Try Before You Buy

Download a free sample of any of our exam questions and answers

  • 24/7 customer support, Secure shopping site
  • Free One year updates to match real exam scenarios
  • If you failed your exam after buying our products we will refund the full amount back to you.

Updated Feb-2022 Exam Engine for H12-722-ENU Exam Free Demo & 365 Day Updates [Q89-Q112]

Share

Updated Feb-2022 Exam Engine for H12-722-ENU Exam Free Demo & 365 Day Updates

Exam Passing Guarantee H12-722-ENU Exam with Accurate Quastions!

NEW QUESTION 89
Regarding Huawei's anti-virus technology, which of the following statements is wrong?

  • A. Gateway antivirus default file maximum decompression layer is 3 layers
  • B. The virus detection system cannot directly detect compressed files
  • C. The anti-virus engine can detect the file type through the file extension
  • D. The implementation of gateway antivirus is based on proxy scanning and stream scanning

Answer: C

 

NEW QUESTION 90
USG6000V software logic architecture is divided into three planes: management plane, control plane and

  • A. Business plane
  • B. Configuration plane
  • C. Data forwarding plane
  • D. Log plane

Answer: C

 

NEW QUESTION 91
If the user's FTP operation matches the FTP filtering policy, which actions can be performed? (Multiple choice)

  • A. Blocking
  • B. Execution
  • C. Announcement
  • D. Alerts

Answer: A,D

 

NEW QUESTION 92
With regard to traditional firewalls, which of the following statements are correct? (Multiple choice)

  • A. Can quickly adapt to changes in threats.
  • B. Lack of effective protection against application layer threats.
  • C. It is unable to effectively resist the spread of viruses from the Internet to the internal network.
  • D. Cannot accurately control various applications such as P2P, online games, etc.

Answer: B,C,D

 

NEW QUESTION 93
IPS function of Huawei USG6000 product supports two response modes of blocking and alarming.

  • A. FALSE
  • B. TRUE

Answer: B

 

NEW QUESTION 94
Analysis is the core function of intrusion detection. The analysis process of intrusion detection can be divided into three phases. The analyzer is built to analyze, feedback and refine the actual field data.
Which of these are the functions included in the first two phases?

  • A. Data Processing, Data Classification, Attack Playback
  • B. Data Processing, Data Classification, Post Processing
  • C. Data Analysis, Data Classification, Post Processing
  • D. Data Processing, Attack Classification, Post Processing

Answer: B

 

NEW QUESTION 95
The security management system is optional, and anti-virus software or anti-hacking technology can be very good against network threats.

  • A. True
  • B. False

Answer: B

 

NEW QUESTION 96
Malicious code usually uses RootKit technology in order to hide itself. RootKit modifies the kernel of the system by loading a special driver.
To hide itself and the role of designated files.

  • A. True
  • B. False

Answer: A

 

NEW QUESTION 97
Because the sandbox can provide virtual execution environment to detect files on the network, the sandbox can replace devices such as Anti-Virus, IPS and spam detection when deploying security devices.

  • A. True
  • B. False

Answer: B

 

NEW QUESTION 98
When using the two-way SSL function to decrypt HTTPS packets, the value of the reverse proxy level represents the number of times the packet can be decrypted.

  • A. True
  • B. False

Answer: B

 

NEW QUESTION 99
Regarding the sequence of file filtering technology processing flow, which of the following is correct?
(1) The security policy is applied as permit
(2) Protocol decoding
(3) File type recognition
(4) Application recognition
(5) File filtering

  • A. (1)(4)(2)(3)(5)
  • B. (1)(2)(3)(4)(5)
  • C. (1)(2)(4)(3)(5)
  • D. (1)(3)(2)(4)(5)

Answer: A

 

NEW QUESTION 100
Regarding the 3 abnormal situations of the file type recognition result, which of the following option descriptions is wrong?

  • A. Unrecognized file type means that the file type cannot be recognized and there is no file extension.
  • B. Unrecognized file type means that the file type cannot be recognized, and the file extension cannot be recognized.
  • C. File damage means that the file type cannot be identified because the file is damaged.
  • D. File extension mismatch means that the file type is inconsistent with the file extension.

