Free HCIP-Security H12-722_V3.0 Ultimate Study Guide (Updated 189 Questions) [Q33-Q56]

Share

Free HCIP-Security H12-722_V3.0 Ultimate Study Guide (Updated 189 Questions)

Get to the Top with H12-722_V3.0 Practice Exam Questions

NEW QUESTION 33
Which of the following is the correct configuration idea for the anti-virus strategy?
1. Load the feature library
2. Configure security policy and reference AV Profile
3. Apply and activate the license
4. Configure AV Profile
5. Submit

  • A. 3->2->4->1->5
  • B. 3->1->4->2->5
  • C. 3->1->2->4->5
  • D. 3->2->1->4->5

Answer: B

 

NEW QUESTION 34
The anti-virus feature configured on the Huawei USG6000 product does not take effect. Which of the following are the possible reasons? (multiple choice)

  • A. The anti-virus configuration file is configured incorrectly.
  • B. No virus exceptions are configured.
  • C. The virus signature database version is older.
  • D. The security policy does not reference the anti-virus configuration file.

Answer: A,C,D

 

NEW QUESTION 35
Which of the following attacks are attacks against web servers? (multiple choices)

  • A. SQL injection
  • B. Cross-site scripting attacks 2335
  • C. Website phishing deception
  • D. Website Trojan

Answer: A,B

 

NEW QUESTION 36
Which of the following threats cannot be detected by IPS?

  • A. Spam
  • B. DoS
  • C. Worms
  • D. Virus

Answer: A

 

NEW QUESTION 37
If a company wants to detect image files, Shellcode code files and PDF files, which of the following types of sandboxes can be used? (More select)

  • A. Web heuristic sandbox
  • B. PDF heuristic sandbox
  • C. PE heuristic sandbox
  • D. Heavyweight sandbox (virtual execution)

Answer: A,B,D

 

NEW QUESTION 38
The security management system is only optional, and anti-virus software or anti-hacking technology can be a good defense against network threats.

  • A. False
  • B. True

Answer: A

 

NEW QUESTION 39
Huawei's USG000 product can identify the true type of common files and over-check the content. Even if the file is hidden in a compressed file, or change the extension The name of the exhibition can't escape the fiery eyes of the firewall.

  • A. True
  • B. False

Answer: A

 

NEW QUESTION 40
Attacks on the Web can be divided into three types of attacks on the client, server, or communication channel.

  • A. True
  • B. False

Answer: A

 

NEW QUESTION 41
Regarding the Anti-DDoS cloud cleaning solution; which of the following statements is wrong?

  • A. The closer to the attacked self-labeled cloud cleaning service, the priority will be called.
  • B. Ordinary attacks will usually be cleaned locally first.
  • C. Since the Cloud Cleaning Alliance will direct larger attack flows to the cloud for cleaning, it will cause network congestion.
  • D. If there is a large traffic attack on the network, send it to the cloud cleaning center to share the cleaning pressure.

Answer: C

 

NEW QUESTION 42
Regarding Huawei's anti-virus technology, which of the following statements is wrong?

  • A. Gateway antivirus default file maximum decompression layer is 3 layers
  • B. The anti-virus engine can detect the file type through the file extension
  • C. The virus detection system cannot directly detect compressed files
  • D. The implementation of gateway antivirus is based on proxy scanning and stream scanning

Answer: B

 

NEW QUESTION 43
In the security protection system of the cloud era, reforms need to be carried out in the three stages before, during and after the event, and a closed-loop continuous improvement should be formed.
And development. Which of the following key points should be done in "things"? (multiple choice)

  • A. Defense in Depth
  • B. Offensive and defensive situation
  • C. Fight back against hackers
  • D. Vulnerability intelligence

Answer: A,C

 

NEW QUESTION 44
Terminal fault diagnosis tool can diagnose fault, also can collect terminal information.

  • A. TRUE
  • B. FALSE

Answer: A

 

NEW QUESTION 45
If the Huawei USG600 product uses its own protocol stack cache for all files passing through the device and then performs a virus scan, then the device uses It is the stream scanning method.

  • A. False
  • B. True

Answer: A

 

NEW QUESTION 46
Which of the following signature attributes cannot be configured for IP custom signature?

