
H12-723-ENU Free Update With 100% Exam Passing Guarantee [2021]
[Sep-2021] Verified Huawei Exam Dumps with H12-723-ENU Exam Study Guide
NEW QUESTION 61
Which of the following is true about uninstall Agile Controller-Campus on Windows and Linux systems?
- A. Run sh uninstall.sh to start uninstall program use the common account in Agile Controller/Uninstall directory.
- B. Windows platform, select Start> All Programs> Huawei> Agile Controller> Uninstall.
- C. Windows platform, select Start> All Programs> Huawei> Agile Controller> Server Startup config.
- D. Run sh uninstall.sh to start uninstall process use the root account in Agile Controller directory.
Answer: B
NEW QUESTION 62
Agile controller-Campus system can manage the software installed on the terminal, define the black and white list, and assist the terminal to install the necessary software and uninstall the software that is not allowed to be installed by linking with the access control device. The definition of the black and white list, which is correct?
- A. Check for prohibited install software and software that must be installed
- B. Check the software that must be installed
- C. Check for prohibited install software
- D. Check for prohibited install software and allowed install software
Answer: A
NEW QUESTION 63
Which of the following does not belong to the challenge of mobile office?
- A. Secure and fast user access to the network.
- B. Unified management of the terminal, fine control.
- C. Deployment of network gateways.
- D. The mobile office platform is safe and reliable.
Answer: C
NEW QUESTION 64
The user accesses the network through network access device. The third-party RADIUS server authenticates and authorizes the user.
Which of the following is incorrect about this certification process?
- A. Configure RADIUS authentication and authorization on Agile Controller-Campus.
- B. Configure RADIUS authentication and accounting on RADIUS server.
- C. Configure Agile Controller-Campus as local data source authentication, receive the packets which sent by the device, and perform authentication.
- D. Configure RADIUS authentication and accounting on the device.
Answer: C
NEW QUESTION 65
The SACG query right-manager information as follows, which are correct? (Multiple choices)
[USG] display right-manager server-group
17:35:21 2017/7/14
Server group state: Enable
Server number:1
Server ip address Port State Master
1.1.1.2 3288 active Y
2.1.1.1 3288 active N
- A. The linkage between SACG and the controller is successful.
- B. The main controller IP address is 2.1.1.1.
- C. The main controller IP address is 1.1.1.2.
- D. The collaboration between SACG and IP address 2.1.1.1 was unsuccessful.
Answer: A,C
NEW QUESTION 66
When visitor needs to access the network through an account, which of the following methods can be used to access it? (Multiple choices)
- A. Scan public QR code
- B. Use existing social media accounts
- C. No certification, no account required
- D. Create new account
Answer: A,B,C,D
NEW QUESTION 67
Which of the following is wrong about account blacklist?
- A. If manually locked account is deleted from the list, the account lock is released.
- B. For automatically locked an account, if the number of wrong passwords entered during end user authentication exceeds the limited time, the account is automatically locked.
- C. Automatic account lockout and manual account lockout can't be enabled at the same time.
- D. For manually locking an account, the administrator needs to manually add the account to the locked account list.
Answer: C
NEW QUESTION 68
For the convenience of visitors, different authentication and registration pages can be pushed for different visitors. When configuring push page policy, you need to define different matching conditions. Which of the following can be used as qualified matching conditions? (Multiple selection)
- A. Access device location information
- B. SSID of access network
- C. Terminal IP address
- D. Guest account priority
Answer: B,C
NEW QUESTION 69
Import user information of AD server on Agile Controller-Campus to implement user access authentication. If the user does not find user information on Agile Controller-Campus, which of the following actions will be performed next?
- A. Send the user's information to AD server for verification.
- B. Synchronize the database again.
- C. Discard user information.
- D. Return authentication failure information directly.
Answer: A
NEW QUESTION 70
When Agile Controller-Campus authenticates as RADIUS server, what is the port that needs to be configured on the admission control device?
- A. 0
- B. 1
- C. 2
- D. 3
Answer: C
NEW QUESTION 71
After the announcement is configured, Agile Controller-Campus system can't assign the announcement to which of the following objects?
- A. Assigned to the terminal IP address range
- B. Assigned to the account
- C. Assigned to the user
- D. Assign to a place
Answer: D
NEW QUESTION 72
The traditional network single strategy is difficult to deal with complex situations such as diverse users, diversified locations, diversified terminals, diversified applications and inexperienced experiences.
- A. True
- B. False
Answer: A
NEW QUESTION 73
In Agile Controller-Campus admission control scenario, which of the following is correct about RADIUS server/client role?
- A. The authentication device (such as 802.1X switch) serves as RADIUS server and the user terminal serves as RADIUS client.
