Huawei H12-722_V3.0 Study Guide Archives Updated on Jun 11, 2022 [Q102-Q126]

Share

Huawei H12-722_V3.0 Study Guide Archives Updated on Jun 11, 2022

Download H12-722_V3.0 Mock Test Study Material

NEW QUESTION 102
If the processing strategy for SMTP virus files is set to alert, which of the following options is correct?

  • A. Delete the content of the email attachment
  • B. Add announcement and generate log
  • C. Generate logs and discard
  • D. Generate logs and forward them

Answer: D

 

NEW QUESTION 103
The anti-virus feature configured on the Huawei USG6000 product does not take effect. Which of the following are the possible reasons? (multiple choice)

  • A. The security policy does not reference the anti-virus configuration file.
  • B. The virus signature database version is older.
  • C. The anti-virus configuration file is configured incorrectly.
  • D. No virus exceptions are configured.

Answer: A,B,C

 

NEW QUESTION 104
Which of the following options are the possible reasons why a certain signature is not included after the IPS policy configuration is completed? (multiple choice)

  • A. Direction is not enabled
  • B. The severity level of the configuration is too high
  • C. The direction is turned on, but no specific direction is selected
  • D. The protocol selection technique is correct

Answer: B,C,D

 

NEW QUESTION 105
Misuse detection is through the detection of similar intrusions in user behavior, or those that use system flaws to indirectly violate system security rules To detect intrusions in the system. Which of the following is not a feature of misuse detection 2

  • A. Easy to implement
  • B. Easy to upgrade
  • C. Effective detection of impersonation detection of legitimate users
  • D. Accurate detection

Answer: C

 

NEW QUESTION 106
In the Policy Center strategy configuration, how many violations rating of definition are there?

  • A. 0
  • B. 1
  • C. 2
  • D. 3

Answer: C

 

NEW QUESTION 107
The virus signature database on the device needs to be continuously upgraded from the security center platform. Which of the following is the website of the security center platform?

  • A. www. huawei. com
  • B. support.huaver: com
  • C. sec. huawei. com.
  • D. security.. huawei. com

Answer: C

 

NEW QUESTION 108
Based on the anti-virus gateway of streaming scan, which of the following descriptions is wrong?

  • A. The cost is smaller than the agent-based approach
  • B. The detection rate is higher than the proxy-based scanning method
  • C. The performance is higher than the agent-based method
  • D. Rely on state detection technology and protocol analysis technology

Answer: B

 

NEW QUESTION 109
With the continuous development of the network and the rapid development of applications, companies are making users more and more frequently start to transfer files on the network.
Virus threats are becoming more and more serious. Only by rejecting the virus outside the network can data security and system stability be guaranteed. So, which of the following are What harm might be caused by illness? (multiple choices)

  • A. Can easily pass the defense of Huawei USG6000 products
  • B. Control the host computer's accumulated limit and the user's data, and some viruses may even cause damage to the host's hardware.
  • C. Some viruses can be used as intrusion tools, such as Trojan horse viruses,
  • D. Threaten the security of the user's host and network.

Answer: B,C,D

 

NEW QUESTION 110
Place refers to the terminal environment when end-user use strategy management center access to controlled network office, which options are correct about place? (Choose 2 answers)

  • A. strategy management center only support the default place
  • B. The default place only support by way of cable access network scenario
  • C. can be customized places
  • D. when allocation strategy template for the end user, need to select the corresponding places

Answer: C,D

 

NEW QUESTION 111
In the construction of information security, the intrusion detection system plays the role of a monitor. It monitors the flow of key nodes in the information system.
In-depth analysis to discover security incidents that are occurring. Which of the following are its characteristics?. c0O

  • A. IDS can be linked with firewalls and switches to become a powerful "assistant" of firewalls, which can better and more accurately control access between domains.
  • B. It is impossible to correctly analyze the malicious code doped in the allowed application data stream.
  • C. Unable to detect malicious operations or misoperations from internal killings.
  • D. Cannot do in-depth inspection

Answer: A

 

NEW QUESTION 112
Which of the following is not an abnormal situation of the file type recognition result?

  • A. File corruption
  • B. The file is compressed
  • C. The file extension does not match.
  • D. Unrecognized file type

Answer: B

 

NEW QUESTION 113
The following commands are configured on the Huawei firewall:
[USG] firewall defend ip-fragment enable
Which of the following situations will be recorded as an offensive behavior? (multiple choice)

  • A. DF, bit is down, and MF bit is also 1 or Fragment Offset is not 0,
  • B. DF bit is 0, and Fragment Offset + Length> 65535.
  • C. DF bit is 023, MF bit is 1 or Fragment Offset is not 0,
  • D. The DF bit is 1, and Fragment Ofset + Length <65535.

