[2021] Free H12-722_V3.0 Exam Dumps to Pass Exam Easily [Q74-Q92]

Share

[2021] Free H12-722_V3.0 Exam Dumps to Pass Exam Easily

H12-722_V3.0 Exam Dumps, H12-722_V3.0 Practice Test Questions

NEW QUESTION 74
Regarding the global configuration of file filtering configuration files for Huawei USG6000 products, which of the following descriptions is correct?

  • A. File filtering, content filtering and anti-virus detection cannot be performed when the file is damaged. At this time, the documents can be released or blocked according to business requirements.
  • B. When the number of compression layers of a file is greater than the configured "Maximum Decompression Layers", the firewall cannot filter the file.
  • C. When the file extension does not match, if the action is "Allow" or "Alarm", file filtering, content filtering and anti-virus are performed according to the file type Detection.
  • D. When the file type cannot be recognized, file filtering, content filtering and anti-virus detection are not performed.

Answer: B

 

NEW QUESTION 75
For special message attacks, which of the following option descriptions is correct?

  • A. Special control packet attack is a potential attack and does not have direct destructive behavior
  • B. The attacker probes the network structure by sending special control messages to launch a real attack.
  • C. Special control message attacks do not have the ability to detect the network structure. Only scanning attacks can detect the network.
  • D. Special control message items can only use ICMP to construct attack messages.

Answer: A

 

NEW QUESTION 76
Regarding the 3 abnormal situations of the file type recognition result, which of the following option descriptions is wrong?

  • A. File damage means that the file type cannot be identified because the file is damaged.
  • B. Unrecognized file type means that the file type cannot be recognized, and the file extension cannot be recognized.
  • C. File extension mismatch means that the file type is inconsistent with the file extension.
  • D. Unrecognized file type means that the file type cannot be recognized and there is no file extension.

Answer: B

 

NEW QUESTION 77
Which of the following options belong to the keyword matching mode? (multiple choice)

  • A. Community word
  • B. Regular expressions
  • C. Custom keywords
  • D. Text

Answer: B,D

 

NEW QUESTION 78
The network-based intrusion detection system is mainly used to monitor the information of the critical path of the network in real time, listen to all packets on the network, collect data, and divide Analyze the suspicious object, which of the following options are its main features? (multiple choices)

  • A. Need a lot of monitors.
  • B. Good concealment, the network-based monitor does not run other applications, does not provide network services, and may not respond to other computers, so Not vulnerable to attack.
  • C. The monitoring speed is fast (the problem can be found in microseconds or seconds, and the host-based DS needs to take an analysis of the audit transcripts in the last few minutes
  • D. It can detect the source address and destination address, identify whether the address is illegal, and locate the real intruder.

Answer: B,C

 

NEW QUESTION 79
The security management system is only optional, and anti-virus software or anti-hacking technology can be a good defense against network threats.

  • A. False
  • B. True

Answer: A

 

NEW QUESTION 80
The whitelist rule of the firewall anti-virus module is configured as ("*example*, which of the following matching methods is used in this configuration?

  • A. Exact match
  • B. Suffix matching
  • C. Keyword matching
  • D. Prefix matching

Answer: C

 

NEW QUESTION 81
Which of the following is the default port number of Portal authentication service?

  • A. 0
  • B. 1
  • C. 2
  • D. 3

Answer: B,C

 

NEW QUESTION 82
The realization of content security filtering technology requires the support of the content security combination license.

  • A. False
  • B. True

Answer: B

 

NEW QUESTION 83
Which of the following types of attacks are DDoS attacks? 2I

  • A. Floating child attack
  • B. Malformed message attack
  • C. Snooping scan attack
  • D. Single packet attack

Answer: A

 

NEW QUESTION 84
Content filtering is a security mechanism for filtering the content of files or applications through Huawei USCG00 products. Focus on the flow through deep recognition Contains content, the device can block or alert traffic containing specific keywords.

  • A. False
  • B. True

Answer: B

 

NEW QUESTION 85
When you suspect that the company's network has been attacked by hackers, you have carried out a technical investigation. Which of the following options does not belong to the behavior that occurred in the early stage of the attack?

  • A. We6 Application Click
  • B. Planting malware
  • C. Brute force
  • D. Vulnerability attack"

Answer: B

 

NEW QUESTION 86
When the Anti DDoS system finds the attack flow, the state will redirect the attack flow to the cleaning device.
After the cleaning device is cleaned, it will flow back.
Note to the original link, which of the following options does not belong to the method of re-injection?

  • A. GRE back note:
  • B. BGP back-annotation
  • C. Policy routing back annotation,
  • D. MPLS LSP back injection

Answer: B

 

NEW QUESTION 87
Which of the following files can the sandbox detect? (multiple choice)

  • A. PE file
  • B. Picture file
  • C. www file
  • D. Mail

Answer: A,B,C

 

NEW QUESTION 88
IPS is an intelligent intrusion detection and defense product. It can not only detect the occurrence of intrusions, but also can respond in real time through certain response methods.
Stop the occurrence and development of intrusions, and protect the information system from substantial attacks in real time. According to the description of PS, the following items are wrong?

  • A. IPS is an intrusion detection system that can block real-time intrusions when found
  • B. IPS unifies IDS and firewall
  • C. IPS must use bypass deployment in the network
  • D. Common IPS deployment modes are in-line deployment,

Answer: C

 

NEW QUESTION 89
Network attacks are mainly divided into two categories: single-packet attacks and streaming attacks.
Single-packet attacks include scanning and snooping attacks, malformed packet attacks, and special reports.
Wen attack.

  • A. False
  • B. True

Answer: B

 

NEW QUESTION 90
In order to protect the security of data transmission, more and more websites or companies choose to use SSL to encrypt transmissions in the stream. About using Huawei NIP6000 The product performs threat detection on (SSL stream boy, which of the following statements is correct?

  • A. After the process of "decryption", "threat detection", and "encryption"
  • B. NIP0OO does not support SSL Threat Detection.
  • C. NIP can directly crack and detect SSL encryption.
  • D. The traffic after threat detection is sent directly to the server without encryption

Answer: A

 

NEW QUESTION 91
With the continuous development of the network and the rapid development of applications, companies are making users more and more frequently start to transfer files on the network.
Virus threats are becoming more and more serious. Only by rejecting the virus outside the network can data security and system stability be guaranteed. So, which of the following are What harm might be caused by illness? (multiple choices)

  • A. Some viruses can be used as intrusion tools, such as Trojan horse viruses,
  • B. Can easily pass the defense of Huawei USG6000 products
  • C. Threaten the security of the user's host and network.
  • D. Control the host computer's accumulated limit and the user's data, and some viruses may even cause damage to the host's hardware.

Answer: A,C,D

 

NEW QUESTION 92
......

H12-722_V3.0 Exam Dumps, H12-722_V3.0 Practice Test Questions: https://www.examcollectionpass.com/Huawei/H12-722_V3.0-practice-exam-dumps.html