Exam Details

  • Exam Code
    :H12-711
  • Exam Name
    :HCIA-Security V4.0
  • Certification
    :HCIA-Security
  • Vendor
    :Huawei
  • Total Questions
    :363 Q&As
  • Last Updated
    :May 10, 2024

Huawei HCIA-Security H12-711 Questions & Answers

  • Question 21:

    The following types of interfaces can handle PPP protocol packets?

    A. interface Virtual-Template 1

    B. interface Ethernet 0/0(within the network)

    C. interface Ethernet 0/0(external network)

    D. interface loopback 1

  • Question 22:

    For VPN Client users,you can use the following way to the LAC device which initiated the request? (Choose two)

    A. PPP

    B. PPPOE

    C. IP

    D. TCP

  • Question 23:

    GRE is a technology by which of the following protected data stream that is selected packets are encapsulated into GRE packets?

    A. ACL

    B. Static Routing

    C. Routing Policy

    D. User Account

  • Question 24:

    IKE main mode and aggressive mode are the main differences?(Choose two)

    A. Exchange messages using the three main mode packet mode uses six brutal message

    B. Finally, there are two main mode message encryption, identity protection

    C. Finally, there are two messages savage mode encryption, identity protection

    D. Master mode only way to identify the IP address of the peer,and barbarous mode can be used to identify the IP address or name of the peer manner.

  • Question 25:

    Firewall access control lists default settings steps

    A. 1

    B. 3

    C. 5 D. 10

  • Question 26:

    Which of the following techniques can be implemented to refuse illegal host or illegal data packets? (Choose three)

    A. MAC and IP address binding

    B. ACL

    C. Blacklist

    D. Static Routing

  • Question 27:

    When configuring l2tp, the command start l2tp {ip ip-address, statement is correct?(Choose three)

    A. LNS is used to specify the trigger condition to initiate a call

    B. LAC is used to specify the trigger condition to initiate a call

    C. You can specify the domain name as a trigger condition

    D. You can specify the full name as a trigger condition

  • Question 28:

    LAC is a device with PPP and L2TP protocol processing capabilities.

    A. True

    B. False

  • Question 29:

    Which of the following IKE exchange mode IP address can be used to identify or by Name manner peer?

    A. Master Mode

    B. Aggressive Mode

    C. Fast mode

    D. Passive mode

  • Question 30:

    Following on TSM deployments statement is correct?(Choose three)

    A. Centralized deployment of SM and SCcannotbe installed on the same server

    B. SC centralized deployment can be madeinto a cluster approach to achieve system redundancy

    C. The size of the terminal is quite large, consider using a distributed network,to avoid a large number of terminal access TSM server,take up a lot of network bandwidth

    D. When distributed deployment,TSM security agents to select the nearest control server,access authentication and access control,and other business.

Related Exams:

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Huawei exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your H12-711 exam preparations and Huawei certification application, do not hesitate to visit our Vcedump.com to find your solutions here.