[2021] Pass Huawei H12-722-ENU Exam Updated 180 Questions [Q40-Q63]

Share

[2021] Pass  Huawei H12-722-ENU Exam Updated 180 Questions

Get 2021 Updated Free Huawei H12-722-ENU Exam Questions & Answer

NEW QUESTION 40
Which of the following attack types is DDoS attack?

  • A. Single package attack
  • B. Traffic attack
  • C. Snooping scanning attack
  • D. Malformed packet attack

Answer: B

 

NEW QUESTION 41
Which of the following features are supported by the Huawei NIP intrusion prevention device?

  • A. SSL traffic detection
  • B. Application Identification and Control
  • C. Mail detection
  • D. Virtual Patch

Answer: A,B,D

 

NEW QUESTION 42
Regarding traditional firewalls, which of the following statements are correct? (multiple choice)

  • A. Ability to quickly adapt to changes in threats.
  • B. Unable to accurately control various applications, such as P2P, online games, etc. .
  • C. Lack of effective protection against application layer threats.
  • D. It cannot effectively resist the spread of viruses from the Internet to the intranet.

Answer: B,C,D

 

NEW QUESTION 43
The following figure shows the configuration of the URL filtering configuration file. Regarding the configuration, which of the following statements is correct?

  • A. The default action means that all websites are allowed to visit. So the configuration is wrong here.
  • B. The firewall will first check the blacklist entries and then the whitelist entries.
  • C. Assuming that the user visits the www.exzample.com website, which belongs to the categories of humanities and social networks at the same time, the user cannot access the website.
  • D. The user visits the website www.exzample.com, and when the black and white list is not hit, the next step is to query the predefined URL category entry.

Answer: C

 

NEW QUESTION 44
Which of the following belong to content security filtering technologies? (Multiple Choice)

  • A. Mail filtering
  • B. Application behavior control
  • C. Content Filtering
  • D. File Filtering

Answer: A,B,C,D

 

NEW QUESTION 45
Regarding computer viruses, which of the following options is correct?

  • A. All computer viruses must be parasitic in files and cannot exist independently
  • B. Computer viruses are latent, they may be latent for a long time, and only when they encounter certain conditions will they begin to carry out sabotage activities
  • C. Patching the system can completely solve the virus intrusion problem
  • D. Computer viruses are contagious. They can spread through floppy disks and CDs, but they will not spread through the Internet.

Answer: B

 

NEW QUESTION 46
Which of the following are the keyword matching patterns? (Multiple Choice)

  • A. Community word
  • B. Text
  • C. Regular expressions
  • D. Custom Keywords

Answer: B,C

 

NEW QUESTION 47
Part of the reason why the APT attack becomes difficult to defend is that it uses the vulnerabilities to attack.
This kind of zero-day hole usually requires flowers
A lot of time to research and analyze and produce corresponding defense methods.

  • A. True
  • B. False

Answer: A

 

NEW QUESTION 48
Malicious code usually uses RootKit technology in order to hide itself. RootKit modifies the kernel of the system by loading a special driver.
To hide itself and the role of designated files.

  • A. True
  • B. False

Answer: A

 

NEW QUESTION 49
Analysis is the core function of intrusion detection. The analysis and processing process of intrusion detection can be divided into three phases; build an analyzer to perform analysis on actual field data.
Which of the analysis, feedback and refinement is the function included in the first two stages?

  • A. Data processing, data classification, attack playback
  • B. Data processing, attack classification, post-processing
  • C. Data analysis, data classification, post-processing
  • D. Data processing, data classification, post-processing

Answer: D

 

NEW QUESTION 50
Which of the following options is not cyber security threat posed by weak personal security awareness?

  • A. Leaking corporate information
  • B. Disclosing personal information
  • C. Threat internal network
  • D. Increase the cost of enterprise network operation and maintenance

Answer: D

 

NEW QUESTION 51
Intrusion detection is a network security technology used to detect any damage or attempt to damage the confidentiality, integrity or availability of the system. Which of the following What is the content of the intrusion detection knowledge base?

