Huawei H12-722-ENU Test Engine Dumps Training With 180 Questions
H12-722-ENU Questions Pass on Your First Attempt Dumps for HCNP-Security Certified
NEW QUESTION 89
The DDoS attack defense configuration process is as follows:
1, start the flow statistics function;
2. Set different protection thresholds for different types of attacks;
3. When the traffic exceeds the preset threshold, the system starts attack defense.
- A. TRUE
- B. FALSE
Answer: A
NEW QUESTION 90
An enterprise administrator configures a Web reputation website in the form of a domain name, and configures the domain name as www. abc; example. com. .
Which of the following is the entry that the firewall will match when looking up the website URL?
- A. www.abc. example
- B. example
- C. www. abc. example. com
- D. example. com
Answer: B
NEW QUESTION 91
The whitelist rule of the firewall antivirus module is configured as *example*. Which of the following matches is used in this configuration?
- A. exact match
- B. Keyword matching
- C. Prefix matching
- D. Suffix matching
Answer: B
NEW QUESTION 92
Network attacks are mainly divided into two categories: single-packet attacks and streaming attacks.
Single-packet attacks include scanning and snooping attacks, malformed packet attacks, and special reports.
Wen attack.
- A. True
- B. False
Answer: A
NEW QUESTION 93
The RBL black and white list query result on the firewall is as follows:
Based on the above information, which of the following statements is correct? (Multiple choices)
- A. Mail with source address 10.18.1.0/24 will be released
- B. Mail with source address 10.17.1.0/24 will be blocked
- C. Mail with source address 10.18.1.0/24 will be blocked
- D. Mail with source address 10.17.1.0/24 will be released
Answer: A,D
NEW QUESTION 94
An enterprise administrator configures the Web reputation system as shown in the figure. Regarding the configuration, which of the following statements is correct?
- A. The content in No. 4 must be configured.
- B. In addition to this page configuration, you also need to enable the firewall and sandbox linkage, otherwise the page configuration is invalid
- C. The content in No. 2 must be configured.
- D. After the configuration is completed, you need to submit the configuration to take effect.
Answer: B
NEW QUESTION 95
Buffer overflows, Trojans, backdoor attacks, etc. are all application-level attacks.
- A. True
- B. False
Answer: A
NEW QUESTION 96
Which of the following options does not belong to the characteristics of big data technology?
- A. Variety of data
- B. Huge amounts of data
- C. Low value density
- D. Slow processing
Answer: D
NEW QUESTION 97
Regarding intrusion detection I defense equipment, which of the following statements are correct? (multiple choice)
- A. Ability to quickly adapt to threat changes
- B. The number of applications that NIP6000 can recognize reaches 6000+, which realizes refined application protection, saves export bandwidth, and guarantees key business services Experience.
- C. It cannot effectively prevent the virus from spreading from the Internet to the intranet.
- D. Protect the intranet from external attacks, and inhibit malicious flows, such as spyware, worms, etc.
from flooding and spreading to the intranet.
Answer: A,B,D
NEW QUESTION 98
Regarding the sequence of file filtering technology processing flow, which of the following is correct?
(1) The security policy is applied as permit
(2) Protocol decoding
(3) File type recognition
(4) Application recognition
(5) File filtering
- A. (1)(4)(2)(3)(5)
- B. (1)(2)(4)(3)(5)
- C. (1)(3)(2)(4)(5)
- D. (1)(2)(3)(4)(5)
Answer: A
NEW QUESTION 99
Which of the following files can be detected by the sandbox? (Multiple choices)
- A. WWW documents
- B. Mail
- C. PE file
- D. Picture file
Answer: A,C,D
NEW QUESTION 100
Which of the following protocols can be used to construct attack packets for special control packet attacks? (Multiple choices)
- A. UDP protocol
- B. IP protocol
- C. FTP protocol
- D. ICMP protocol
Answer: A,B,D
NEW QUESTION 101
Attacks against the Web can be divided into three attacks on the client, server or communication channel.
- A. True
- B. False
Answer: A
NEW QUESTION 102
Which of the following are the keyword matching patterns? (Multiple Choice)
- A. Text
- B. Regular expressions
- C. Community word
- D. Custom Keywords
Answer: A,B
NEW QUESTION 103
Which of the following statement about IPS is wrong?
- A. The covering signature has a higher priority than the signature in a centralized signature.
- B. The signature set can contain both pre-defined and custom signatures.
- C. Changes to the IPS policy do not take effect immediately. You need to submit a compilation to update the configuration of the IPS policy.
- D. When the source security zone is the same as the destination security zone, the IPS policy is applied in the domain.
Answer: B
NEW QUESTION 104
Regarding traditional firewalls, which of the following statements are correct? (multiple choice)
- A. Unable to accurately control various applications, such as P2P, online games, etc. .
