Huawei H12-711_V3.0-ENU HCIA-Security V3.0 Online Training
Huawei H12-711_V3.0-ENU Online Training
The questions for H12-711_V3.0-ENU were last updated at Feb 02,2025.
- Exam Code: H12-711_V3.0-ENU
- Exam Name: HCIA-Security V3.0
- Certification Provider: Huawei
- Latest update: Feb 02,2025
When configuring NAT Server on the USG Series Firewall, a Server-Map table is generated. Which item below does not belong to content in this performance?
- A . Destination IP
- B . Destination port number
- C . Agreement number
- D . Source IP
Which attack below does not belong to a special packet attack?
- A . ICMP redirection packet attack
- B . ICMP unreachable packet attack
- C . IP address scan attack
- D . Super ICMP Packet Attack
Which attack below is not a malformated packet attack?
- A . TEARDROP attack
- B . Smurf attack
- C . TCP shard attack
- D . ICMP unreachable message attack
"Caesar Password" is mainly encrypted by using a stick of specific specifications.
- A . True
- B . False
Which of the following is a remote authentication method? (Multiple Choice)
- A . RADIUS
- B . Local
- C . HWTACACS
- D . LLDP
When the firewall hard disk is on the throne, which of the following statement about the firewall log is correct?
- A . Administrators can announce the content log to view the detection and defense record of network threats
- B . Administrators can understand the user’s security risk behavior and the cause of the alarm or blocking reason via threat logs.
- C . Administrators know the user’s behavior, the keyword of the exploitation, and the effectiveness of the audit policy configuration through user activity logs.
- D . Administrators can use the security policy in which traffic hits in the policy, for fault location when there is a problem.
In the Client-Initiated VPN configuration, it is generally recommended to plan the address pool and headquarters network address as different network segments, otherwise you need to turn on the proxy forwarding function on the gateway device.
- A . True
- B . False
In addition to supporting built-in Portal authentication, firewall also supports custom Portal authentication, and does not require separate deployment of external Portal servers when using custom Portal authentication.
- A . True
- B . False
NAPT technology can implement a public IP address for multiple private network hosts.
- A . True
- B . False
IPSec VPN technology does not support NAT crossing when using the ESP security protocol package, because ESP encrypts the header of the packet.
- A . True
- B . False