
[Oct-2021] Pass Huawei H12-722-ENU Exam in First Attempt Guaranteed!
Full H12-722-ENU Practice Test and 180 unique questions with explanations waiting just for you, get it now!
NEW QUESTION 39
Which of the following signature properties cannot be configured for IP custom signatures?
- A. Direction
- B. ID
- C. Packet length
- D. protocol
Answer: C
NEW QUESTION 40
Which of the following are the keyword matching patterns? (Multiple Choice)
- A. Regular expressions
- B. Community word
- C. Custom Keywords
- D. Text
Answer: A,D
NEW QUESTION 41
Which of the following statement about IPS is wrong?
- A. The covering signature has a higher priority than the signature in a centralized signature.
- B. Changes to the IPS policy do not take effect immediately. You need to submit a compilation to update the configuration of the IPS policy.
- C. The signature set can contain both pre-defined and custom signatures.
- D. When the source security zone is the same as the destination security zone, the IPS policy is applied in the domain.
Answer: C
NEW QUESTION 42
Regarding the description of intrusion detection technology, which of the following statements is correct?
- A. Unable to detect violation of security policy.
- B. Cannot find the trace of the system being attacked.
- C. Can detect authorized and non-authorized intrusions.
- D. is an active, static security defense technology.
Answer: C
NEW QUESTION 43
Which descriptions about viruses and Trojans are correct? (Multiple Choice)
- A. Viruses are triggered by computer users
- B. Virus can self-replicate
- C. Trojans can self-replicate
- D. Trojans triggered by computer users
Answer: A,B
NEW QUESTION 44
Content filtering is a security mechanism for filtering files or applications by Huawei USG6000 products. By deeply identifying the content contained in the traffic, the device can block or alarm the traffic containing specific keywords.
- A. True
- B. False
Answer: A
NEW QUESTION 45
Which of the following attack types is DDoS attack?
- A. Traffic attack
- B. Malformed packet attack
- C. Single package attack
- D. Snooping scanning attack
Answer: A
NEW QUESTION 46
Which of the following options is correct about the sequence-by-flow detection of AntiDDoS?
1. The Netflow analysis device samples the current network traffic.
2 Send a drainage command to the cleaning center;
3 Discover DDoS attack traffic;
4. Netflor: analysis equipment sends alarms to ATIC Management Center;
5 abnormal flow is drained to the cleaning center for further inspection and cleaning;
6 The cleaning center sends the host of the attacked object IF address server to the router to implement the drainage.
7 Cleaning logs sent to the management center to generate reports;
8 The cleaned traffic is sent to the original destination server.
- A. 1-3-4-2-5-6-7-8
- B. 1-3-4-2-6-5-8-7
- C. 1-3-2-4-6-5-7-8
- D. 1-3-2-4-6-5-8-7
Answer: B
NEW QUESTION 47
The following commands are configured on the Huawei firewall:
[USG] firewall defend ip-fragment enable
Which of the following situations will be recorded as an attack? (Multiple Choices)
- A. DF bit is 1 and Fragment Offset + Length < 65535.
- B. DF bit is 1 and the MF bit is also 1 or the Fragment Offset is not 0.
- C. DF bit is 0, the MF bit is 1 or the Fragment Offset is not 0.
- D. DF bit is 0 and Fragment Offset + Length > 65535.
Answer: B,D
NEW QUESTION 48
What are the following descriptions of the role of content security filtering technology? (Multiple choices)
- A. E-mail filtering refers to the management and control of e-mail sending and receiving activities, including the prevention of spam and the proliferation of anonymous e-mails, and the control of illegal sending and receiving.
- B. Content filtering prevents the leakage of confidential information and the transmission of non-compliant information.
- C. File Filtering By blocking the transmission of certain types of files, you can reduce the risk of internal networks running malicious code and viruses. You can also prevent employees from leaking corporate confidential files to the Internet.
- D. The application behavior control function can finely control the common HTTP behavior and FTP behavior.
Answer: A,B,C,D
NEW QUESTION 49
In the big data intelligent security analysis platform, it is necessary to collect data from the data source, and then complete a series of actions such as data processing, detection and analysis.
Which of the following options does not belong to the data processing part that needs to be completed?
- A. Threat assessment
- B. Data preprocessing
- C. Distributed Index
- D. Distributed storage
Answer: A
NEW QUESTION 50
Viruses can damage computer systems and falsify or damage business data: Spyware collects, use and disseminate sensitive information from employees. These malicious software seriously interfere with the normal business operations of enterprises. Desktop anti-virus software can solve the problem of viruses and spyware globally.
