Welcome to TestSimulate

Pass Your Next Certification Exam Fast!

Everything you need to prepare, learn & pass your certification exam easily.

365 days free updates. First attempt guaranteed success.

[Nov-2021] H12-723-ENU Exam Dumps Pass with Updated 2021 HCIP-Security-CTSS(Huawei Certified ICT Professional -Constructing Terminal Security System) [Q52-Q71]

Share

[Nov-2021] H12-723-ENU Exam Dumps Pass with Updated 2021 HCIP-Security-CTSS(Huawei Certified ICT Professional -Constructing Terminal Security System)

Free H12-723-ENU Exam Dumps to Pass Exam Easily

NEW QUESTION 52
An enterprise adopts hardware SACG access method for admission control. The configuration commands are as follows, among which Key; Admin@123
[USG] right-manager server-group
[USG-rightm] localip 10.1.10.2
[USG-rightm]serverip 10. 1.31.78 shared-key AdnIn@123
[USG2100-rightm] right-manager server-group enable.
Assuming that the other configurations are correct, based on the above configuration only, which of the following options is correct?

  • A. The linkage cannot be successful but the terminal can access the pre-authentication domain server.
  • B. After completing the configuration, SACG cannot successfully link with Agile Contrlle-Campus. P
  • C. After completing the configuration, SACG can successfully link with the Agile Controller-Campus.
  • D. Can issue pre-authentication domain ACL.

Answer: B

 

NEW QUESTION 53
Portal At the time of certification, pass Web After the browser enters the account password for authentication, it prompts"Authenticating.."The status lasts for a long time before it shows that the authentication is successful. Which of the following reasons may cause this phenomenon?

  • A. Multiple Agile Controller The same terminal IP Address added Portal"Access terminal IP Address list",Some of them Agile Controller The server and the terminal cannot communicate normally.
  • B. Agile Controller-Campus There are too many authorization rules on the "It takes a lot of time to find
    835
  • C. Portal The template is configured with an incorrect password.
  • D. Insufficient curtains of the terminal equipment result in a relatively large delay.

Answer: A

 

NEW QUESTION 54
There are two types of accounts on the Agile Controller-Campus: one is a local account and the other is an external account.
Which of the following is not a local account?

  • A. Anonymous account
  • B. Guest account
  • C. Ordinary account
  • D. Mobile certificate account

Answer: D

 

NEW QUESTION 55
Agile Controller-Campus Which deployment mode is not supported?

  • A. Hierarchical deployment
  • B. Distributed deployment
  • C. Centralized deployment
  • D. Two-machine deployment

Answer: D

 

NEW QUESTION 56
Which of the following options is not included in the mobile terminal life cycle?

  • A. Uninstall
  • B. deploy
  • C. run
  • D. Obtain

Answer: A

 

NEW QUESTION 57
The SACG query right-manager information as follows, which are correct? (Multiple choices)
[USG] display right-manager server-group
17:35:21 2017/7/14
Server group state: Enable
Server number:1
Server ip address Port State Master
1.1.1.2 3288 active Y
2.1.1.1 3288 active N

  • A. The collaboration between SACG and IP address 2.1.1.1 was unsuccessful.
  • B. The linkage between SACG and the controller is successful.
  • C. The main controller IP address is 2.1.1.1.
  • D. The main controller IP address is 1.1.1.2.

Answer: B,D

 

NEW QUESTION 58
Regarding CAPWAP encryption, which of the following statements is wrong?

  • A. CAPWAP The data tunnel can be used DTLS Encrypted.
  • B. DTLS Encryption can guarantee AC The issued control messages will not be eavesdropped on.
  • C. DTLS Support two authentication methods:Certificate authentication(out AC,AP Already brought)with PSK Password authentication.
  • D. Use the certificate method to carry out DTLS Negotiation, the certificate is only used to generate the key, not right AP Perform authentication.

Answer: A

 

NEW QUESTION 59
In 802.1X authentication, if the authentication point is at the aggregation layer switch, which special configurations are required in addition to the conventional configurations such as RADIUS, AAA and 802.1X?

