H12-725_V4.0 Exam Questions
518 real H12-725_V4.0 exam questions with expert-verified answers and explanations. Page 1 of 11.
- Question #1Firewall Technologies and Deployment
WAF device's working mode does not include which of the following?
WAF working modesforward proxyreverse proxybridge mode - Question #2Intrusion Prevention System (IPS) and Anti-DDoS
WAF devices can effectively and accurately resist CC attacks. Which of the following descriptions of CC attacks is incorrect?
CC attacksDDoSweb server attacksproxy-based attacks - Question #3Security O&M and Management
There is a log message in the firewall device, as shown below: Jun 1 2022 14:27:01 FV3 %%01UPDATE/3/1LOAD_FALL (1) [182]: Failed to load the signature database. (SyslogId=0, Module...
firewall logssyslog formatlog fieldslog modules - Question #4Advanced Security Features
Which item does the authentication protocol of Portal authentication not include?
Portal authenticationEAP protocolauthentication protocolsHTTP - Question #5Advanced Security Features
The LDAP protocol is based on the Client/Server structure to provide binding and query of directory information. All directory information is stored on the LDAP server. In the LDAP...
LDAPdirectory attributesDC attributedistinguished name - Question #6Advanced Security Features
Use iNaster NCE-Campus as the Portal server and deploy Portal authentication on the Huawei wireless controller. Which configuration is not necessary?
Portal authenticationwireless controlleriMaster NCE-CampusMAC authentication template - Question #7Advanced Security Features
In the MAC address authentication scenario, the user does not need to manually enter the user name and password. Which of the following is used as the authenticated user name?
MAC authenticationusername credentialMAC address802.1X alternative - Question #8Intrusion Prevention System (IPS) and Anti-DDoS
Which of the following descriptions about Huawei IPS equipment upgrade is correct?
IPS upgradesignature databaselicense authorizationdevice restart - Question #9Network Security Solution Design
Which of the following descriptions of policy routing matching rules is incorrect?
policy routingmatching rulesrouting conditionsdefault policy route - Question #10Network Security Solution Design
Which of the following parameters is not a condition for link quality check?
link quality checkdelayjitterpacket loss rate - Question #11VPN Technologies
Which of the following is not a functional feature of AH?
AH protocolIPsecdata encryptionintegrity check - Question #12Firewall Technologies and Deployment
Which of the following is a probe protocol that health checks cannot support?
health checkprobe protocolsRADIUSDNS - Question #13Network Security Solution Design
Which of the following descriptions about guaranteed bandwidth and maximum bandwidth is incorrect?
guaranteed bandwidthmaximum bandwidthtraffic managementQoS - Question #14Firewall Technologies and Deployment
Which of the following descriptions about deploying a firewall virtual system is incorrect?
virtual systemresource classVSYSfirewall virtualization - Question #15Firewall Technologies and Deployment
As shown in the figure, the firewall load balancing network is used, and the upstream and downstream devices are switches. Which of the following descriptions of the firewall VGMP...
VGMPload balancingactive-activefirewall HA - Question #16Firewall Technologies and Deployment
Which of the following is not part of the consistency check of dual-machine hot standby?
dual-machine hot standbyconsistency checkNAT configurationsecurity policy - Question #17Firewall Technologies and Deployment
As shown in the figure, the firewall is deployed as a gateway dual-machine hot standby, and the upstream and downstream devices are switches. To achieve round-trip traffic load bal...
VRRP backup groupsdual-machine hot standbyround-trip load balancinggateway HA - Question #18Advanced Security Features
When a visitor accesses the corporate network through Portal authentication, in order to ensure a good visitor experience, the visitor is required to open the wireless network rang...
Portal authenticationMAC priority Portalvisitor accesswireless authentication - Question #19Advanced Security Features
When using an LDAP server as the authentication server, if you want to perform user authentication, which of the following operations needs to be performed on the data of the LDAP...
LDAPuser authenticationquery operationdirectory service - Question #20Advanced Security Features
When using an LDAP server as the authentication server, which of the following protocols is used for the interaction between the device and the server?
LDAP protocolauthentication serverprotocol interactionRADIUS - Question #21Advanced Security Features
If you want to control users' forum postings, user logins, etc., which of the following HTTP behavior controls should be configured?
HTTP behavior controlPOST operationapplication layer controlweb content filtering - Question #22VPN Technologies
A user uses SSL to access network resources on the intranet. The administrator has enabled file sharing and web proxy services for the user, and has allowed the traffic of the serv...
SSL VPNvirtual gatewayweb proxyauthorization - Question #23Firewall Technologies and Deployment
How many levels of bandwidth policies does the firewall support?
bandwidth policyQoS levelstraffic management - Question #24Firewall Technologies and Deployment
Which of the following resources belongs to the quota resources allocated to the virtual system?
virtual systemquota resourcessafe zoneresource allocation - Question #25Firewall Technologies and Deployment
Which of the following descriptions about bandwidth resource allocation is incorrect?
bandwidth resourcepublic network interfaceinbound outboundVirtual-if - Question #26Network Security Solution Design
When a visitor comes to the enterprise, while facilitating visitor access, it is necessary to control the visitor's access behavior. For this kind of visitor scenario, which of the...
