H12-721 Exam Questions
260 real H12-721 exam questions with expert-verified answers and explanations. Page 4 of 6.
- Question #151
The following virtual firewall networking, USG provided outwardly rough business, VPN instance vfw1 coarse A, to the enterprise network diagram below. A foreign enterprise network...
- Question #152
In a dual-system hot backup, the backup channel must be the primary interface port by the board, which type is not supported?
- Question #153
As shown in a corporate network, where the USG_A and USG_B a hot standby configuration, USG_A based devices. Administrators want to configure SSL VPN enables branch employees can a...
- Question #154
As shown in Figure BFDS for SPF networking scenarios: 1. Run OSPF between FW_A, FW_B and FW_C. All three devices are neighbors. 2. To reach FULL neighbor state, configure OSPF BFD...
- Question #155
When the neighbor status reaches the FULL state, and BFD and OSPF are configured as ganged, BFD completes the establishment of BFD session. Which of the following statements are co...
- Question #156
About the server load balancing, which of the following technology can be used to perceive the changes of server state to ensure that user requests are not sent to the failed serve...
- Question #157
The main method of caching servers DNS Request Flood defense is the use of DNS source authentication.
- Question #158
Refer to the following diagram in regards to Bypass mode. Which of the following statements is correct a few? (Choose two answers)
- Question #159
With the Huawei abnormal flow cleaning solution, deployed at the scene of a bypass, drainage schemes can be used to have? (Choose three answers)
- Question #160
Regarding IKE main mode and aggressive modes, which of the following statements is correct?
- Question #161
A network is shown below. A dial customer cannot establish a connection via a VPN client PC and USG (LNS) l2tp vpn. What are valid reasons for this failure? (Choose three answers)
- Question #162
From the branch offices, servers are accessed from the Headquarters via IPsec VPN. An IPSEC tunnel can be established at this time, but communication to the servers fails. What are...
- Question #163
A user has been successfully authenticated using an SSL VPN. However, users can not access the Web-link resources through the Web server. Using the information provided, which of t...
- Question #164
According to the network diagram regarding hot standby, which of the following are correct? (Choose three answers)
- Question #165
Which of the following are correct regading TCP and TCP proxy on the reverse source detection? (Choose three answers)
- Question #166
When traffic is finally sent from the outgoing interface, it is limited by the bandwidth of the outgoing interface. If the traffic is greater than the outbound interface bandwidth,...
- Question #167
The global routing means that when there are multiple equal-cost routes to the destination network, the Huawei USG6000 firewall can dynamically select the outbound interface accord...
- Question #168
IPsec tunneling is used as a backup connection as shown below: Which of the following statements are true about the tunnel interface? (Choose two answers)
- Question #169
The DHCP Snooping binding table function needs to maintain its binding table of contents that include? (Choose three answers)
- Question #170
Through the configuration of the Bypass interface, you can avoid network communication interruption caused by equipment failure and improve reliability. The power Bypass function c...
- Question #171
Which of the following statements about IPsec and IKE following are correct? (Choose three answers)
- Question #172
In the attack shown below, a victim host packet captures the traffic. According to the information shown, what kind of attack is this?
- Question #173
In IPsec VPN with NAT traversal, you must use IKE aggressive mode.
- Question #174
A man in the middle attack refers to an intermediate that sees the data exchange between server and client. To the server, all messages appear to be sent to or received from the cl...
- Question #175
In an Eth-Trunk interface, you can achieve load balancing by configuring different weights on each member link.
- Question #176
Huawei UMA products can be deployed in a logically concatenated manner. Which of the following statements is true about the logical mode of this deployment?
- Question #177
GRE Over IPSec tunnel can achive the tranform of IPX packets.
- Question #178
A SSL VPN login authentication is unsuccessful, and the prompt says "wrong user name or password." What is wrong?
- Question #179
SSL works at the application layer and is encrypted for specific applications, while IPsec operates at which layer and provides transparent encryption protection for this level and...
- Question #180
The IP-MAC address binding configuration is as follows: [USG] firewall mac-binding 202.169.168.1 00e0-fc00-0100 When the data packets travel through the Huawei firewall device, and...
- Question #181
Dual hot standby load balancing service requires three interfaces, one for the line connecting the router, and two USG facilities mutual backup, configuration commands are "hrp tra...
- Question #182
IP-link probe packets will be sent to the specified IP address by default when the probe fails three times, enabling this interface if the main link fails.
- Question #183
Two endpoints cannot build a successful IPsec VPN session. Which of the following firewall configuation errors could be the problem? (Choose three answers)
- Question #184
Testing Center is responsible for flow testing, and test results sent to the management center.
- Question #185
Which of the following are scanned snooping attack??
- Question #186
Which of the following VPN protocols do not provide encryption? (Choose three answers)
- Question #187
When a Huawei Secure VPN client connection initializes using L2TP, the L2TP packet uses a source port of 1710, and a destination port of 1710.
- Question #188
A user logs into the Virtual Gateway Web Page but receives a "can not display the webpage" message. What are possible causes for this? (Choose two answers)
- Question #189
See the following firewall information: Based on the output, which of the following answers are correct? (Choose three answers)
- Question #190
In the Huawei abnormal flow cleaning solution, deployed at the scene of a bypass, the re-injection scheme can be used to have which of the following? (Choose three answers)
- Question #191
When an attack occurs, the attacked host (1.1.129.32) was able to capture many packets as shown. Based on the information shown, what kind of attack is this?
- Question #192
An enterprise networking is shown as the following figure, the hot standby is configured on USG_A and USG_B, and USG_A is the master device. The administrator wants to configure SS...
- Question #193
Which of the following resource allocation methods are supported by Huawei USG6000 product resource allocation?
- Question #194
In hot standby, what is the number of cycles does not receive the HRP HELLO packet from the peer end, the Slave peer considers the peer end to be faulty?
- Question #195
Refer to the following NIP firewall intrusion detection actions: 1. records the invasion process, alarm logging 2. NIP attack detection 3. reconfigure the firewall 4. Termination i...
- Question #196
An administrator views the status information and IPsec Debug information as follows: What is the most likely reason for failure?
- Question #197
PCA has an IP address of 192.168.3.1 in the Trust area. In the Untrust zone users cannot access the Internet server. Based on the configuration of the Trust and Untrust fields abov...
- Question #198
Which of the following is a drawback of an L2TP VPN?
- Question #199
Regarding the Radius authentication process, refer to the following steps: 1. Network device Radius client (network access server) receives the user name and password, and sends an...
- Question #200
With IP-link, information is sent to the destination address specified with continuous ICMP packets or ARP request packets, and checks whether you can receive the destination IP re...