[Jan-2022] The Best HCIP-Security Study Guide for the H12-722_V3.0 Exam
H12-722_V3.0 certification guide Q&A from Training Expert DumpsKing
NEW QUESTION 84
The following figure is a schematic diagram of the detection file of the firewall and the sandbox system linkage.
The Web reputation function is enabled on the firewall, and website A is set as a trusted website and website B is set as a suspicious website.
Which of the following statements is correct
- A. After the detection node detects the suspicious file, it not only informs the firewall in the figure of the result, but also informs other network devices connected to it.
- B. The files obtained by users from website A and website B will be sent to the inspection node for inspection.
- C. When a user visits website B, although the firewall will extract the file and send it to the detection node, the user can still access normally during the detection process Site B.
- D. Assuming that website A is an unknown website, the administrator cannot detect the traffic file of this website sC
Answer: A
NEW QUESTION 85
Which of the following behaviors is a false positive of the intrusion detection system?
- A. Unable to detect new types of worms
- B. Use Ping to perform network detection and be alerted as an attack
- C. Web-based attacks are not detected by the system
- D. The process of trying to log in to the system is recorded
Answer: B
NEW QUESTION 86
When using the misuse check technology, if the normal user behavior is successfully matched with the intrusion feature knowledge base, it will be falsely reported.
- A. True
- B. False
Answer: A
NEW QUESTION 87
Which of the following types of attacks are DDoS attacks? 2I
- A. Snooping scan attack
- B. Single packet attack
- C. Floating child attack
- D. Malformed message attack
Answer: C
NEW QUESTION 88
Which of the following options will not pose a security threat to the network?
- A. Weak personal safety awareness
- B. Failure to update the virus database in time
- C. Hacking
- D. Open company confidential files
Answer: D
NEW QUESTION 89
An enterprise administrator configures a Web reputation website in the form of a domain name, and configures the domain name as www. abc; example. com. .
Which of the following is the entry that the firewall will match when looking up the website URL?
- A. www.abc. example
- B. www. abc. example. com
- C. example. com
- D. example
Answer: D
NEW QUESTION 90
The configuration command to enable the attack prevention function is as follows; n
[FW] anti-ddos syn-flood source-detect
[FW] anti-ddos udp-flood dynamic-fingerprint-learn
[FW] anti-ddos udp-frag-flood dynamic fingerprint-learn
[FW] anti-ddos http-flood defend alert-rate 2000
[Fwj anti-ddos htp-flood source-detect mode basic
Which of the following options is correct for the description of the attack prevention configuration? (multiple choice)
- A. The firewall has enabled the SYN Flood source detection and defense function
- B. The firewall uses the first packet drop to defend against UDP Flood attacks.
- C. The threshold for HTTP Flood defense activation is 2000.
- D. HTTP Flood attack defense uses enhanced mode for defense
Answer: A,C
NEW QUESTION 91
When a data file hits the whitelist of the firewall's anti-virus module, the firewall will no longer perform virus detection on the file.
- A. True
- B. False
Answer: A
NEW QUESTION 92
Which of the following options is not a feature of Trojan horses?
- A. Trojans self-replicate and spread
- B. Not self-replicating but parasitic
- C. The ultimate intention is to steal information and implement remote monitoring
- D. Actively infectious
Answer: D
NEW QUESTION 93
Due to differences in network environment and system security strategies, intrusion detection systems are also different in specific implementation. From the perspective of system composition, the main Which four major components are included?
- A. Incident extraction, intrusion analysis, intrusion response and remote management.
- B. Incident recording, intrusion analysis, intrusion response and remote management.
- C. Incident extraction, intrusion analysis, intrusion response and on-site management.
- D. Event extraction, intrusion analysis, reverse intrusion and remote management.
Answer: A
NEW QUESTION 94
After the user deploys the firewall anti-virus strategy, there is no need to deploy anti-virus software
- A. True
- B. False.
Answer: B
NEW QUESTION 95
Buffer overflows, Trojan horses, and backdoor attacks are all attacks at the application layer.
- A. True
- B. False
Answer: A
NEW QUESTION 96
URL filtering technology can perform URL access control on users according to different time objects and address objects to achieve precise management of users.
The purpose of the Internet behavior.
- A. True
- B. False
Answer: A
NEW QUESTION 97
When a virus is detected in an email, which of the following is not the corresponding action for detection?
