
(PDF)HCNP-Security H12-723試験と認定テストエンジン
無料提供中のH12-723試験問題集で(2022年最新のPDF問題集)信頼度の高いH12-723テストエンジン
質問 32
Which of the following law items is the most blessed for safety? This should be true?
- A. Terminal host security management is mainly implemented by inspection strategies, and end user behavior management is mainly implemented by monitoring strategies.
- B. Checking strategies are mainly used to check some static settings of the terminal, such as whether the screen saver is set, whether the antivirus software is installed; whether there is illegal Outreach etc. z00
- C. Monitoring strategies are mainly used for real-time monitoring of events that occur in the system, such as whether anti-virus software is installed and whether PPPOE dial-up access is used Network, etc.-Once an incident is detected, some control can be taken.
- D. The security check strategy only includes two types of end-host check-type strategies and end-user behavior check-type strategies.
正解: A
質問 33
Portal The second-level authentication method of authentication refers to the direct connection between the client and the access device(Or only layer devices exist in between),The device can learn the user's MAC Address and can be used IP with MAC Address to identify the user.
- A. right
- B. wrong
正解: A
質問 34
If you deploy Free Mobility, in the logic architecture of Free Mobility, which of the following options should be concerned by the administrator?
- A. Is the strategy automatically deployed?
- B. Choose the appropriate policy control point and user authentication point
- C. Does the strategy deployment target a single department?
- D. Does the strategy deployment target a single user?
正解: B
質問 35
Security domain division refers to dividing the intranet into several logically appropriate logical areas based on intranet service types and security requirements in order to better secure the intranet.
Which of the following options does not belong to the security domain in Agile Controller-Campus?
- A. User domain
- B. Business Domain
- C. Network domain
- D. Attack domain
正解: D
質問 36
Create CAPWAP between AP and AC, establish CAPWAP tunnel negotiates with AP and AC. In this process, CAPWAP tunnel use DTLS to encrypt and transmit UDP packets.
Which encryption methods are supported by DTLS?
- A. Certificate Encryption
- B. AES encryption
- C. Plaintext encryption
- D. PSK encryption
正解: A,D
質問 37
Which of the following does the user access authentication technology do not include?
- A. Quarantine repair
- B. Authentication
- C. Security check
- D. Admission control
正解: A
質問 38
There is a three-layer forwarding device between the authentication client and the admission control device:If at this time Portal The certified three-layer authentication device can also obtain the authentication client's MAC address,So you can use IP Address and MC The address serves as the information to identify the user.
- A. wrong
- B. right
正解: A
質問 39
What are the three main steps of business free deployment? (Multiple choice)
- A. Define user groups
- B. Define and deploy group policies
- C. Define security group
- D. Security group reported by the system
- E. The system runs automatically
正解: B,C,E
質問 40
Business accompanying is-A special access control method, according to the user's access location, access time, access method and terminal use to grant designated investment limits, among which the physical connection can be divided into 3 Class, excluding which of the following access methods?
- A. Wireless access
- B. Wired access
- C. 802.1X Access
- D. VPN Access
正解: C
質問 41
Which of the following are correct about each role in the Portal authentication architecture? (Multiple choices)
- A. AAA server is used to push Portal authentication page to users.
- B. Web server is used to push Portal authentication page to users.
- C. web server stores user name and password for authentication of access users.
- D. AAA server stores user name and password for authentication of access users.
正解: A,D
質問 42
IPS signature set priorities cannot be adjusted.
- A. TRUE
- B. FALSE
正解: B
質問 43
In the campus, users frequently enter and leave the wireless signal coverage area because of office requirements. If you need to protect the user's internet access experience, after the user passes one authentication and does not need to repeat the authentication when accessing the network again, which of the following is recommended?
- A. 802.1X authentication
- B. MAC-Priority Portal Authentication
- C. MAC authentication
- D. Portal authentication
正解: B
質問 44
The administrator issues notices to users in the form of announcements, such as the latest software and patch installation notices. Which of the following options of the announcement is incorrect?
- A. The terminal must have a proxy client installed to receive announcements.
- B. Announcements can be issued by the security department
- C. If the system issues an announcement and the proxy client is not online, the announcement information will not be received after going online.
- D. Announcements can be issued by account.
正解: C
質問 45
Which of the following options belongs to MC prioritized pail Authentication application scenarios?
- A. Users follow WeChat for authentication.
- B. User use Pota At the first certification,RAOIUS Used by the server cache terminal MAC Address, if the terminal goes offline and then goes online again within the validity period of the cache,RAIUS The server directly searches the cache for the terminal's MAC The address is discussed.
- C. User use portal Page for authentication
- D. User use IAC Client authentication
正解: B
質問 46
In WIDS-enabled WLAN network, which of the following statements is correct regarding the determination of illegal devices?
- A. AP that are not connected to this AC are illegal AP
- B. All Ad-hoc devices will be directly identified as illegal devices
- C. STA that are not connected to this AC must check whether the access AP is valid
- D. STA that are not connected to this AC are illegal STA
正解: B,C
質問 47
User access authentication technology does not include which of the following options?
- A. Access control
- B. Authentication
- C. Security check
- D. Isolation repair'
正解: D
質問 48
Hardware in useSACG At the time of certification,SACG After the configuration is completed, you can seeSACG andAgile Agile Controller-Campus The linkage is successful, but the user authentication fails. This phenomenon may be caused by the following reasons? (Multiple choice)
- A. User flow has not passed SACG.
- B. SACG There is no release on the user stream.
- C. Agile Controller-Campus On and SACG Wrong key configuration for linkage
- D. SACG There is no closed state detection on it.
正解: B,D
質問 49
Which of the following statements is true about the description of ACL used by SACG devices and TSM systems?
- A. The default ACL rule group number can be arbitrarily specified.
- B. The default ACL rule group number can only be 3999.
- C. TSM linkage can be successfully enabled even if ACL with the original group number 3099 to 3999 is occupied.
- D. Because SACG needs to use ACL 3099 to 3999 to receive the rules delivered by TSM system, you must first ensure that these ACL are not referenced by other functions before configuring TSM linkage.
正解: D
質問 50
For the hardware SACC access control, if the terminal does not pass the authentication, it can access the post-authentication domain resources. This phenomenon may be caused by which of the following reasons? (Multiple choice)
- A. Hardware SACG devices are not added to TSM system.
- B. The privileged IP was misconfigured.
- C. The authentication data flow is filtered by SACG.
- D. SACG turns on default inter-domain packet filtering.
正解: B,D
質問 51
Which of the following are correct for Any Office solution content? (Multiple choices)
- A. Quickly integrate and interface with enterprise application cloud platform.
- B. Application rapid integration can be extended.
- C. The tunnel is dedicated and viruses can't intrude.
- D. Provide a unified security portal for enterprise mobility applications on mobile devices.
正解: A,B,C,D
質問 52
Aopt user isolation technology in WLAN networking environment, which of the following statements is wrong?
- A. Isolation in user groups means that users in the same group can't communicate with each other
- B. User isolation function means that Layer 2 packets associated with all wireless users on the same AP can't forward packets to each other.
- C. Group isolation and isolation between groups can't be used at the same time
- D. User isolation between groups means that users in different groups can't communicate with each other, and internal users in the same group can communicate
正解: C
質問 53
......
H12-723完全版問題集には無料PDF問題で合格させる:https://www.passtest.jp/Huawei/H12-723-shiken.html