct?

  • A. After the process of "decryption", "threat detection", and "encryption"
  • B. NIP0OO does not support SSL Threat Detection.
  • C. NIP can directly crack and detect SSL encryption.
  • D. The traffic after threat detection is sent directly to the server without encryption

Answer: A

 

NEW QUESTION 71
Which of the following features does Huawei NIP intrusion prevention equipment support? (multiple choice)

  • A. SSL traffic detection
  • B. Mail detection
  • C. Application identification and control
  • D. Virtual patch

Answer: A,C,D

 

NEW QUESTION 72
Which of the following is a false positive for an intrusion detection system?

  • A. Web-based attacks have not been detected by the system
  • B. Unable to detect new worms
  • C. Use Ping for network detection and being alerted as an attack
  • D. The process of trying to log in to the system was recorded

Answer: C

 

NEW QUESTION 73
What content can be filtered by the content filtering technology of Huawei USG6000? (Multiple choice)

  • A. Video content filtering
  • B. Voice content filtering
  • C. File content filtering
  • D. Application content filtering

Answer: C,D

 

NEW QUESTION 74
Regarding the 3 abnormal situations of the file type recognition result, which of the following option descriptions is wrong?

  • A. File damage means that the file type cannot be identified because the file is damaged.
  • B. Unrecognized file type means that the file type cannot be recognized, and the file extension cannot be recognized.
  • C. File extension mismatch means that the file type is inconsistent with the file extension.
  • D. Unrecognized file type means that the file type cannot be recognized and there is no file extension.

Answer: B

 

NEW QUESTION 75
Regarding the processing flow of file filtering, which of the following statements is wrong?

  • A. The application identification module can identify the type of application that carries the file.
  • B. After the file decompression fails, the file will still be filtered. .
  • C. Protocol decoding is responsible for analyzing the file data and file transmission direction in the data stream.
  • D. The file type recognition module is responsible for identifying the true type of the file and the file extension based on the file data

Answer: B

 

NEW QUESTION 76
When the AntiDDoS system detects attack traffic, the attack traffic is directed to the cleaning device. After the cleaning device completes cleaning, the traffic is re-injected to the original link. Which of the following options does not belong to the injection method?

  • A. GRE injection
  • B. BGP injection
  • C. Policy Routing injection
  • D. MPLS LSP injection

Answer: B

 

NEW QUESTION 77
The main attack prevention technologies of Huawei USG6000 products include: source detection, fingerprint learning and associated defense.

  • A. False
  • B. True

Answer: A

 

NEW QUESTION 78
What are the following descriptions of the role of content security filtering technology? (Multiple choices)

  • A. Content filtering prevents the leakage of confidential information and the transmission of non-compliant information.
  • B. The application behavior control function can finely control the common HTTP behavior and FTP behavior.
  • C. E-mail filtering refers to the management and control of e-mail sending and receiving activities, including the prevention of spam and the proliferation of anonymous e-mails, and the control of illegal sending and receiving.
  • D. File Filtering By blocking the transmission of certain types of files, you can reduce the risk of internal networks running malicious code and viruses. You can also prevent employees from leaking corporate confidential files to the Internet.

Answer: A,B,C,D

 

NEW QUESTION 79
Among the following options, which attack is a malformed packet attack based on the TCR protocol?

  • A. IP Spoofng attack
  • B. Teardrop attack
  • C. Land attack
  • D. Ping of Death attack

Answer: C

 

NEW QUESTION 80
For the description of the principles of HTTP Flood and HTTPS Flood blow defense, which of the following options are correct? (multiple choice)

  • A. HTTPS Flood defense modes include basic mode, enhanced mode and 302 redirection.
  • B. HTTPS Flood defense can perform source authentication by limiting the request rate of packets.
  • C. The principle of HTTPS Flood attack is to request URIs involving database operations or other URIs that consume system resources, causing server resource consumption.
    Failed to respond to normal requests.
  • D. The principle of HTTPS Flood attack is to initiate a large number of HTTPS connections to the target server, causing the server resources to be exhausted and unable to respond to regular requests.
    begging.

Answer: B,C,D

 

NEW QUESTION 81
Regarding the file filtering configuration file global configuration of the Huawei USG6000 product, which of the following is correct?

  • A. When the file type is not recognized, file filtering, content filtering, and anti-virus detection are not performed.
  • B. File filtering, content filtering and anti-virus detection are not available when the file is corrupted. At this time, the file can be released or blocked according to business requirements.
  • C. When the number of the file compressed layers is greater than the configured maximum number of uncompressed layers, the firewall cannot filter the file.
  • D. When the file extension does not match, if the action is "Allow" or "Alert", file filtering, content filtering, and anti-virus detection are performed according to the file type.

Answer: C

 

NEW QUESTION 82
Which of the following attacks are attacks against web servers? (multiple choices)

  • A. SQL injection
  • B. Website phishing deception
  • C. Website Trojan
  • D. Cross-site scripting attacks 2335

Answer: A,D

 

NEW QUESTION 83
Regarding the sequence of file filtering technology processing flow, which of the following is correct?
(1) The security policy is applied as permit
(2) Protocol decoding
(3) File type recognition
(4) Application recognition
(5) File filtering

  • A. (1)(2)(4)(3)(5)
  • B. (1)(2)(3)(4)(5)
  • C. (1)(4)(2)(3)(5)
  • D. (1)(3)(2)(4)(5)

Answer: C

 

NEW QUESTION 84
Which of the following options is not cyber security threat posed by weak personal security awareness?

  • A. Disclosing personal information
  • B. Threat internal network
  • C. Leaking corporate information
  • D. Increase the cost of enterprise network operation and maintenance

Answer: D

 

NEW QUESTION 85
Which of the following is not an abnormal condition of the file type recognition result?

  • A. Files are compressed
  • B. File extension does not match
  • C. The file type is not recognized
  • D. File damage

Answer: A

 

NEW QUESTION 86
Huawei NIP6000 products provide carrier-class high-reliability mechanisms from multiple levels to ensure the stable operation of equipment.
Which of the following options belong to the network reliability? (multiple choice)

  • A. Power supply. 1+1 redundant backup
  • B. Hardware Bypass
  • C. Link-group
  • D. Dual machine hot backup

Answer: C,D

 

NEW QUESTION 87
The status code in the HTTP response message indicates the type of the response message, and there are many possible values. Which of the following status codes represents the client request The resource does not exist?

  • A. 0
  • B. 1
  • C. 2
  • D. 400.

Answer: A

 

NEW QUESTION 88
If the user's FTP operation matches the FTP filtering policy, which actions can be performed? (Multiple choice)

  • A. Execution
  • B. Blocking
  • C. Alerts
  • D. Announcement

Answer: B,C

 

NEW QUESTION 89
......

Pass H12-722-ENU Tests Engine pdf - All Free Dumps: https://www.real4prep.com/H12-722-ENU-exam.html