[Nov-2021] Dumps Practice Exam Questions Study Guide for the H12-711 Exam
H12-711 Dumps with Practice Exam Questions Answers
NEW QUESTION 15
Which of the following is not included in the steps of tie safety assessment method?
- A. Penetration test
- B. Questionnaire survey
- C. Data analysis
- D. Manualaudit
Answer: C
NEW QUESTION 16
Which of the following statements are correct about thebusiness continuity plan? (Multiple Choice)
- A. Business continuity plan rines nnt require high-level participation Nfthe Company in determining the project scope phase
- B. Not all security incidents must be reported to company executives
- C. Business continuity plan does not require high-level participation of the company before forming a formal document
- D. BCP needs flexibility because it cannot predict all possible accidents
Answer: B,D
NEW QUESTION 17
HRP (Huawei Redundancy Protocol) Protocol to back up the connection state of data include: (Multiple Choice)
- A. TCP/UDP sessions table
- B. the routing table
- C. Server Map table
- D. the dynamic blacklist
Answer: A,C,D
NEW QUESTION 18
The network administrator can collect data to be analyzed on the network device by means of packet capture, port mirroring, or log, etc.
- A. False
- B. True
Answer: B
NEW QUESTION 19
Which of the following is true about the description of SSL VPN?
- A. May encrypt to IP layer
- B. There is a NAT traversal problem
- C. No authentication required
- D. Can beused without a client
Answer: D
NEW QUESTION 20
IPS (Intrusion Prevention System) is a defense system that can block in real time when intrusion is discovered
- A. False
- B. True
Answer: B
NEW QUESTION 21
Which of the following is null a itjquiiemeiil fui (bewail duuble hul standby?
- A. The firewall hardware model is consistent
- B. The firewall software version is consistent
- C. The type and number of the interface used are the same
- D. The firewall interface has the same IP address.
Answer: D
NEW QUESTION 22
Which of the following descriptions about the action and security profile of the security policy are correct?
(Multiple choice)
- A. The security profile must be applied to the security policy thats allowed to take effect.
- B. If the security policy action is "Allow", the traffic will not match the security profile.
- C. The security profile may know: be applied to the security policy tfat the action is allowed and take effect.
- D. If the action of the security policy is "prohibited", the device willdiscard this traffic, and then no content security check will be performed.
Answer: A,D
NEW QUESTION 23
Both A and B communicate data. If an asymmetric encryption algorithm is used for encryption, when A sends data to B.
Which of the following keys will be used for data encryption?
- A. A public key
- B. B private key
- C. public key
- D. A private key
Answer: C
NEW QUESTION 24
Check the firewall HRP status information as follows:
HRP_S [USG_ B] display hrp state
16 : 90 : 13 2010/11/29
The firewall's config state is : SLAVE
Current state of virtual routers configured as slave
GigabitEthernet0/0/0 vird 1 : slave
GigabitEthernet0/0/1 vied 2 : slave
Which of the following description is correct?
- A. the firewall VGMP group status is Master
- B. the firewall of HRP heartbeats interface is G0/0/0 and G0/0/1
- C. the firewall G0/0/0 and 0/1 G0 / interface of VRRP group status is Slave
- D. the firewall must be in a state of preemption
Answer: C
NEW QUESTION 25
As shown in the figure, a NAT server application scenario isconfigured when the web configuration mode is used
Which of the following statements are correct"? (Multiple choice)
- A. When configuring NAT Server, the internal address is 10 1.1 2 and the external address is 200.10.10.1.
- B. When configuring NAT Server, the internal address is 200.10.10.1 and the external address is 10.1.1.2.
- C. When configuring an interzone secunty policy, set the source security zone to DMZ and the target secunty zone to Untrust.
- D. When configuring an interzone secunty policy, set the source security zone to Untrust and the target security zone to DMZ
Answer: A,D
NEW QUESTION 26
HTTP packets are carried by UDP, and the HTTPS protocol is based on TCP three-way handshake. Therefore, HTTPS is relatively secure, and HTTPS is recommended.
- A. False
- B. True
Answer: A
NEW QUESTION 27
If the administrator uses 'he default authentication domain to authenticate a user, you onlyneed to enter a user name when the user logs, if administrators use the newly created authentication domain to authenticate the user, the user will need to enter login "username @ Certified domain name"
- A. False
- B. True
Answer: B
NEW QUESTION 28
Firewall update signature database and Virus database online throjgh security servicecenter, requires the firewall can connect to the Internet first, and then need to configure the correct DNS addresses.
- A. FALSE
- B. TRUE
Answer: B
NEW QUESTION 29
Digital certificate technology solves the problem that public key owners cannot determine in digital signature technology.
- A. False
- B. True
Answer: B
NEW QUESTION 30
......
Free HCNA-Security H12-711 Exam Question: https://www.exam-killer.com/H12-711-valid-questions.html
H12-711 by HCNA-Security Actual Free Exam Practice Test: https://drive.google.com/open?id=1bJAjPCGyaKGeTjePS8zxRYGY5a36gghV