  • A. Agreement
  • B. Direction
  • C. ID
  • D. Message length

Answer: D

 

NEW QUESTION 47
In the Huawei USG6000 product, after creating or modifying the security configuration file, the configuration content will not take effect immediately: you need to click the "Prompt" in the upper right corner of the interface.
"Hand in" to activate.

  • A. True
  • B. False

Answer: A

 

NEW QUESTION 48
Which of the following options is not a feature of big data technology?

  • A. The data boy is huge
  • B. Slow processing speed
  • C. Low value density
  • D. A wide variety of data

Answer: B

 

NEW QUESTION 49
When the license of Huawei USG6000 product expires, the RBL function will be unavailable, and users can only use the local black and white list to filter junk mail.

  • A. True
  • B. False

Answer: A

 

NEW QUESTION 50
When a virus is detected in an email, which of the following is not the corresponding action for detection?

  • A. Warning
  • B. Block
  • C. Declare
  • D. Delete attachments

Answer: B

 

NEW QUESTION 51
Regarding intrusion detection I defense equipment, which of the following statements are correct? (multiple choice)

  • A. Ability to quickly adapt to threat changes
  • B. The number of applications that NIP6000 can recognize reaches 6000+, which realizes refined application protection, saves export bandwidth, and guarantees key business services Experience.
  • C. It cannot effectively prevent the virus from spreading from the Internet to the intranet.
  • D. Protect the intranet from external attacks, and inhibit malicious flows, such as spyware, worms, etc.
    from flooding and spreading to the intranet.

Answer: A,B,D

 

NEW QUESTION 52
Tianyu Nei answered the role of safety filtering technology, which of the following is still correct? (multiple choice)

  • A. The application behavior control function can finely control common HTTP behaviors and FTP behaviors.
  • B. Mail filtering refers to the management and control of mail sending and receiving, including preventing the flooding of spam and anonymous emails, and controlling the sending and receiving of illegal emails.
  • C. Content filtering can prevent the disclosure of confidential information and the transmission of illegal information
  • D. File filtering can reduce the risk of malicious code execution and virus infection in the internal network by blocking the transmission of fixed types of files, and it can also prevent Prevent employees from leaking company confidential documents to the Internet.

Answer: A,B,C,D

 

NEW QUESTION 53
Regarding the strong statement of DNS Request Flood attack, which of the following options is correct?

  • A. For the DNS Reguest Flood attack of the authorization server, the client can be triggered to send DINS requests in TCP packets: to verify The legitimacy of the source IP.
  • B. In the process of source authentication, fire prevention will trigger the client to send DINS request via TCP report to verify the legitimacy of the source IP, but in a certain process It will consume the TCP connection resources of the OINS cache server.
  • C. The DNS Request Flood attack on the cache server can be redirected to verify the legitimacy of the source
  • D. Redirection should not be implemented on the source IP address of the attacked domain name, and the destination P address of the attacked domain name should be implemented in the wild.

Answer: B

 

NEW QUESTION 54
Due to differences in network environment and system security strategies, intrusion detection systems are also different in specific implementation. From the perspective of system composition, the main Which four major components are included?

  • A. Incident extraction, intrusion analysis, intrusion response and remote management.
  • B. Incident recording, intrusion analysis, intrusion response and remote management.
  • C. Event extraction, intrusion analysis, reverse intrusion and remote management.
  • D. Incident extraction, intrusion analysis, intrusion response and on-site management.

Answer: A

 

NEW QUESTION 55
Regarding HTTP behavior, which of the following statements is wrong?

  • A. When the size of the uploaded or downloaded file and the size of the content of the POST operation reach the alarm threshold, the system will generate log information to prompt the device management And block behavior.
  • B. When the file upload operation is allowed, the alarm threshold and blocking threshold can be configured to control the size of the uploaded file.
  • C. When the uploaded or downloaded file size, POST operation content size reaches the blocking threshold, the system will only block the uploaded or downloaded file, POST operate.
  • D. HTTP POST is generally used to send information to the server through a web page, such as forum posting x form submission, username I password login.

Answer: C

 

NEW QUESTION 56
......

Pass Huawei H12-722_V3.0 exam - questions - convert Tets Engine to PDF: https://examtorrent.dumpsactual.com/H12-722_V3.0-actualtests-dumps.html