[2023] H12-731_V2.0 by HCIE-Security Actual Free Exam Practice Test [Q101-Q124]

Share

[2023]  H12-731_V2.0 by HCIE-Security Actual Free Exam Practice Test

Free HCIE-Security H12-731_V2.0 Exam Question


Huawei H12-731_V2.0 certification exam covers a broad range of topics related to network security, including network security design, security policy design, security management, firewall technology, intrusion prevention and detection, VPN technology, network access control, and more. H12-731_V2.0 exam is designed to test the candidate's ability to solve complex security problems and design effective security solutions for enterprise networks.


Huawei H12-731_V2.0 (HCIE-Security (Written) V2.0) Exam covers a wide range of topics related to network security, including network security design, implementation, and maintenance. H12-731_V2.0 exam also covers topics such as firewall technologies, intrusion prevention and detection, VPN technologies, and network access control. H12-731_V2.0 exam is designed to test the candidate's ability to design, implement, and maintain secure enterprise-level networks.

 

NEW QUESTION # 101
In the following description of the principles of network trapping defense, which are correct? (multiple selection).

  • A. For the detection behavior in the early stage of the attack, you can use deception to burst into defense. By creating various traps to mislead the attacker. Cause attackers to misunderstand the network structure, attack targets, and vulnerabilities.
  • B. In the face of viruses, worms, WebShell these weaponized attack methods, can use misleading methods to make the attack traffic be diverted to trap probe O
  • C. Installing threats against network weapons, network trapping defense technology, can use deception to make the attack execute special commands in the trapping system
  • D. Network trapping technology can disguise the actual business and vulnerabilities to mislead the attacker, so that the attacker can infiltrate the trapping system.

Answer: A,C,D


NEW QUESTION # 102
Formatting your computer means that the files have been completely erased Unable to fix.

  • A. TRUE
  • B. FALSE

Answer: B


NEW QUESTION # 103
Which of the following options are part of the Internet Behavior? (multiple selection).

  • A. User QQ account and its online and offline time
  • B. Sending and receiving emails
  • C. User profiles
  • D. Keywords that users search for using search engines

Answer: A,B,D


NEW QUESTION # 104
The main role of the audit system is to audit security events after the fact To provide sufficient evidence, a security audit product must have which of the following features7

  • A. It can automatically display the user's operation process and monitor the user's every behavior Determine whether the user's behavior poses a danger to the internal network security of the enterprise
  • B. It can provide fine-grained access control to maximize the security of user resources
  • C. Protect the security of user communications and the integrity of data, and prevent malicious users from intercepting and tampering with data It can fully protect users from malicious damage during operation
  • D. It provides centralized management of all server and network device accounts, which can complete the monitoring and management of the entire life cycle of the account

Answer: A


NEW QUESTION # 105
Each element of the audit policy can be flexibly configured, which is convenient for users to classify, classify audit and response, so how many elements the audit strategy includes

  • A. 0
  • B. 1
  • C. 2
  • D. 3

Answer: D


NEW QUESTION # 106
The HUAWEI CLOUD Dedicated HSM service can be used to handle operations such as encryption and decryption, signing, signature verification, key generation, and key security storage. After the user purchases the service, the provider has full control over the generation, storage and access authorization of the key.

  • A. FALSE
  • B. TRUE

Answer: B


NEW QUESTION # 107
Which of the following are important to the corporate network?

  • A. Prevent DOS attacks by hackers
  • B. System stability
  • C. Network serviceability
  • D. Provide security

Answer: B,C


NEW QUESTION # 108
In the Anti-DDos system, the function of cleaning devices is to detect anomalous traffic in the network and escalate to the management centre (single selection).

  • A. TRUE
  • B. FALSE

Answer: B


NEW QUESTION # 109
Which of the following attacks can be detected by a point device. (Single selection)

  • A. User privilege elevation
  • B. Password brute force cracking
  • C. Encrypt malicious traffic
  • D. Delete the process

Answer: B


NEW QUESTION # 110
The following is a description of DNS transparent proxy Which ones are correct? (multiple selection).

  • A. In the case of NGFW as the exit network and the DNS server of the enterprise intranet The DNS transparent proxy function can still be implemented normally.
  • B. Two DNS requests for the same user in the case of DNS transparent proxies The replaced address may be different.
  • C. The DNS proxy function replaces the source address header in the DNS request packet.
  • D. After enabling the DNS transparent proxy function The DNS server address to replace is determined for the outgoing interface

Answer: B,D


NEW QUESTION # 111
HiSec Insight's detection of unknown files relies primarily on sandbox detection.

  • A. FALSE
  • B. TRUE

Answer: B


NEW QUESTION # 112
Which of the following options is a DDOS attack against the application layer? (multiple selection).

