Exam Details

  • Exam Code
    :HC-711-ENU
  • Exam Name
    :HCNA Huawei Certified Network Associate - Constructing Basic Security Network (HCNA-CBSN) - ENU
  • Certification
    :Huawei Certifications
  • Vendor
    :Huawei
  • Total Questions
    :363 Q&As
  • Last Updated
    :Jul 16, 2025

Huawei Huawei Certifications HC-711-ENU Questions & Answers

  • Question 191:

    IPSEC WEB configuration wizard which does not support the following scenarios?

    A. Gateway to Gateway

    B. Gateway Center

    C. Branch Gateway D. Host and Host

  • Question 192:

    Which of the following configuration command parameter is not consistent with the actual scenario or technology implementations?

    A. ah authentication-algorithm md5

    B. ah encryption-algorithm des

    C. esp authentication-algorithm md5

    D. esp encryption-algorithm des

  • Question 193:

    In the transmission mode IPSec applications, the following data packets which area may be subject to encryption security?

    A. The network layer and the upper layer packets

    B. Original IP packet header

    C. The new IP packet header

    D. Transport layer and upper layer packets

  • Question 194:

    MAC address -based ACL application, which of the following description is correct?

    A. Can only be a source MAC address filtering

    B. Can only be a source MAC address and destination MAC address filtering

    C. Only data link layer protocol type, source MAC address and destination MAC address filtering

    D. Only network layer protocol type, source MAC address and destination MAC address filtering

  • Question 195:

    VPDN tunneling protocols include: (Choose three)

    A. L2TP

    B. GRE

    C. PPTP

    D. L2F

  • Question 196:

    There is VPN Client -side, LAC, LNS and other three components of the application scenario, which of the following components used between the L2TP TUNNEL? (Choose two)

    A. Between the VPN Client and LAC

    B. Between the VPN Client and LNS

    C. Between LAC and LNS

    D. All other options are correct

  • Question 197:

    You cannot add any interface to the firewall Local security zone, the firewall interface itself belongs to the Local security zone.

    A. True

    B. False

  • Question 198:

    When configuring ACL need to use anti- mask, elected the following statements are true about the anti-mask option.

    A. Take anti- mask bit 0,which means that the network needs to match the corresponding bit comparison

    B. Take anti- mask bit 1,which means that the network needs to match the corresponding bit comparison

    C. Not all anti- mask value of 0

    D. Not all anti- mask value of 1

  • Question 199:

    GRE VPN technology itself can provide which of the following techniques?

    A. Tunneling

    B. Encryption and decryption technology

    C. Flow control and QoS

    D. Key Management

  • Question 200:

    L2TP technology, LAC client uses port number _____ _____ protocol encapsulated packets.

    A. TCP 51

    B. UDP 51

    C. UDP 1701

    D. TCP 1701

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Huawei exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your HC-711-ENU exam preparations and Huawei certification application, do not hesitate to visit our Vcedump.com to find your solutions here.