[Jun-2021] H12-711-ENU Dumps Full Questions - HCNA-Security Exam Study Guide
Exam Questions and Answers for H12-711-ENU Study Guide
NEW QUESTION 83
The following security policy command, representatives of the meaning:
- A. banned from trust region access to untrust region and the source address is 10.2.10.10 host to all the hosts ICMP message
- B. banned from trust region access to untrust region and the destination address is 10.1.0.0/16 segment all hosts ICMP message
- C. banned from trust region access to untrust region and the destination address is 10.1.10.10 host ICMP message
- D. banned from trust region access to untrust region and the source address is 10.1.0.0/16 segment all the hosts ICMP message
Answer: D
NEW QUESTION 84
Based on the GRE encapsulation and de-encapsulation, which description is error?
- A. De-encapsulation Process: After the destination receives GRE packets, transmitting the data packets through looking up the routing to the Tunnel interfaces to trigger GRE encapsulation.
- B. De-encapsulation Process: After GRE module de-encapsulation, the data packets will enter the IP module for further processing.
- C. Encapsulation Process: The original data packets transmit the data packets through looking up routing to the Tunnel interface to trigger GRE encapsulation.
- D. Encapsulation Process: After GRE module packaging, the data packet will enter the IP module for further processing
Answer: A
NEW QUESTION 85
Which of the following descriptions about windows logs is wrong?
- A. The application log contains events logged by the application or system program, mainly recording events in the running of the program.
- B. windows server 2008 security log is stored in security.evtx
- C. The system log is used to record the events generated by the operating system components, including the crash of the driver, system components and application software, and data.
- D. windows server 2008 system logs stored in the Application.evtx
Answer: D
NEW QUESTION 86
Regarding the firewall security policy, which of the following options are wrong?
- A. When configuring the security policy name, you cannot reuse the same name.
- B. If the security policy is permit, the discarded message will not accumulate the number of hits.
- C. Adjust the order of security policies without saving the configuration file.
- D. The number of security policy entries of Huawei USG series firewalls cannot exceed 128.
Answer: B
NEW QUESTION 87
The process of electronic forensics includes: protecting the site, obtaining evidence, preserving evidence, identifying evidence, analyzing evidence, tracking and presenting evidence.
- A. True
- B. False
Answer: A
NEW QUESTION 88
Which of the following is the encryption technology used in digital envelopes?
- A. Symmetric encryption algorithm
- B. Hash algorithm
- C. Asymmetric encryption algorithm
- D. Streaming algorithm
Answer: C
NEW QUESTION 89
When Firewall does dual-system hot backup networking, in order to achieve the overall status of the backup group switching, which of the following protocol technology need to be used?
- A. VGMP
- B. HRP
- C. OSPF
- D. VRRP
Answer: A
NEW QUESTION 90
Digital certificates can be divided into local certificates, CA certificates, root certificates and self-signed certificates according to different usage scenarios.
- A. True
- B. False
Answer: A
NEW QUESTION 91
Which of the following description is correct about the sort of the call setup process for L2TP corridors?
1. L2TP tunnel
2. PPP connection
3. LNS authenticates users
4. Users access intranet resources
5. Establish an L2TP session
- A. 1->5->3->2->4
- B. 1->2->3->5->4
- C. 2->1->5->3->4
- D. 2->3->1->5->4
Answer: A
NEW QUESTION 92
Apply for emergency response special funds, which stage work content does procurement emergency response software and hardware equipment belong to in the network full emergency response?
- A. Preparation stage
- B. Recovery phase
- C. Inhibition phase
- D. Response phase
Answer: A
NEW QUESTION 93
NAPT technology can implement a public network IP address for multiple private network hosts.
- A. True
- B. False
Answer: A
NEW QUESTION 94
Which of the following description about the group management for VGMP is wrong?
- A. master/slave devices exchange packets to understand each other through the heartbeat line, and backup the related commands and status information
- B. The interface type and number of two firewalls heartbeat port may be different, as long as they can communicate with each other
- C. Periodically sends Hello packets between VGMP of master/slave firewall
- D. Master/slave status change of VRRP backup group needs to notify its VGMP management group
Answer: B
NEW QUESTION 95
During the configuration of NAT, which of the following will the device generate a Server-map entry? (Multiple Choice)?
- A. After the NAT server is configured successfully, the device automatically generates a server map entry.
- B. A server-map entry is generated when easy-ip is configured.
- C. Automatically generate server-map entries when configuring source NAT.
- D. After configuring NAT No-PAT, the device will create a server-map table for the configured multi-channel protocol data stream.
Answer: A,D
NEW QUESTION 96
When establishing their own information systems, companies check each operation according to internationally established authoritative standards and can check whether their information systems are safe.
- A. True
- B. False
Answer: A
NEW QUESTION 97
Information security level protection is to improve the overall national security level, while rationally optimizing the distribution of security resources, so that it can return the greatest security and economic benefits.
- A. True
- B. False
Answer: A
NEW QUESTION 98
Which of the following is the encryption technology used by digital envelopes?
- A. Symmetric encryption algorithm
- B. Stream encryption algorithm
- C. Hash algorithm
- D. Asymmetric encryption algorithm
Answer: D
NEW QUESTION 99
......
HCIA-Security V3.0 Free Update With 100% Exam Passing Guarantee: https://www.actual4test.com/H12-711-ENU_examcollection.html