  • A. The 802.1X function needs to be enabled on both aggregation layer and access layer switch.
  • B. The aggregation layer switch needs to configure transparent transmission of 802.1X packets.
  • C. The access layer switch needs to configure transparent transmission of 802.1X packets.
  • D. No special configuration is required.

Answer: C

 

NEW QUESTION 60
Which of the following options is for Portal The description of the role of each role in the authentication system is correct?

  • A. Portal The role of the server is to receive client authentication requests, provide free portal services and authentication interfaces, and exchange client authentication information with access devices.
  • B. RADIUS The role of the server is to authenticate all the users in the network segment HTTP Requests are redirected to Portal server.
  • C. The role of admission control equipment is to complete the authentication, authorization and accounting of users.
  • D. The client is Any 0fice software.

Answer: A

 

NEW QUESTION 61
URL filtering, remote classification list provided and maintained by a third-party classification servers, devices can be synchronous updated automatically or manually from third-party classification servers.

  • A. FALSE
  • B. TRUE

Answer: B

 

NEW QUESTION 62
When an administrator accesse network for an account assigned to guest, which of the following audit action not included in that an administrator can perform on the visitor?

  • A. Account Deactivation/Reset Password
  • B. Send warning message to user
  • C. Force users to go offline
  • D. Visitors logging off and on

Answer: B

 

NEW QUESTION 63
Perform the UTM upgrade in the process of operation, appeared the following information:
Error: Executing the update, please wait.
USG may be executed (choose 3 answers)

  • A. local upgrade
  • B. there are business flow being processed
  • C. online upgrade
  • D. install the factory default version

Answer: A,C,D

 

NEW QUESTION 64
Which of the following descriptions is correct regarding the strategy for checking screen saver settings?

  • A. Only Windows operating systems are supported.
  • B. You can check whether the screen saver password is enabled
  • C. Screensaver settings do not automatically repair
  • D. You can check whether the terminal has screen saver enabled.

Answer: B,D

 

NEW QUESTION 65
A policy template is a collection of several policies. In order to audit the security status of different terminal hosts and the behavior of end users, the administrator needs to customize.
The same policy template is used to protect and manage terminal hosts. Regarding the policy template, which of the following option descriptions are correct? (multiple choice)

  • A. If different policy templates are applied to departments and accounts, the policy template assigned to the highest priority will take effect. The priority relationship of the number is: account>department
  • B. You can assign a policy template to a certain network segment.
  • C. Only the strategy in the strategy template can be used, and the administrator cannot customize the strategy.
  • D. When configuring the policy template, you can inherit the parent template and modify the parent template policy

Answer: A,B

 

NEW QUESTION 66
Guest management is important feature of Agile Controller-Campus. Which of the following statements is correct regarding visitor management?

  • A. The reception staff can't create guest account
  • B. Violation of guest accounts, administrators can't trace
  • C. Administrators can assign different permissions to each visitor
  • D. Visitors can use the mobile number to quickly register an account

Answer: C,D

 

NEW QUESTION 67
Which of the following is true about software SACG and hardware SACG?

  • A. Software SACG use Any Office for admission control.
  • B. Hardware SACG use Any Office for admission control.
  • C. Hardware SACG save costs compared to software SACG.
  • D. Hardware SACG is more secure.

Answer: A

 

NEW QUESTION 68
MAC authentication means that in 802.1X authentication environment, when the terminal does not respond to 802.1X authentication request from the access control device after accessing the network, the access control device automatically obtains MAC address of the terminal and sends it to RADIUS server as a certificate for accessing the network.

  • A. False
  • B. True

Answer: A

 

NEW QUESTION 69
Traditional access control policy passed ACL or VLAN Can not be achieved with IP Address decoupling, in IP The maintenance workload is heavy when the address changes. And because the agile network introduces the concept of security group, it can achieve the same IP Address decoupling.

  • A. wrong
  • B. right

Answer: B

 

NEW QUESTION 70
VIP Experience guarantee, from which two aspects are the main guarantees VIP User experience? (Multiple choice)

  • A. Authority
  • B. Forwarding priority
  • C. bandwidth
  • D. Strategy

Answer: B,C

 

NEW QUESTION 71
......

H12-723-ENU Exam Dumps, H12-723-ENU Practice Test Questions: https://www.testsimulate.com/H12-723-ENU-study-materials.html