Answer: B

 

NEW QUESTION 101
With regard to APT attacks, the attacker often lurks for a long time and launches a formal attack on the enterprise at the key point of the incident.
Generally, APT attacks can be summarized into four stages:
1. Collecting Information & Intrusion
2. Long-term lurking & mining
3. Data breach
4. Remote control and penetration
Regarding the order of these four stages, which of the following options is correct?

  • A. 2-1-4-3
  • B. 1-2-4-3
  • C. 2-3-4-1
  • D. 1-4-2-3

Answer: D

 

NEW QUESTION 102
Regarding HTTP behavior, which of the following statements is wrong?

  • A. HTTP POST is generally used to send information to the server through a web page, such as forum posting x form submission, username I password login.
  • B. When the file upload operation is allowed, the alarm threshold and blocking threshold can be configured to control the size of the uploaded file.
  • C. When the size of the uploaded or downloaded file and the size of the content of the POST operation reach the alarm threshold, the system will generate log information to prompt the device management And block behavior.
  • D. When the uploaded or downloaded file size, POST operation content size reaches the blocking threshold, the system will only block the uploaded or downloaded file, POST operate.

Answer: D

 

NEW QUESTION 103
For compressed files, the virus detection system can directly detect them.

  • A. True
  • B. False

Answer: A

 

NEW QUESTION 104
Misuse detection discovers intrusion activity in system by detecting similar behaviors of user intrusions, or by detecting violations of system security rules indirectly by exploiting system flaws.
Which of the following is not misuse detection feature?

  • A. Effective detection of impersonation of legitimate users
  • B. Easy to implement
  • C. Accurate detection
  • D. Easy to upgrade

Answer: A

 

NEW QUESTION 105
The IPS process has the following steps:
1. Reorganize application data
2. Match signature
3. Message processing
4. Protocol identification
Which of the following is the correct ordering for the processing?

  • A. 2-4-1-3
  • B. 1-3-2-4
  • C. 4-1-2-3
  • D. 1-4-2-3

Answer: D

 

NEW QUESTION 106
Regarding the anti-spam local black and white list, which of the following statements is wrong?

  • A. The black and white list is matched by the sender's dns suffix
  • B. The black and white list is matched by extracting the source IP address of the SMTP connection
  • C. If the source IP address of the SMTP connection matches the blacklist, the connection will be blocked
  • D. The black and white list is matched by extracting the destination IP address of the SMTP connection

Answer: A

 

NEW QUESTION 107
Regarding the network intrusion detection system (NIDS), which of the following statements is wrong?

  • A. Use the newly received network packet as the data source;
  • B. It is mainly used for real-time monitoring of the information of the critical path of the network, listening to all packets on the network, collecting data, and analyzing suspicious objects
  • C. Used to monitor network traffic, and can be deployed independently.
  • D. Real-time monitoring through the network adapter, and analysis of all communication services through the network;

Answer: A

 

NEW QUESTION 108
USG6000V software logical architecture is divided into three planes: the management plane, control plane, and _______.

  • A. service plane
  • B. data forwarding plane
  • C. configuration plane
  • D. log plane

Answer: B

 

NEW QUESTION 109
Which of the following are the control items for HTTP behavior? (Multiple Choice)

  • A. Acting on the Internet
  • B. File Upload and Download
  • C. Browse the web
  • D. POST operation

Answer: A,B,C,D

 

NEW QUESTION 110
Which of the following categories of sandbox can be used by a company to detect image files, shellcode code files, and PDF files? (Multiple choices)

  • A. Heavyweight sandbox (virtual execution)
  • B. PE Heuristic Sandbox
  • C. PDF inspired sandbox
  • D. Web inspired sandbox

Answer: A,C,D

 

NEW QUESTION 111
What content can be filtered by the content filtering technology of Huawei USG6000 products? (multiple choice)

  • A. File type
  • B. Keywords contained in the content of the uploaded file
  • C. Keywords contained in the downloaded file
  • D. File upload direction 335

Answer: B,C

 

NEW QUESTION 112
......

Exam Questions for H12-722-ENU Updated Versions With Test Engine: https://examtorrent.vce4dumps.com/H12-722-ENU-latest-dumps.html