[Feb 19, 2022] H12-723 Exam Dumps - Try Best H12-723 Exam Questions - PassTestking [Q32-Q49]

Share

[Feb 19, 2022] H12-723 Exam Dumps - Try Best H12-723 Exam Questions - PassTestking

Verified H12-723 exam dumps Q&As with Correct 200 Questions and Answers

NEW QUESTION 32
Which of the following devices is suitable for MAC authentication access network?

  • A. Linux system host for testing
  • B. Windows System Host for Office
  • C. Mobile clients, such as smart phones, etc.
  • D. Network printer

Answer: D

 

NEW QUESTION 33
Which of the following statement is correct IDS and IPS?

  • A. IDS only supports Inline online deployment
  • B. With the IPS does not need to deploy a firewall and IDS
  • C. the core technology of IPS is deep packet inspection and bypass inspection
  • D. IPS deployed as a bypass mode is similar to the function of ID

Answer: D

 

NEW QUESTION 34
Which of the following options is not a challenge brought by mobile office?

  • A. The mobile office platform is safe and reliable and goes online quickly.
  • B. Users can access the network safely and quickly.
  • C. Unified terminal management and fine control.
  • D. Network gateway deployment

Answer: D

 

NEW QUESTION 35
If the self-determined meter function is enabled on the Agile Controller-Campus and the account PMAC address is bound, Within a period of time, the number of incorrect cipher input by the end user during authentication exceeds the limit. Which of the following descriptions is correct? (multiple choice)

  • A. After the lock time, the account will be automatically unlocked
  • B. When the account number is reserved, only the sword type number cannot be authenticated on the bound terminal device, and it can be authenticated normally on other terminal devices.
  • C. The account is locked on all terminal devices and cannot be recognized.
  • D. If you want to lock out the account, the administrator can only delete the account from the list.

Answer: A,B

 

NEW QUESTION 36
Which of the following does not belong to the challenge of mobile office?

  • A. Secure and fast user access to the network.
  • B. The mobile office platform is safe and reliable.
  • C. Deployment of network gateways.
  • D. Unified management of the terminal, fine control.

Answer: C

 

NEW QUESTION 37
Which statement is wrong about SA principle configuration?

  • A. feature detection to identify the different applications by matching message feature and Knowledge Base feature set
  • B. Configure SA associated protocol identification is mainly used for the same data stream signaling channel and data channel associated with the identification , and thus identify protocol
  • C. reduces the maximum number of packets detection threshold, can reduce the sas module identification number of packets, thus improve the recognition rate agreement
  • D. There are some protocol packets are carried in other agreements, enable sa whole packet inspection can better detect such messages

Answer: C

 

NEW QUESTION 38
Portal page push rules have priority, and the rules with higher priority are matched with the user's authentication information first. If none of the configured rules match, The default rules are used.

  • A. right
  • B. wrong

Answer: A

 

NEW QUESTION 39
On WIDS functional WLAN Regarding the judgment of illegal devices in the network, which of the following statements are correct? (Multiple choice)

  • A. Not this AC Access STA,Also need to check access AP Does it contain law
  • B. all Ad-hoc The device will be directly judged as an illegal device
  • C. Not this AC Access STA Is illegal STA
  • D. Not this AC Access AP Is illegal AP

Answer: A,B

 

NEW QUESTION 40
Use hardware SACG access control, the result of viewing the session table on hardware SACG is as follows:
<FW>display firewall session table verbose:
tcpVPN: public-->public
Zone: untrust-->trust TTL: 00:10:00 Left: 00:05:27
Interface: GigabitEthernet0/0/1 NextHop:192.168.200.11 MAC:00-0c-29-d4-47-d2
<--packets: 316ytes:9516-->packets:33bytes:17277
192.168.0.119:1574-->192.168.200.11:15080
tcpVPN: public-->public
Zone: untrust-->trust TTL: 00:10:00 Left: 00:02:20
Interface: GigabitEthernet0/0/1 NextHop:192.168.100.1 MAC: 00-0c-29-a4-37-c2
<--packets:31bytes:9516-->packets:336ytes:17277
192.168.0.119:1671-->192.168.100.1:8443
Which of the following statements are correct? (Multiple choices)

  • A. If 192.168.200.11 is the server in the post-authentication domain, then the terminal with the IP address 192.168.0.119 may access the server if it is not authenticated.
  • B. If the session 192.168.0.119:1574-->192.168.200.11:15080 is not refreshed within 6 minutes, the IP address is 192.168.0.119. If the device wants to communicate with the device whose IP address is 192.168.200.11, must must reestablish the session.
  • C. 192.168.100.1 must be the manager IP address of Agile Controller-Campus.
  • D. 192.168.100.1 must be the controller IP address of Agile Controller-Campus.