- B. Lack of effective protection against application layer threats.
- C. Ability to quickly adapt to changes in threats.
- D. It cannot effectively resist the spread of viruses from the Internet to the intranet.
Answer: A,B,D
NEW QUESTION 105
What are the following descriptions of the role of content security filtering technology? (Multiple choices)
- A. File Filtering By blocking the transmission of certain types of files, you can reduce the risk of internal networks running malicious code and viruses. You can also prevent employees from leaking corporate confidential files to the Internet.
- B. E-mail filtering refers to the management and control of e-mail sending and receiving activities, including the prevention of spam and the proliferation of anonymous e-mails, and the control of illegal sending and receiving.
- C. The application behavior control function can finely control the common HTTP behavior and FTP behavior.
- D. Content filtering prevents the leakage of confidential information and the transmission of non-compliant information.
Answer: A,B,C,D
NEW QUESTION 106
Which of the following protocols can be used to construct attack messages for special control message attacks? (multiple choice)
- A. CIP protocol
- B. UDP protocol
- C. FTP protocol
- D. ICMP protocol
Answer: A,B,D
NEW QUESTION 107
Malicious code usually uses RootKit technology to hide itself. RootKit modifies the kernel of the system by loading special drivers to hide itself and specific files.
- A. TRUE
- B. FALSE
Answer: A
NEW QUESTION 108
Regarding the local black and white list of anti-spam messages, which of the following statements is wrong?
- A. The black and white list is matched by the sender's dns suffix
- B. The black and white list is matched by extracting the destination IP address of the SMTP connection
- C. Black and white lists are matched by extracting the source IP address of the SMTP connection
- D. Block the connection if the source IP address of the SMTP connection matches the blacklist
Answer: A
NEW QUESTION 109
The following commands are configured on the Huawei firewall:
[USG] firewall defend ip-fragment enable
Which of the following situations will be recorded as an offensive behavior? (multiple choice)
- A. DF bit is 0, and Fragment Offset + Length> 65535.
- B. DF, bit is down, and MF bit is also 1 or Fragment Offset is not 0,
- C. The DF bit is 1, and Fragment Ofset + Length <65535.
- D. DF bit is 023, MF bit is 1 or Fragment Offset is not 0,
Answer: A,B
NEW QUESTION 110
Divert traffic using BGP protocol. The configuration command is as follows.
[sysname] route-policy 1 permit node 1
[sysname-route-policy] apply community no-advertise
[sysname-route-policy] quit
[sysname] bgp 100
[sysname-bgp] peer 7.7.1.2 as-number 100
[sysname-bgp] import-route unr
[sysname-bgp] ipv4-family unicast
[sysname-bgp-af-ipv4] peer 7.7.1.2 route-policy 1 export
[sysname-bgp-af-ipv4] peer 7.7.1.2 advertise-community
[sysname-bgp-af-ipv4] quit
[sysname-bgp] quit
Which of the following options are correct for the BGP drainage configuration description? (Multiple choice)
- A. After receiving the UNR route, the peer neighbor will not send it to any BGP neighbors.
- B. The management center does not need to configure protection objects. When an attack is discovered, the traffic diversion task is automatically delivered.
- C. Use BGP to advertise UNR routes for dynamic traffic diversion.
- D. You also need to configure the firewall ddos bgp-next-hop fib-filter command to implement the remarks.
Answer: A,C
NEW QUESTION 111
Regarding the description of file reputation technology in anti-virus engines, which of the following options is correct?
- A. File reputation database update and upgrade can only be achieved through linkage with sandbox
- B. File reputation database can only be upgraded by manual upgrade
- C. File reputation is to perform virus detection by calculating the full text MD5 of the file to be tested and matching it with the local reputation MD5 cache
- D. Local reputation MD5 cache only has static cache, which needs to be updated regularly
Answer: C
NEW QUESTION 112
Tianyu Nei answered the role of safety filtering technology, which of the following is still correct? (multiple choice)
- A. The application behavior control function can finely control common HTTP behaviors and FTP behaviors.
- B. Mail filtering refers to the management and control of mail sending and receiving, including preventing the flooding of spam and anonymous emails, and controlling the sending and receiving of illegal emails.
- C. Content filtering can prevent the disclosure of confidential information and the transmission of illegal information
- D. File filtering can reduce the risk of malicious code execution and virus infection in the internal network by blocking the transmission of fixed types of files, and it can also prevent Prevent employees from leaking company confidential documents to the Internet.
Answer: A,B,C,D
NEW QUESTION 113
......
H12-722-ENU Practice Test Pdf Exam Material: https://www.validexam.com/H12-722-ENU-latest-dumps.html