
[Dec 12, 2023] H12-711 Exam Dumps - Try Best H12-711 Exam Questions - TopExamCollection
Verified H12-711 exam dumps Q&As with Correct 290 Questions and Answers
Huawei H12-711 (HCIA-Security V3.0) exam is a computer-based test that consists of 60 multiple-choice questions. H12-711 exam duration is two hours, and candidates must score at least 60% to pass the exam. H12-711 exam is conducted by Huawei, which is a leading global provider of information and communication technology (ICT) infrastructure and smart devices.
Huawei H12-711 certification exam is intended for IT professionals who have experience in network security technologies and want to advance their careers. H12-711 exam is suitable for network engineers, security engineers, security analysts, technical support engineers, and other IT professionals who are looking to validate their knowledge and skills in network security technologies. HCIA-Security V3.0 certification exam is designed to test the candidate's theoretical knowledge as well as practical skills in network security technologies. H12-711 exam validates the candidate's ability to design, deploy, maintain, and troubleshoot enterprise network security solutions based on Huawei technologies.
NEW QUESTION # 54
Which of the followingare malicious programs? (Multiple choice)
- A. Trojan horse
- B. Worm
- C. Vulnerabilities
- D. Virus
Answer: A,B,D
NEW QUESTION # 55
Which of the following is not the identity of the IPSec SA?
- A. Security policy
- B. Source address
- C. spi
- D. Destination address
Answer: B
NEW QUESTION # 56
Which of the following statement about the L2TP VPN ofClient-initialized is wrong?
- A. LNS device receives user L2TPconnection request, can verify based on user name and password.
- B. LNS assign a private IP address for remote users
- C. remote users do not need to install VPN client software
- D. After the remote user access to internet, can initiate L2TP tunneling request to the remote LNS directly through the client software
Answer: C
NEW QUESTION # 57
Which of the following are the characteristics of a symmetric encryption algorithm? (Multiple choice)
- A. Key distribution is not secure
- B. Confidential speed is slow
- C. Fast encryption
- D. Key distribution security is high
Answer: A,C
NEW QUESTION # 58
Electronic evidence preservation is directly related to the legal effect of evidence, in line with the preservation of legal procedures, and its authenticity and reliability are guaranteed. Which of the following is not anevidence preservation technology?
- A. Digital certificate technology
- B. Encryption technology
- C. Message tag tracking technology
- D. Digital signature technology
Answer: C
NEW QUESTION # 59
Which of the following are the main implementations of gateway anti-virus? (Multiple choice)
- A. File killing method
- B. Stream scanning method
- C. Package inspection method
- D. Agent scanning method
Answer: B,D
NEW QUESTION # 60
Which of the followingdescription about the VGMP protocol is wrong?
- A. VGMP ensure that all VRRP backup groups state are the same througha unified control of the switching of each VRRP backup group state
- B. By default, when three HELLO packet cycle of Standby end does not receive HELLO packets which are sent from the opposite end, the opposite end will be considered a failure, which will switch itself to the Active state
- C. State of VGMP group is active, which will periodically send HELLO packets to the opposite end.
Stdandby end only monitors the HELLO packets, which will not respond - D. VGMP add multiple VRRP backup groups on the same firewall to a management group, uniformly manage all the VRRP group by management group.
Answer: C
NEW QUESTION # 61
In the firewall, detect ftp command to set in which mode? (Choose two.)
- A. Inter-Domain mode
- B. Domain Model
- C. System Model
- D. Interface Mode
Answer: A,B
NEW QUESTION # 62
Which of the following statements about IPSec SA is true?
- A. IPSec SA is two-way
- B. used to generate anencryption key
- C. Used to generate a secret algorithm
- D. IPSec SA is one-way
Answer: D
NEW QUESTION # 63
Administrators want to clear the current session table. Which of the following command is correct?
- A. display firewall session table
- B. display session table
- C. reset firewall session table
- D. clear firewall session table
Answer: C
NEW QUESTION # 64
Regarding the AH and ESP security protocols, which ofthe following options is correct? (Multiple Choice)
- A. ESP can provide encryption and verification functions
- B. AH can provide encryption and verification functions
- C. The agreement number of ESP is51.
- D. The agreement number of AH is 51.
Answer: A,D
NEW QUESTION # 65
Which of the following options are supported by VPN technology to encrypt data messages? (Multiple choice)
- A. GRE VPN
- B. SSL VPN
- C. L2TP VPN
- D. IPSec VPN
Answer: B,D
NEW QUESTION # 66
Digital signature is to achieve the integrity of data transmission by using a hash algorithm to generate digital fingerprints.
- A. False
- B. True
Answer: B
NEW QUESTION # 67
Which of the following description about the group management for VGMP is wrong?
- A. master/slave devices exchange packets to understand each other through the heartbeat line, and backup the related commands and status information
- B. Theinterface type and number of two firewalls heartbeat port may be different, as long as they can communicate with each other
- C. Master/slave status change of VRRP backup group needs to notify its VGMP management group
- D. Periodically sends Hello packets between VGMP of master/slave firewall
Answer: B
NEW QUESTION # 68
Encryption technology can transform readable information into unreadable information in a certain way
- A. False
- B. True
Answer: B
NEW QUESTION # 69
Regarding the description of the vulnerability scanning, which of the following is wrong?
- A. Vulnerability scanning is used to detect whether there is a vulnerability in the target host system.
Generally, the target host is scanned for specific vulnerabilities. - B. Vulnerability scanning is a technology based on network remote monitoring of target network or host security performance vulnerability, which can be used for simulated attack experiments and security audits.
- C. Vulnerability scanning can be done based onthe results of ping scan results and port scan
- D. Vulnerability scanning is a passive preventive measure that can effectively avoid hacker attacks.
Answer: D
NEW QUESTION # 70
......
Huawei H12-711 (HCIA-Security V3.0) Certification Exam is a comprehensive exam that covers all aspects of network security. H12-711 exam consists of multiple-choice questions that test the candidate's knowledge and understanding of network security concepts. H12-711 exam is designed to assess the candidate's ability to apply their knowledge to real-world scenarios and solve complex problems related to network security.
Huawei H12-711 Test Engine PDF - All Free Dumps: https://gocertify.topexamcollection.com/H12-711-vce-collection.html