Answer: A,B

 

NEW QUESTION 114
The results of the RBL black and white list query on the firewall are as follows:

Based on the above information only, which of the following statements is correct? (multiple choice)

  • A. Mail with source address 10.18.1.0/24 will be blocked
  • B. Mail with source address 10.17.1.0/24 will be released
  • C. Mail with source address 10.18.1.0/24 will be released
  • D. Mail with source address 10.17.1.0/24 will be blocked

Answer: B,C

 

NEW QUESTION 115
Which of the following features does Huawei NIP intrusion prevention equipment support? (multiple choice)

  • A. Virtual patch
  • B. Application identification and control
  • C. SSL traffic detection
  • D. Mail detection

Answer: A,B,C

 

NEW QUESTION 116
Threats detected by the big data intelligent security analysis platform will be synchronized to each network device at the same time C and then collected from the network device Collect it in the log for continuous learning and optimization.

  • A. False
  • B. True

Answer: B

 

NEW QUESTION 117
IPS is an intelligent intrusion detection and defense product. It can not only detect the occurrence of intrusions, but also can respond in real time through certain response methods.
Stop the occurrence and development of intrusions, and protect the information system from substantial attacks in real time. According to the description of PS, the following items are wrong?

  • A. IPS is an intrusion detection system that can block real-time intrusions when found
  • B. IPS must use bypass deployment in the network
  • C. IPS unifies IDS and firewall
  • D. Common IPS deployment modes are in-line deployment,

Answer: B

 

NEW QUESTION 118
Which of the following behaviors is a false positive of the intrusion detection system?

  • A. Unable to detect new types of worms
  • B. The process of trying to log in to the system is recorded
  • C. Web-based attacks are not detected by the system
  • D. Use Ping to perform network detection and be alerted as an attack

Answer: D

 

NEW QUESTION 119
Which of the following options is correct for the description of the Anti DDoS system configuration?

  • A. Configure drainage and re-injection on the testing equipment.
  • B. Add protection objects on the management center.
  • C. Configure port mirroring on the cleaning device.
  • D. Configure drainage and re-injection on the management center.

Answer: B

 

NEW QUESTION 120
Regarding the anti-spam local black and white list, which of the following statements is wrong?

  • A. The black and white list is matched by the sender's dns suffix
  • B. If the source IP address of the SMTP connection matches the blacklist, the connection will be blocked
  • C. The black and white list is matched by extracting the source IP address of the SMTP connection
  • D. The black and white list is matched by extracting the destination IP address of the SMTP connection

Answer: A

 

NEW QUESTION 121
In the anti-virus policy configuration of Huawei USG6000 product, what are the response methods of HTTP protocol? (multiple choice)

  • A. Block and push the page
  • B. A warning dialog box pops up
  • C. Warning
  • D. All access to the client is prohibited

Answer: A,C

 

NEW QUESTION 122
For special message attacks, which of the following option descriptions is correct?

  • A. Special control packet attack is a potential attack and does not have direct destructive behavior
  • B. The attacker probes the network structure by sending special control messages to launch a real attack.
  • C. Special control message attacks do not have the ability to detect the network structure. Only scanning attacks can detect the network.
  • D. Special control message items can only use ICMP to construct attack messages.

Answer: A

 

NEW QUESTION 123
The IPS function of Huawei USG6000 supports two response methods: blocking and alarming.

  • A. False
  • B. True

Answer: B

 

NEW QUESTION 124
Which of the following options are correct for the configuration description of the management center ATIC?
(multiple choice)

  • A. Port mirroring needs to be configured on the management center to monitor abnormal traffic.
  • B. It is necessary to configure the protection object on the management center to guide the abnormal access flow in etpa
  • C. The drainage task needs to be configured on the management center, and when an attack is discovered, it will be issued to the cleaning center.
  • D. The reinjection strategy needs to be configured on the management center to guide the flow after cleaning.

Answer: B,C

 

NEW QUESTION 125
Regarding the description of file reputation technology in anti-virus engines, which of the following options is correct?

  • A. Local reputation MD5 cache only has static cache, which needs to be updated regularly
  • B. File reputation database can only be upgraded by manual upgrade
  • C. File reputation database update and upgrade can only be achieved through linkage with sandbox
  • D. File reputation is to perform virus detection by calculating the full text MD5 of the file to be tested and matching it with the local reputation MD5 cache

Answer: D

 

NEW QUESTION 126
......

H12-722_V3.0 Questions Prepare with Learning Information: https://actualtests.vceprep.com/H12-722_V3.0-latest-vce-prep.html