Real Huawei H12-723 Exam Questions [Updated 2022]
H12-723 Exam Dumps Pass with Updated 2022 HCIP-Security-CTSS(Huawei Certified ICT Professional -Constructing Terminal Security System)
NEW QUESTION 20
Which of the following options is not included in the mobile terminal life cycle?
- A. Uninstall
- B. Obtain
- C. deploy
- D. run
Answer: A
NEW QUESTION 21
In a WLAN network, intra-group isolation and inter-group isolation can be used at the same time.
- A. right
- B. wrong
Answer: A
NEW QUESTION 22
Which of the following options is about SACG The description of the online process is wrong?
- A. Terminal and Agile Controller-Campus Server communication SSL encryption
- B. Authentication fails, end users can only access resources in the pre-authentication domain
- C. Security check passed,Agile Controller-Campus Server notification SACG Will end user's IP Address switch to isolated domain
- D. Agile Controller-Campus Server gives SACG Carrying domain parameters in the message
Answer: C
NEW QUESTION 23
When an administrator accesse network for an account assigned to guest, which of the following audit action not included in that an administrator can perform on the visitor?
- A. Visitors logging off and on
- B. Account Deactivation/Reset Password
- C. Force users to go offline
- D. Send warning message to user
Answer: D
NEW QUESTION 24
Which of the following is correct of the accompanying logical architecture of the business?
- A. Points of concern for the network device plane include user terminals and static resources.
- B. The business management plane focuses on administrators, authentication servers and policy servers.
- C. The free-to-play logical architecture include management subsystem, authentication and authorization subsystem and business strategy subsystem.
- D. The user plane focuses on the authentication point and the policy enforcement point.
Answer: B
NEW QUESTION 25
In WLAN network, which type of packet does AP use to determine the type of device when AP is in monitoring mode?
- A. DHCP
- B. ARP
- C. 802.11MAC
- D. CAPWAP
Answer: C
NEW QUESTION 26
Which of the following statements is true about the description of ACL used by SACG devices and TSM systems?
- A. Because SACG needs to use ACL 3099 to 3999 to receive the rules delivered by TSM system, you must first ensure that these ACL are not referenced by other functions before configuring TSM linkage.
- B. The default ACL rule group number can be arbitrarily specified.
- C. The default ACL rule group number can only be 3999.
- D. TSM linkage can be successfully enabled even if ACL with the original group number 3099 to 3999 is occupied.
Answer: A
NEW QUESTION 27
VIP Experience guarantee, from which two aspects are the main guarantees VIP User experience? (Multiple choice)
- A. Strategy
- B. Forwarding priority
- C. Authority
- D. bandwidth
Answer: B,D
NEW QUESTION 28
Identity authentication determines whether to allow access by identifying the access device or user.
- A. True
- B. False
Answer: A
NEW QUESTION 29
MAC bypass authentication means that the access control device automatically obtains MAC address after the terminal is connected to the network, and sends the certificate of the access network to RADIUS server for verification.
- A. False
- B. True
Answer: A
NEW QUESTION 30
In the WLAN wireless access scenario, which of the following network security technologies belong to user access security? (Multiple choice)
- A. Link authentication
- B. AP Certification
- C. User access authentication
- D. data encryption
Answer: A,C,D
NEW QUESTION 31
Which of the following options are relevant to MAC Certification and MAC The description of bypass authentication is correct? (Multiple choice)
- A. MAC Certification is based on MAC The address is an authentication method that controls the user's network access authority. It does not require the user to install any client software.
- B. MAC During the authentication process, the user is required to manually enter the user name or password.
- C. MAC The bypass authentication process does not MAC The address is used as the user name and password to automatically access the network.
- D. MAC Bypass authentication is first performed on the devices that are connected to the authentication
802 1X Certification;If the device is 802. 1X No response from authentication, re-use MAC The authentication method verifies the legitimacy of the device.