- A. False
- B. True
Answer: A
NEW QUESTION 51
Huawei USG6000 product can virus scan and process certain file transfer protocols, but which of the following protocol does not include?
- A. FTP
- B. POP3
- C. IMAP
- D. TFTP
Answer: D
NEW QUESTION 52
In the Huawei USG6000 product, after the security profile is created or modified, the configuration does not take effect immediately. You need to click "Submit" in the upper right corner of the page to activate it.
- A. True
- B. False
Answer: A
NEW QUESTION 53
Which of the following are true about the description of keywords? (Multiple Choices)
- A. The minimum length of a keyword that a text can match is 2 bytes.
- B. Keywords include predefined keywords and custom keywords.
- C. Keywords are content that the device needs to recognize when content is filtered.
- D. Custom keywords can only be defined in text mode.
Answer: B,C
NEW QUESTION 54
Network attacks are classified into two types: single-packet attacks and traffic-based attacks. Single-packet attacks include scanning and snooping attacks, malformed packet attacks and special packet attacks.
- A. True
- B. False
Answer: A
NEW QUESTION 55
File filtering technology can filter files based on their application, file transfer direction, file type, and file extension.
- A. TRUE
- B. FALSE
Answer: A
NEW QUESTION 56
Analysis is the core function of intrusion detection. The analysis process of intrusion detection can be divided into three phases. The analyzer is built to analyze, feedback and refine the actual field data.
Which of these are the functions included in the first two phases?
- A. Data Processing, Attack Classification, Post Processing
- B. Data Analysis, Data Classification, Post Processing
- C. Data Processing, Data Classification, Attack Playback
- D. Data Processing, Data Classification, Post Processing
Answer: D
NEW QUESTION 57
What are the risks to information security caused by unauthorized access? (Multiple choices)
- A. Availability
- B. Confidentiality
- C. Integrity
- D. recoverability
Answer: B,C
NEW QUESTION 58
If Huawei USG6000 product uses its own protocol stack cache for all files passing through the device and then performs virus scanning, then the device uses a flow scan mode.
- A. TRUE
- B. FALSE
Answer: B
NEW QUESTION 59
The whitelist rule of the firewall antivirus module is configured as *example*. Which of the following matches is used in this configuration?
- A. Suffix matching
- B. Keyword matching
- C. Prefix matching
- D. exact match
Answer: B
NEW QUESTION 60
Which of the following statements is true about the process of file filtering?
- A. The file filtering module will match the application type, file type, transmission direction of the file identified by the previous module and the file filter rule query table configured by the administrator from top to bottom.
- B. If the file type is a compressed file, then after file filtering detection, the file will be sent to the file decompression module for decompression and decompressing the original file. If decompression fails, the file will no longer be filtered.
- C. If all the parameters of the file can match all the file filtering rules, the module will perform the action of this file filtering rule.
- D. There are two alarms and blocking actions.
Answer: C
NEW QUESTION 61
Which of the following is wrong about the 3 types of abnormalities in the file type recognition result?
- A. Unrecognized file type means that the file type can't be identified and there is no file extension.
- B. File extension mismatch means that the file type does not match the file extension.
- C. File corruption means that the file type can't be identified because the file is damaged.
- D. Unrecognized file type means that the file type can't be recognized and the file extension can't be recognized.
Answer: D
NEW QUESTION 62
Which of the following are the network layer attacks of the TCP/IP stack? (Multiple Choices)
- A. Buffer overflow
- B. Address scan
- C. Port scanning
- D. IP spoofing
Answer: B,D
NEW QUESTION 63
If you combine security defenses with big data technologies, which of the following statements is correct? (Multiple choice)
- A. The security source data can come from many places, including data flows, packets, threat events, logs, and so on.
- B. During the learning process, we should start with collecting samples, analyze their characteristic vectors, and then perform machine learning.
- C. Machine learning is only for statistics of a large number of samples, which is convenient for security administrators to view.
- D. During the detection process, the unknown sample needs to be extracted and the corresponding model is calculated to provide a sample for subsequent static comparison.
Answer: A,B,D
NEW QUESTION 64
......
Get Latest H12-722-ENU Dumps Exam Questions in here: https://www.passleader.top/Huawei/H12-722-ENU-exam-braindumps.html