Answer: A,B,C

 

NEW QUESTION 41
Which of the following is the main function of SC component in Agile Controller-Campus?

  • A. As the management center of Agile Controller-Campus, it is responsible for formulating the overall strategy.
  • B. Integrate standard RADIUS servers, Porta servers, etc., it is responsible for implementing user-based network access control policy in conjunction with network access devices.
  • C. As the management interface of Agile Controller-Campus, configure and monitor the system.
  • D. As security server of Agile Controller-Campus, it is responsible for analyzing and calculating the security events reported by iRadar.

Answer: B

 

NEW QUESTION 42
In the Agile Controller-Campus admission control technology framework, regarding the description of RADIUS, which of the following options is correct?

  • A. PADIUS Used in 802.1X Switch and AAA Information such as user name and password are passed between servers.
  • B. PADIUS Used on the client and 802.1X Information such as user names and passwords are passed between switches.
  • C. PADIUS Used for server to SACG Security policy issued by the device
  • D. PADIUS Used for Portal Server pushes to users Web page.

Answer: A

 

NEW QUESTION 43
Which of the following options are relevant to MAC Certification and MAC The description of bypass authentication is correct? (Multiple choice)

  • A. MAC Bypass authentication is first performed on the devices that are connected to the authentication
    802 1X Certification;If the device is 802. 1X No response from authentication, re-use MAC The authentication method verifies the legitimacy of the device.
  • B. MAC Certification is based on MAC The address is an authentication method that controls the user's network access authority. It does not require the user to install any client software.
  • C. MAC During the authentication process, the user is required to manually enter the user name or password.
  • D. MAC The bypass authentication process does not MAC The address is used as the user name and password to automatically access the network.

Answer: A,B

 

NEW QUESTION 44
A Layer 3 forwarding device exists between the authentication client and the admission control device. In this case, if the Layer 3 authentication mode of Portal authentication is adopted, the device can also obtain the MAC address of the authentication client. Therefore, the IP address and MAC address can be used as the same to identify the user's information.

  • A. True
  • B. False

Answer: B

 

NEW QUESTION 45
In Portal authentication, after enter the account password authentication through web browser, prompt "Authenticating..." The status continues for a long time before the authentication is successful.
This phenomenon is caused by which of the following reasons?

  • A. The portal template is configured with wrong password.
  • B. There are too many authorization rules on Agile Controller-Campus and it takes a lot of time to find them.
  • C. The lack of curtains in the terminal equipment leads to large delay.
  • D. Multiple Agile Controller servers simultaneously add the same terminal IP address to Portal "access terminal IP address list", and some of Agile Controller servers and terminals can't communicate normally.

Answer: D

 

NEW QUESTION 46
In the terminal security full-scale defense system, use PPT-PDCA model can effectively achieve terminal security defense. Which of the following does not belong to PPT model?

  • A. Organization
  • B. Plan
  • C. Process
  • D. Technology

Answer: B

 

NEW QUESTION 47
In the terminal host check class policy, you can control the access of the terminal host by checking whether the important subkeys and keys of the registry meet the requirements. Which of the following check results are recorded as violations? (Multiple choices)

  • A. The registry contains "subkeys and key values" prohibited by this policy.
  • B. The registry contains the "subkeys and key values" enforced by this policy.
  • C. The registry does not "subkeys and key values" prohibited by this policy.
  • D. The registry does not include the "subkeys and key values" enforced by this policy.

Answer: A,D

 

NEW QUESTION 48
Which of the following descriptions is wrong for the basic principle of user access security?

  • A. The terminal device selects the resource to be accessed according to the result of the status check
  • B. The security policy server checks the terminal status information. For terminal devices that do not meet enterprise security standards, the security policy server re-issues authorization information to the access device.
  • C. The terminal device directly interacts with the security policy server. The terminal reports its own status information, including the virus database version, operating system version and patch version installed on the terminal.
  • D. When terminal device accesses the network, it first authenticates the user through the access device, and the access device cooperates with the authentication server to complete the user identity authentication.

Answer: A

 

NEW QUESTION 49
......

Huawei H12-723 Test Engine PDF - All Free Dumps: https://www.passtestking.com/Huawei/H12-723-practice-exam-dumps.html