  • A. Security Policy
  • B. Specific behavior patterns
  • C. Complete Trojan Horse
  • D. Complete virus sample

Answer: B

 

NEW QUESTION 52
What content can be filtered by the content filtering technology of Huawei USG6000? (Multiple choice)

  • A. Video content filtering
  • B. Application content filtering
  • C. Voice content filtering
  • D. File content filtering

Answer: B,D

 

NEW QUESTION 53
The IPS function of Huawei USG6000 supports two response methods: blocking and alarming.

  • A. True
  • B. False

Answer: A

 

NEW QUESTION 54
Analysis is the core function of intrusion detection. The analysis process of intrusion detection can be divided into three phases. The analyzer is built to analyze, feedback and refine the actual field data.
Which of these are the functions included in the first two phases?

  • A. Data Processing, Data Classification, Attack Playback
  • B. Data Processing, Data Classification, Post Processing
  • C. Data Analysis, Data Classification, Post Processing
  • D. Data Processing, Attack Classification, Post Processing

Answer: B

 

NEW QUESTION 55
An enterprise administrator configures the Web reputation system as shown in the figure. Regarding the configuration, which of the following statements is correct?

  • A. The content in No. 2 must be configured.
  • B. The content in No. 4 must be configured.
  • C. After the configuration is completed, you need to submit the configuration to take effect.
  • D. In addition to this page configuration, you also need to enable the firewall and sandbox linkage, otherwise the page configuration is invalid

Answer: D

 

NEW QUESTION 56
Threats detected by the big data intelligent security analysis platform will be synchronized to each network device at the same time C and then collected from the network device Collect it in the log for continuous learning and optimization.

  • A. True
  • B. False

Answer: A

 

NEW QUESTION 57
Intrusion detection is a kind of network security technology used to detect any damage or attempt to damage the confidentiality, integrity or availability of the system. Which of the following belongs to the intrusion detection knowledge base?

  • A. Complete Trojan sample
  • B. Specific behavior patterns
  • C. Security policy
  • D. Complete virus sample

Answer: B

 

NEW QUESTION 58
Why APT attacks are difficult to defend? Part of the reason is that they use zero-day loopholes to attack. This zero-day loopholes usually takes a lot of time to research and analyze and make corresponding defense methods.

  • A. True
  • B. False

Answer: A

 

NEW QUESTION 59
Because the sandbox can provide virtual execution environment to detect files on the network, the sandbox can replace devices such as Anti-Virus, IPS and spam detection when deploying security devices.

  • A. True
  • B. False

Answer: B

 

NEW QUESTION 60
Regarding the mail content filtering configuration of Huawei USG6000 products, which of the following statements is wrong?.

  • A. Mail filtering will only take effect when the mail filtering configuration file is invoked when the security policy is allowed.
  • B. The attachment size limit is for a single attachment, not for the total size of all attachments.
  • C. When an IMAP message is detected, if it is judged to be an illegal email; the firewall's response action only supports sending alarm messages and will not block the email.
  • D. When a POP3 message is detected, if it is judged to be an illegal email, the firewall's response action only supports sending alarm information, and will not block the email o

Answer: D

 

NEW QUESTION 61
Which of the following signature attributes cannot be configured for IP custom signature?

  • A. Agreement
  • B. Direction
  • C. Message length
  • D. ID

Answer: C

 

NEW QUESTION 62
Regarding the anti-spam local black and white list, which of the following statements is wrong?

  • A. The black and white list is matched by the sender's dns suffix
  • B. The black and white list is matched by extracting the source IP address of the SMTP connection
  • C. If the source IP address of the SMTP connection matches the blacklist, the connection will be blocked
  • D. The black and white list is matched by extracting the destination IP address of the SMTP connection

Answer: A

 

NEW QUESTION 63
......

Verified H12-722-ENU exam dumps Q&As with Correct 180 Questions and Answers: https://www.passtorrent.com/H12-722-ENU-latest-torrent.html