
Get 100% Passing Success With True H12-722_V3.0 Exam! [Jan-2022]
Huawei H12-722_V3.0 PDF Questions - Exceptional Practice To HCIP-Security-CSSN V3.0
NEW QUESTION 104
With regard to APT attacks, the attacker often lurks for a long time and launches a formal attack on the enterprise at the key point of the incident.
Generally, APT attacks can be summarized into four stages:
1. Collecting Information & Intrusion
2. Long-term lurking & mining
3. Data breach
4. Remote control and penetration
Regarding the order of these four stages, which of the following options is correct?
- A. 1-2-4-3
- B. 1-4-2-3
- C. 2-1-4-3
- D. 2-3-4-1
Answer: B
NEW QUESTION 105
When configuring the terminal visits, we put some equipment configured exception equipment ,which of the following statements are true about the exception equipment?
- A. terminal in isolation domain can not access exception equipment .
- B. the exception equipment IP is not in controlled network segment.
- C. through identity authentication terminals can access exception equipment.
- D. only through security authentication terminals can access exception equipment.
Answer: B,C
NEW QUESTION 106
If the processing strategy for SMTP virus files is set to alert, which of the following options is correct?
- A. Add announcement and generate log
- B. Generate logs and forward them
- C. Generate logs and discard
- D. Delete the content of the email attachment
Answer: B
NEW QUESTION 107
Anti-DDoS defense system includes: management center, detection center and cleaning center.
- A. True
- B. False
Answer: A
NEW QUESTION 108
In Huawei USG6000 products, IAE provides an integrated solution, all content security detection functions are integrated in a well-designed In the high-performance engine. Which of the following is not the content security detection function supported by this product?
- A. Video content filtering
- B. Application recognition and perception
- C. Intrusion prevention
- D. URL classification and filtering
Answer: A
NEW QUESTION 109
Fage attack means that the original address and target address of TOP are both set to the IP address of a certain victim. This behavior will cause the victim to report to it.
SYN-ACK message is sent from the address, and this address sends back an ACK message and creates an empty connection, which causes the system resource board to occupy or target The host crashed.
- A. True
- B. False
Answer: B
NEW QUESTION 110
Due to differences in network environment and system security strategies, intrusion detection systems are also different in specific implementation. From the perspective of system composition, the main Which four major components are included?
- A. Incident extraction, intrusion analysis, intrusion response and remote management.
- B. Incident recording, intrusion analysis, intrusion response and remote management.
- C. Incident extraction, intrusion analysis, intrusion response and on-site management.
- D. Event extraction, intrusion analysis, reverse intrusion and remote management.
Answer: A
NEW QUESTION 111
Which of the following options are the possible reasons why a certain signature is not included after the IPS policy configuration is completed? (multiple choice)
- A. Direction is not enabled
- B. The severity level of the configuration is too high
- C. The direction is turned on, but no specific direction is selected
- D. The protocol selection technique is correct
Answer: B,C,D
NEW QUESTION 112
Which of the following features does Huawei NIP intrusion prevention equipment support? (multiple choice)
- A. Application identification and control
- B. Mail detection
- C. SSL traffic detection
- D. Virtual patch
Answer: A,C,D
NEW QUESTION 113
An enterprise has 3 server, which is the most reasonable plan when deploy Policy Center system planning?
- A. manager + controller + FTP + master database, controller + FTP + witness database, controller + FTP
+ mirror database - B. manager + controller + FTP + witness database, controller + master database + FTP, controller + mirror database+ FTP
- C. manager + controller + FTP, controller + FTP + witness databases, controller + FTP + master database
- D. manager + controller + FTP + mirror database, controller + FTP + witness database, controller + FTP + master database
Answer: B
NEW QUESTION 114
The core technology of content security lies in anomaly detection, and the concept of defense lies in continuous monitoring and analysis.
