Skip to main content

H12-723 Real Exam Questions

Huawei Certified ICT Professional - Constructing Terminal Security System

180 questions available · Page 1 of 18

Updated Exam DumpsVerified AnswersPass Guarantee

Get Complete Exam Dumps
Question 1 Single choice

Visitors can access the network through their registered account.

Which of the following is not an account approval method?

  1. A

    Exemption from approval

  2. B

    Administrator approval

  3. C

    Receptionist approval

  4. D

    Self-approved by visitors

Show answer and explanation

Correct answer: D

Question 2 Multiple choice

The following configurations are authentication commands configured on admission control devices A and
B. Based on the configuration, which of the following statements are correct? (Choose two)

  1. A

    The configuration on device A is MAC Bypass authentication.

  2. B

    The configuration on device B is MAC Bypass authentication.

  3. C

    On device A, interface 2GE1/0/1 can connect to PCs as well as dumb terminal devices.

  4. D

    On device B, interface GE1/0/1 can connect to PCs as well as dumb terminal devices.

Show answer and explanation

Correct answers: A, C

Question 3 Multiple choice

In some scenarios, an anonymous account can be used for authentication.

Which of the following descriptions about anonymous accounts are correct? (Choose two)

  1. A

    The use of anonymous accounts for authentication is based on mutual trust, and the authentication server does not require the user to provide identity information to offer services.

  2. B

    In Agile Controller-Campus, the "~anonymous" account needs to be manually created.

  3. C

    By default, access control and policy operations for anonymous accounts cannot be performed, such as invoking patch templates and software distribution.

  4. D

    Administrators cannot delete the "~anonymous" account.

Show answer and explanation

Correct answers: A, D

Question 4 Single choice

An enterprise adopts a hardware SACG access method for admission control. The configuration commands are as follows, where the key is Admin@123:

[USG] right-manager server-group
[USG-rightm] localip 10.1.10.2
[USG-rightm] serverip 10.1.31.78 shared-key AdnIn@123

[USG-rightm] right-manager server-group enable Assuming that the other configurations are correct, based on the above configuration only, which of the following options is correct?

  1. A

    After completing the configuration, SACG can successfully link with the Agile Controller-Campus.

  2. B

    After completing the configuration, SACG cannot successfully link with the Agile Controller-Campus.

  3. C

    The pre-authentication domain ACL can be issued.

  4. D

    The linkage cannot be successful, but the terminal can access the pre-authentication domain server.

Show answer and explanation

Correct answer: B

Question 5 Single choice

Regarding the identity authentication method and authentication type, which of the following descriptions is correct?

  1. A

    Users using the Web method can support two authentication types: local authentication and digital certificate authentication.

  2. B

    Users using the Web Agent method can support two authentication types: digital certificate authentication and system authentication.

  3. C

    Users using the Agent method can support three authentication types: local authentication, digital certificate authentication, and system authentication.

  4. D

    Users using the Web Agent method can support local authentication and digital certificate authentication.

Show answer and explanation

Correct answer: C

Question 6 Single choice

Which of the following statements about the Portal gateway access process is correct?

  1. A

    The Portal gateway initiates a Radius Challenge request message, including the username and password information.

  2. B

    The ACL issued by the server to the access gateway is carried in the Portal protocol message.

  3. C

    Policies are issued while performing identity authentication.

  4. D

    The Portal server needs to pass the security check result to the access gateway device.

Show answer and explanation

Correct answer: D

Question 7 Single choice

There are two types of accounts on the Agile Controller-Campus: one is a local account, and the other is an external account.

Which of the following is not a local account?

  1. A

    Ordinary account

  2. B

    Guest account

  3. C

    Anonymous account

  4. D

    Mobile certificate account

Show answer and explanation

Correct answer: D

Question 8 Single choice

According to the different username formats and contents used by access devices to verify user identity, there are three types of username formats available for MAC authentication.

Which of the following formats is not included?

  1. A

    MAC address format

  2. B

    Fixed username format

  3. C

    DHCP Option format

  4. D

    ARP Option format

Show answer and explanation

Correct answer: D

Question 9 Single choice

An enterprise has a large number of mobile office employees and needs to deploy a mobile office system to manage them. The number of employees exceeds 2,000, and their work areas are distributed nationwide.

To facilitate management, which deployment method should be adopted?

  1. A

    Centralized deployment

  2. B

    Distributed deployment

  3. C

    Hierarchical deployment

  4. D

    Both centralized and distributed deployment are possible

Show answer and explanation

Correct answer: B

Question 10 Single choice

Which of the following situations may cause Portal authentication to fail?

  1. A

    Incorrect Portal server IP configured on the switch.

  2. B

    Portal page template not uploaded.

  3. C

    The shared key between the switch and the controller is inconsistent.

  4. D

    The Portal page password length is too short.

Show answer and explanation

Correct answer: C