- B. Agile Controller-Campus acts as RADIUS server and the authentication device (such as 802.1X switch) acts as RADIUS client.
- C. Agile Controller-Campus serves as RADIUS server and the user terminal serves as RADIUS client.
- D. Agile Controller-Campus integrates all the functions of RADIUS server and client.
Answer: B
NEW QUESTION 74
Which deployment mode does Agile Controller-Campus not support?
- A. Distributed deployment
- B. Two-machine deployment
- C. Centralized deployment
- D. Hierarchical deployment
Answer: B
NEW QUESTION 75
The free mobility is a special access control method. According to the user's access point, access time, access method and user terminal specified permission is granted. From the physical connection, the access method can be divided into 3 categories, which of the following access methods not include?
- A. Wired access
- B. Wireless access
- C. 802.1X access
- D. VPN access
Answer: C
NEW QUESTION 76
Which of the following descriptions are correct regarding MAC authentication and MAC bypass authentication?
- A. If one network port may connected to dumb terminal (printer, IP phone) or to laptop, use MAC bypass authentication. Try 802.1X authentication first. After the authentication fails, try MAC authentication again.
- B. If network port only connects dumb terminals (printers, IP phones), use MAC authentication to shorten the authentication time.
- C. The biggest difference between the two is MAC bypass authentication belongs to 802.1X authentication, while MAC authentication does not belong to 802.1X authentication.
- D. MAC authentication has one more 802.1X authentication link than MAC bypass authentication, so it takes longer than MAC bypass authentication.
Answer: A,B,C
NEW QUESTION 77
Policy template is collection of several policy. To audit the security status of different terminal hosts and the behavior of end users, administrators need to customize different policy templates for protecting and managing terminal hosts.
Which of the following are correct regarding the policy template? (Multiple choices)
- A. You can assign policy template to a network segment.
- B. Only policy in the policy template can be used. Administrators can't customize the policy.
- C. If different policy templates are applied to departments and accounts, the policy template assigned to the highest priority will take effect. The priority relationship of departments and accounts is: account > department.
- D. When configure policy template, you can inherit the parent template and modify the parent template policy.
Answer: A,C
NEW QUESTION 78
In order to increase the security of AP, online AP may be authenticated on AC.
What are the current authentication methods supported by Huawei AC?
- A. Password authentication
- B. SN certification
- C. No certification
- D. MAC authentication
Answer: B,C,D
NEW QUESTION 79
Security domain division refers to dividing the intranet into several logically appropriate logical areas based on intranet service types and security requirements in order to better secure the intranet.
Which of the following options does not belong to the security domain in Agile Controller-Campus?
- A. Attack domain
- B. Network domain
- C. User domain
- D. Business Domain
Answer: A
NEW QUESTION 80
When the test-aaa command is used on the access control device to test the connectivity to the Radius server, the operation result is displayed successfully. However, the user cannot access the device normally. Possible reasons do not include the following options:
- A. In the wireless 802.1X scenario, no security profile is configured on the access control device.
- B. The service controller does not join AD domain in AD authentication scenario.
- C. The user account or password is wrong configured.
- D. The access layer switch does not enable EAP transparent transmission.
Answer: C
NEW QUESTION 81
Agile Controller-Campus product architecture includes three levels. Which of the following does not belong to product architecture hierarchy?
- A. Server layer
- B. Network device layer
- C. User access layer
- D. Admission control layer
Answer: D
NEW QUESTION 82
Which of the following is correct about the authentication method and authentication type?
- A. Users can use the web method to support both local authentication and digital certificate authentication.
- B. Users can use the web agent mode to support both digital certificate authentication and system authentication.
- C. Users can use the Agent mode to support three authentication types: local authentication, digital certificate authentication and system authentication.
- D. Users can use the web agent method to support both digital certificate authentication and local authentication.
Answer: C
NEW QUESTION 83
For the hardware SACC access control, if the terminal does not pass the authentication, it can access the post-authentication domain resources. This phenomenon may be caused by which of the following reasons? (Multiple choice)
- A. The privileged IP was misconfigured.
- B. The authentication data flow is filtered by SACG.
- C. Hardware SACG devices are not added to TSM system.
- D. SACG turns on default inter-domain packet filtering.
Answer: A,D
NEW QUESTION 84
Which of the following options are not included in mobile terminal life cycle?
- A. Obtain
- B. Operation
- C. Deployment
- D. Uninstall
Answer: D
NEW QUESTION 85
Which of the following network security threats exists only on WLAN networks?
- A. Pan attack
- B. Brute force
- C. Weak IV attack
- D. DoS denial of service attack
Answer: C
NEW QUESTION 86
......
Authentic Best resources for H12-723-ENU Online Practice Exam: https://www.dumpsking.com/H12-723-ENU-testking-dumps.html