- A. True
- B. False
Answer: A
NEW QUESTION 115
Which of the following options belong to the upgrade method of the anti-virus signature database of Huawei USG6000 products? (multiple choice)
- A. Online upgrade
- B. Manual upgrade
- C. Local upgrade
- D. Automatic upgrade
Answer: A,C
NEW QUESTION 116
Which of the following are typical intrusions? "Multiple choice)
- A. Computer is infected by U disk virus
- B. Copy/view sensitive data
- C. Abnormal power interruption in the computer room
- D. Tampering with Web pages
Answer: B,D
NEW QUESTION 117
Regarding the mail content filtering configuration of Huawei USG6000 products, which of the following statements is wrong?.
- A. When a POP3 message is detected, if it is judged to be an illegal email, the firewall's response action only supports sending alarm information, and will not block the email o
- B. Mail filtering will only take effect when the mail filtering configuration file is invoked when the security policy is allowed.
- C. When an IMAP message is detected, if it is judged to be an illegal email; the firewall's response action only supports sending alarm messages and will not block the email.
- D. The attachment size limit is for a single attachment, not for the total size of all attachments.
Answer: A
NEW QUESTION 118
USG6000V software logic architecture is divided into three planes: management plane, control plane and
- A. Configuration plane
- B. Log plane
- C. Business plane
- D. Data forwarding plane
Answer: D
NEW QUESTION 119
The main attack prevention technologies of Huawei USG6000 products include: source detection, fingerprint learning and associated defense.
- A. True
- B. False
Answer: B
NEW QUESTION 120
The anti-virus feature configured on the Huawei USG6000 product does not take effect. Which of the following are the possible reasons? (multiple choice)
- A. The security policy does not reference the anti-virus configuration file.
- B. The virus signature database version is older.
- C. No virus exceptions are configured.
- D. The anti-virus configuration file is configured incorrectly.
Answer: A,B,D
NEW QUESTION 121
Regarding the file filtering technology in the USG6000 product, which of the following options is wrong?
- A. It can identify the type of files transmitted by itself, and can block, alert and announce specific types of files.
- B. It supports filtering the contents of compressed files after decompression. "
- C. Even if the file type is modified, it can also identify the true type of the file
- D. It can identify the application that carries the file, the file transfer direction, the file type and the file extension.
Answer: A
NEW QUESTION 122
For the description of URPF technology, which of the following options are correct? (multiple choice)
- A. Use URPF's loose mode in an environment where routing symmetry cannot be guaranteed.
- B. The main function is to prevent network attacks based on source address spoofing.
- C. In strict mode, it does not check whether the interface matches. As long as there is a route to the source address, the message can pass.
- D. The loose mode not only requires corresponding entries in the forwarding table, but also requires that the interface must match to pass the URPF check.
Answer: A,B
NEW QUESTION 123
Cloud sandbox refers to deploying the sandbox in the cloud and providing remote detection services for tenants. The process includes:
1. Report suspicious files
2. Retrospective attack
3. Firewall linkage defense
4. Prosecution in the cloud sandbox
For the ordering of the process, which of the following options is correct?
- A. 1-4-3-2
- B. 1-4-2-3
- C. 1-3-4-2
- D. 3-1-4-2
Answer: A
NEW QUESTION 124
If the regular expression is "abc. de", which of the following will not match the regular expression?
- A. abc+de
- B. abcde
- C. abcdde
- D. abclde
Answer: B
NEW QUESTION 125
Which of the following options describes the IntelliSense engine IAE incorrectly?
- A. Full English name: intelligent Awareness Engine.
- B. The security detection of the IAE engine is parallel, using a message-based file processing mechanism, which can receive file fragments and perform security checks.
- C. lAE's content security detection functions include application identification and perception, intrusion prevention, and Web application security.
- D. The core of C.IAE is to organically centralize all content security-related detection functions.
Answer: B
NEW QUESTION 126
......
H12-722_V3.0 dumps - DumpsQuestion - 100% Passing Guarantee: https://www.dumpsquestion.com/H12-722_V3.0-exam-dumps-collection.html