- A. Declare
- B. Delete attachments
- C. Block
- D. Warning
Answer: C
NEW QUESTION 98
Which of the following options is correct for the sequence of the flow-by-stream detection of AntiDDoS?
1. The Netflow analysis device samples the current network flow;
2. Send a drainage command to the cleaning center;
3. Discover the DDoS attack stream;
4.Netior: analysis equipment sends alarms to ATIC management center
5. The abnormal flow is diverted to the cleaning center for further inspection and cleaning;
6. The cleaning center sends the host route of the attacked target IF address server to the router to achieve drainage
7. The cleaning log is sent to the management center to generate a report;
8. The cleaned traffic is sent to the original destination server.
- A. 1-3-24-6-5-8-7
- B. 1-3-4-2-6-5-8-7
- C. 1-3-4-2-5-6-7-8
- D. 1-3-2-4-6-5-7-8
Answer: B
NEW QUESTION 99
When the license of Huawei USG6000 product expires, the RBL function will be unavailable, and users can only use the local black and white list to filter junk mail.
- A. True
- B. False
Answer: A
NEW QUESTION 100
Which of the following statement is correct about Policy Center system client function?
- A. Web Agent login for identity certification and security certification.
- B. NAC Agent cannot be installed on Windows Vista operating system.
- C. Web page login for authentication and can perform checks Strategy.
- D. NAC Agent support MAC account login.
Answer: D
NEW QUESTION 101
Abnormal detection is to establish the normal behavior characteristic profile of the system subject through the analysis of the audit data of the system: check if the audit data in the system If there is a big discrepancy with the normal behavior characteristics of the established subject, it is considered an intrusion. Nasu must be used as the system subject? (multiple choice)
- A. Host
- B. A group of users
- C. Single user
- D. A key program and file in the system
Answer: A,B,C,D
NEW QUESTION 102
For Huawei USG600 products, which of the following statements about mail filtering configuration is correct?
- A. Cannot control the number of received email attachments
- B. You can control the size of the attachment of the received mail
- C. When the spam processing action is an alert, the email will be blocked and an alert will be generated
- D. Cannot perform keyword filtering on incoming mail
Answer: B
NEW QUESTION 103
Regarding the mail content filtering configuration of Huawei USG6000 products, which of the following statements is wrong?.
- A. When a POP3 message is detected, if it is judged to be an illegal email, the firewall's response action only supports sending alarm information, and will not block the email o
- B. Mail filtering will only take effect when the mail filtering configuration file is invoked when the security policy is allowed.
- C. When an IMAP message is detected, if it is judged to be an illegal email; the firewall's response action only supports sending alarm messages and will not block the email.
- D. The attachment size limit is for a single attachment, not for the total size of all attachments.
Answer: A
NEW QUESTION 104
Which of the following options is not a cyber security threat caused by weak personal security awareness?
- A. Leaking corporate information
- B. Disclosure of personal information
- C. Threats to the internal network
- D. Increasing the cost of enterprise network operation and maintenance
Answer: D
NEW QUESTION 105
The anti-virus feature configured on the Huawei USG6000 product does not take effect. Which of the following are the possible reasons? (multiple choice)
- A. The security policy does not reference the anti-virus configuration file.
- B. The virus signature database version is older.
- C. No virus exceptions are configured.
- D. The anti-virus configuration file is configured incorrectly.
Answer: A,B,D
NEW QUESTION 106
Which of the following protocols can be used to construct attack messages for special control message attacks? (multiple choice)
- A. FTP protocol
- B. ICMP protocol
- C. CIP protocol
- D. UDP protocol
Answer: B,C,D
NEW QUESTION 107
In the Policy Center strategy configuration, how many violations rating of definition are there?
- A. 0
- B. 1
- C. 2
- D. 3
Answer: B
NEW QUESTION 108
Viruses can damage computer systems. v Change and damage business data: spyware collects, uses, and disperses sensitive information of corporate employees.
These malicious pastoral software seriously disturb the normal business of the enterprise. Desktop anti-disease software can solve the problem of central virus and indirect software from the overall situation.
- A. True
- B. False
Answer: B
NEW QUESTION 109
......
The Best Huawei H12-722_V3.0 Study Guides and Dumps of 2022: https://www.dumpsking.com/H12-722_V3.0-testking-dumps.html