Portal authenticationvisitor accessnetwork admissionauthentication methods - Question #27Network Security Solution Design
Which of the following descriptions of the RADIUS and HWTACACS protocols is incorrect?
RADIUSHWTACACSAAA protocolcommand authorization - Question #28Advanced Security Features
Which of the following descriptions about Portal authentication is incorrect?
Portal authenticationactive authenticationpassive authenticationPortal server - Question #29Intrusion Prevention System (IPS) and Anti-DDoS
Among the following descriptions of IPS signature types, which signature type has the highest action priority?
IPS signatureexception signaturesignature prioritycustom signature - Question #30Advanced Security Features
In the URL filtering process, which of the following actions is performed as the first step?
URL filteringHTTP anomaly detectionblack white listURL classification - Question #31Intrusion Prevention System (IPS) and Anti-DDoS
Which of the following attacks does not expose network topology information?
network topology exposureTeardrop attackTracert attackscanning attack - Question #32Intrusion Prevention System (IPS) and Anti-DDoS
Which of the following descriptions of the ATIC system architecture is incorrect?
ATIC architectureanti-DDoSmanagement serverdetection cleaning - Question #33VPN Technologies
Which of the following descriptions of Web Link in web proxy is incorrect?
web proxyWeb LinkSSL VPNURL rewriting - Question #34Advanced Security Features
Which of the following descriptions of smart DNS is incorrect?
smart DNSlink load balancingweighted pollingDNS resolution - Question #35Advanced Security Features
Each bandwidth policy that references a bandwidth channel is independently constrained by the bandwidth channel, that is, traffic that meets the matching conditions of the bandwidt...
bandwidth channelbroadband exclusivetraffic policyQoS - Question #36Firewall Technologies and Deployment
Which of the following descriptions about dual-machine hot standby is incorrect?
dual-machine hot standbyload sharingactive-standbyconfiguration backup - Question #37Firewall Technologies and Deployment
As shown in the figure, the primary and secondary backup networking based on VRRP is wrong. In the following description of this scenario, which one is wrong?
VRRPhot standbyheartbeat interfacefirewall HA - Question #38Advanced Security Features
In which of the following access authentication methods, the terminal must obtain an IP address before authentication?
MAC authenticationIP address requirementpre-authenticationaccess control - Question #39Network Security Solution Design
In Huawei's admission control solution, after the access device receives the CoA-Roquest message or DM-Requst message from the RADTUS server, which RADIUS attribute in the message...
RADIUSCoA messageNAS-IP-Addressadmission control - Question #40Advanced Security Features
In the 802.1X authentication scenario, the access device directly encapsulates the EAPoL packet sent by the 802.1X client into a RADIUS packet, without processing the data in the E...
802.1XEAP relayRADIUS encapsulationEAP termination - Question #41Security O&M and Management
Common Vulnerability Scoring System (CVSS) is a widely used open standard for vulnerability scoring and adopts a modular scoring system. Which of the following does not include?
CVSSvulnerability scoringscoring dimensionssecurity standards - Question #42Advanced Security Features
Malicious URLs refer to URLs that contain malicious information. Which of the following is not the source of malicious URLs?
malicious URLsURL filteringsandboxthreat intelligence - Question #43Firewall Technologies and Deployment
As shown in the figure, which one of the following descriptions of dual-machine hot standby based on transparent mode is incorrect?
dual-machine hot standbytransparent modeVGMPload sharing - Question #44Network Security Solution Design
Which of the following descriptions about the characteristics of Eth-Trunk is incorrect?
Eth-Trunklink aggregationlogical interfacemember links - Question #45Advanced Security Features
Which of the following descriptions of virtual interfaces is incorrect?
virtual systemsvirtual interfaceroot systeminterface format - Question #46Advanced Security Features
Which of the following descriptions about the restrictions on the use of virtual systems is incorrect?
virtual systemsconsole portmanagement portadministrator restrictions - Question #47VPN Technologies
When IPSec uses certificate authentication, it is necessary to verify the legitimacy of the peer certificate. Which of the following is not a factor that needs to be considered to...
IPSeccertificate authenticationPKICRL - Question #48VPN Technologies
As shown in the figure, IPSec tunnels are established between the headquarters and branches. To achieve IPSec traffic load sharing, at least how many IPSec tunnels need to be estab...
IPSecload sharingVPN tunnelsnetwork topology - Question #49VPN Technologies
An enterprise has multiple branches. The exit IP address of the headquarters is fixed, but the exit IP addresses of the branches are random. An IPSec VPN needs to be established be...
IPSec VPNPolicy TemplatesDynamic IP AddressingHub-and-Spoke Topology - Question #50Intrusion Prevention System (IPS) and Anti-DDoS
Which of the following descriptions about HTTP Flood defense is incorrect?
HTTP Flood defenseDDoS mitigationDefense modesTraffic analysis