  • A. HTTP slow attacks
  • B. UDP fragmentation attacks
  • C. DNS reflection attacks
  • D. TCPSYN flood attack

Answer: A,C


NEW QUESTION # 113
Based on years of deep understanding of customer needs and professional research in security, Huawei launched the Anti-DDoS solution, which does not include which of the following options is less

  • A. Testing Center
  • B. Suga Center
  • C. Cleaning center
  • D. Traffic Center

Answer: A,B,C


NEW QUESTION # 114
With the following description of the difference between stored XSS and reflected XSS, what are the correct items? (multiple selection).

  • A. Attacks caused by stored XSS are persistent
  • B. The attack code of stored XSS is stored on the target server
  • C. The attack code of the reflected XSS is stored on the target server
  • D. Attacks caused by reflective XSS are persistent

Answer: A,B


NEW QUESTION # 115
HiSec Insight's detection principle for XSS attacks is based on IPs signature libraries, such as detecting JS code features (script, alert), etC. o

  • A. TRUE
  • B. FALSE

Answer: B


NEW QUESTION # 116
Which of the following options are the main dangers of computer Trojans?

  • A. Personal accounts, passwords and other information were stolen
  • B. Cause the system to slow down or even freeze
  • C. Illegal remote control of a computer
  • D. User files are corrupted

Answer: A,B,C,D


NEW QUESTION # 117
The following describes the network scanning defense technology Which one is wrong? (single selection).

  • A. The trapping probe has a business simulation function.
  • B. In networking mode where the trap and the trap probe are on the same firewall| CIS and SecoManager are not required for trapping Closed-loop threat linkage can be completed directly through FW.
  • C. The trapping system produces a unique fingerprint for each attacker Able to record hacker IP, operating system Information such as browser type, type of attack weapon, etC.
  • D. Firewalls and switch devices can act as trapping probes.

Answer: A


NEW QUESTION # 118
Nmap is a network security tool for network discovery and security auditing, so which of the following options does it fall into ?

  • A. Vulnerability scanning
  • B. Port scanning
  • C. Virus scan
  • D. App scanning

Answer: B


NEW QUESTION # 119
If it is in the intrusion prevention configuration file Signatures, signature filters, and exception signatures are used at the same time When there is a configuration to the configuration file The following is about the order of matching Which option is correct? (single selection).

  • A. Exception Signature〉Signature〉Signature filter
  • B. Signature filter 〉Signature〉Exception signature
  • C. Signature〉Signature Filter 〉Exception Signature
  • D. Exception Signature〉Signature Over Filter〉Signature

Answer: D


NEW QUESTION # 120
The following describes the authentication method and authentication domain relationship for Internet users single sign-on What are the correct ones? (multiple selection).

  • A. If no other authentication domain exists on the server, the default authentication domain is online.
  • B. Single sign-on users need to be online on the firewall Policy control based on user Therefore, the single sign-on user must also belong to a certain authentication domain.
  • C. The firewall participates in the authentication process of single sign-on users, so authentication configuration can be performed in the authentication domain.
  • D. Single sign-on in progress Firewalls can also be bound to users based on IP/MAC addresses Identify the authentication domain to which the local user belongs

Answer: B,D


NEW QUESTION # 121
Which of the following are the following ways to protect enterprise users from viruses? (Multiple selection)

  • A. Install anti-virus software
  • B. Enhance safety awareness
  • C. Close unnecessary ports of the host
  • D. Patching

Answer: A,B,C,D


NEW QUESTION # 122
Hypothetical has a set of raw data as follows: .10, 20. 30. 40, 50" The set of data was desensitized by randomly swapping the position of the data, and the desensitized data was: .30 20. 50. 10. 40\Which of the following algorithms is used in this data masking method? (single selection).

  • A. Change
  • B. AV hash
  • C. Load break
  • D. Noise

Answer: A


NEW QUESTION # 123
When deploying an Anti-DDos system using bypass, which of the following options is a common drainage method? (single selection).

  • A. GRE drainage
  • B. Second-layer drainage
  • C. BGP drainage
  • D. MPLS LSP drainage

Answer: C


NEW QUESTION # 124
......


Huawei H12-731_V2.0 certification exam is a written exam that consists of multiple-choice questions and simulations. The duration of the exam is three hours, and candidates must score at least 600 points out of a total of 1000 to pass. H12-731_V2.0 exam is conducted in English and is available at Huawei Authorized Learning Partners (HALPs) worldwide. The H12-731_V2.0 certification is a valuable credential for security professionals looking to advance their careers and gain recognition for their expertise in Huawei security technologies.

 

Huawei H12-731_V2.0 Actual Questions and Braindumps: https://www.latestcram.com/H12-731_V2.0-exam-cram-questions.html

H12-731_V2.0 dumps & HCIE-Security sure practice dumps: https://drive.google.com/open?id=1Q_9Z6BA3gvlkvCplTCubPMHafp9O9DeN