Answer: A,D
NEW QUESTION 32
Which of the following is correct for the roles of Portal authentication system?
- A. The role of portal server is to receive the client authentication request, provide free portal service and authentication interface and interact with the access device to authenticate the client.
- B. The role of the admission control device is to complete the user's authentication, authorization and accounting.
- C. The role of RADIUS server is to redirect all HTTP requests from users in the authentication network segment to the Portal server.
- D. The client is Any Office software.
Answer: A
NEW QUESTION 33
In a WLAN network, when the AP is in monitoring mode, what kind of packets does the AP use to determine the device type?
- A. DHCP
- B. ARP
- C. 802.11MAC
- D. CAPWAP
Answer: C
NEW QUESTION 34
Which of the following options is not a challenge brought by mobile office?
- A. Users can access the network safely and quickly.
- B. Network gateway deployment
- C. The mobile office platform is safe and reliable and goes online quickly.
- D. Unified terminal management and fine control.
Answer: B
NEW QUESTION 35
Portal authentication is used on the terminal to access the network. However, it is not possible to jump to the authentication page. The possible reasons do not include which of the following options?
- A. The authentication port number configured on the access device Portal profile is 50100, default on Agile Controller-Campus.
- B. When the page is customized, the preset template is used.
- C. SC did not start.
- D. Portal authentication parameters configured on Agile Controller-Campus are inconsistent with the access control devices.
Answer: B
NEW QUESTION 36
In the terminal host check strategy, you can check whether the important subkeys and key values of the registry meet the requirements to control the terminal host's Access, which of the following check results will be recorded as violations? (multiple choice)
- A. The registry contains the prohibited"Subkeys and key values"W
- B. The registry does not contain the mandatory requirements of the policy"Subkeys and key values".
- C. The registry contains the mandatory requirements of the policy"Subkeys and key values",
- D. The registry does not contain any prohibited by this policy"Subkeys and key values"
Answer: A,B
NEW QUESTION 37
Identity authentication determines whether to allow access by identifying the identity of the access device or user.
- A. right
- B. wrong
Answer: A
NEW QUESTION 38
Regarding the use of MAC authentication to access the network in the WLAN networking environment, which of the following statements is wrong en.
- A. The user name format used by MAC authentication is only one of MAC address user name format.
- B. MAC bypass authentication solves the situation of both 802.1x client authentication and MAC authentication in the same network environment.
- C. MAC authentication does not require users to install any client software.
- D. MAC authentication actually uses 802 1X authentication method.
Answer: A
NEW QUESTION 39
Traditional access control policy passed ACL or VLAN Can not be achieved with IP Address decoupling, in IP The maintenance workload is heavy when the address changes. And because the agile network introduces the concept of security group, it can achieve the same IP Address decoupling.
- A. right
- B. wrong
Answer: A
NEW QUESTION 40
Which of the following is correct for terminal Wi-Fi push order?
- A. 1-2-3-4
- B. 2-3-1-4
- C. 3-2-1-4
- D. 4-2-3-1
Answer: C
NEW QUESTION 41
Which of the following equipment is suitable for use MAC Authentication access network?
- A. Office Windows System host
- B. Network printer 232335
- C. For testing Linux System host
- D. Mobile client, such as smart phone, etc
Answer: B
NEW QUESTION 42
Which of the following is the main function of SC component in Agile Controller-Campus?
- A. Integrate standard RADIUS servers, Porta servers, etc., it is responsible for implementing user-based network access control policy in conjunction with network access devices.
- B. As security server of Agile Controller-Campus, it is responsible for analyzing and calculating the security events reported by iRadar.
- C. As the management interface of Agile Controller-Campus, configure and monitor the system.
- D. As the management center of Agile Controller-Campus, it is responsible for formulating the overall strategy.
Answer: A
NEW QUESTION 43
......
H12-723 Exam Dumps, H12-723 Practice Test Questions: https://www.testvalid.com/H12-723-exam-collection.html