Spring Sale Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: buysanta

Exact2Pass Menu

Huawei Certified ICT Professional - Constructing Infrastructure of Security Network

Last Update 21 hours ago Total Questions : 217

The Huawei Certified ICT Professional - Constructing Infrastructure of Security Network content is now fully updated, with all current exam questions added 21 hours ago. Deciding to include H12-721 practice exam questions in your study plan goes far beyond basic test preparation.

You'll find that our H12-721 exam questions frequently feature detailed scenarios and practical problem-solving exercises that directly mirror industry challenges. Engaging with these H12-721 sample sets allows you to effectively manage your time and pace yourself, giving you the ability to finish any Huawei Certified ICT Professional - Constructing Infrastructure of Security Network practice test comfortably within the allotted time.

Question # 21

In the abnormal traffic cleaning solution, to ensure that the attack traffic can be imported into the cleaning center for cleaning, the VRRP is implemented in Step 12 as shown in the figure. The management center adopts the following configuration: Select Configuration-- > Anti-DDoS- - > " Drainage management " , create a drainage task, configure the protected IP address to 10.1.3.10/32. What kind of route will the cleaning center generate after the above steps are configured?

A.

destination address is the 32-bit static host routed by the attacker.

B.

Destination address is routed by the attacker ' s 0-bit iEGP host

C.

destination address is routed by the attacker ' s 32-bit eBGP host.

D.

source address is the attacker ' s 32-bit static host route

Question # 22

In the hot standby scenario, what is the correct statement about the primary and backup backups?

A.

batch backup is to back up all information in batches after the first negotiation of two devices is completed.

B.

The backup channel must be an interface on the service board and supports GE and Eth-trunk interfaces.

C.

By default, batch backup is turned on.

D.

Real-time backup is a real-time backup of newly created or refreshed data while the device is running.

Question # 23

In the networking environment of dual-system hot backup and ip-link, which of the following configurations is the key configuration for ip-link and dual-system hot backup?

A.

hrp mirror ip-link 1

B.

hrp track ip-link 1 master

C.

hrp track ip-link 1 slave

D.

ip-link check enable

Question # 24

What are the scenarios in which the USG series firewall service port sends gratuitous ARPs when the following configurations are performed?

A.

routing mode + switch

B.

routing mode + router

C.

exchange mode + switch

D.

exchange mode + router

Question # 25

Which of the following statements is true for virtual service technology?

A.

For multiple real servers, the real servers need to be in the same network segment and in the same security zone.

B.

For multiple real servers, the real servers may not be in the same network segment, but they must be in the same security zone.

C.

For multiple real servers, the real server may not be in the same security zone, but must be in the same network segment

D.

For multiple real servers, the network segment and security zone where the real server is located does not affect the load balancing function.

Question # 26

The testing center is responsible for detecting the traffic and sending the inspection result to the management center. The management center sends the drainage strategy to the cleaning center for drainage cleaning.

A.

TRUE

B.

FALSE

Question # 27

Which of the following protocols does the USG firewall hot standby not include?

A.

HRP

B.

VRRP

C.

VGMP

D.

IGMP

Question # 28

Using the virtual firewall technology, users on the two VPNs can log in to their private VPNs through the Root VFW on the public network to directly access private network resources. What are the following statements about the characteristics of the VPN multi-instance service provided by the firewall?

A.

security is high, VPN users access through the firewall authentication and authorization, access after access is to use a separate virtual firewall system to manage users, the resources of different VPN users are completely isolated

B.

VPN access mode is flexible and reliable. It can support from public network to VPN, and can also support from VPN to VPN.

C.

is easy to maintain, users can manage the entire firewall (including each virtual firewall) without a system administrator account with super user privileges.

D.

The access control authority is strict. The firewall can control the access rights of the VPN according to the user name and password. This allows different users such as travel employees and super users (need to access different VPN resources) to have different access rights.

Question # 29

The server health check mechanism is enabled on the USG firewall of an enterprise to detect the running status of the back-end real server (the three servers are Server A, Server B, and Server C). When the USG fails to receive the response from Server B multiple times. When the message is received, Server B will be disabled and the traffic will be distributed to other servers according to the configured policy.

A.

TRUE

B.

FALSE

Question # 30

What are the drainage schemes that can be used in the scenario of bypass deployment in Huawei ' s abnormal traffic cleaning solution?

A.

dynamic routing drainage

B.

static policy routing drainage

C.

static route drainage

D.

MPLS VPN drainage

Go to page: