Real H12-723-ENU are Uploaded by TestkingPass provide 2021 Latest H12-723-ENU Practice Tests Dumps [Q107-Q124]

Share

Real H12-723-ENU are Uploaded by TestkingPass provide 2021 Latest H12-723-ENU Practice Tests Dumps.

All H12-723-ENU Dumps and HCIP-Security-CTSS(Huawei Certified ICT Professional -Constructing Terminal Security System) Training Courses Help candidates to study and pass the HCIP-Security-CTSS(Huawei Certified ICT Professional -Constructing Terminal Security System) Exams hassle-free!

NEW QUESTION 107
Location refers to the terminal environment when terminal user use AC-Campus to access controlled network.
Which of the following about the location is correct?

  • A. Different locations can have different security strategy.
  • B. There is no relationship between locations.
  • C. There can only be one location in the company.
  • D. There is no relationship between location and safety.

Answer: A

 

NEW QUESTION 108
A network adopts 802.1X to authenticate access users. The admission control device is deployed at the convergence layer. After the deployment is complete, the test-aaa command is used successfully on the admission control device, but the user can't access the network.
Which of the following may be the cause of the fault? (Multiple choices)

  • A. Layer 2 links are used between access devices and aggregation devices. The 802.1X transparent transmission function is not enabled.
  • B. RADIUS authentication template is not configured on the aggregation layer device.
  • C. The 802.1X function is not enabled on the port on the access device.
  • D. The switch is not added to Agile Controller-Campus as NAS device.

Answer: A,C

 

NEW QUESTION 109
In WIDS-enabled WLAN network, which of the following statements is correct regarding the determination of illegal devices?

  • A. STA that are not connected to this AC must check whether the access AP is valid
  • B. AP that are not connected to this AC are illegal AP
  • C. STA that are not connected to this AC are illegal STA
  • D. All Ad-hoc devices will be directly identified as illegal devices

Answer: A,D

 

NEW QUESTION 110
Visitor management can authorize visitors based on their account number, time, location, terminal type and access method, also can push personalized pages to visitors based on time, location and terminal type.

  • A. True
  • B. False

Answer: A

 

NEW QUESTION 111
Which of the following is not supported by the business?

  • A. Teamwork office.
  • B. Implement communication between devices.
  • C. When traveling user accesses the intranet resources, the traveling user accesses the intranet through VPN.
  • D. Intranet users access the data center/Internet.

Answer: B

 

NEW QUESTION 112
In the scenario where SACG is linked in bypass mode, only the traffic initiated by the end user passes through the firewall. The traffic returned from the server to the end user does not need to pass through the firewall. For the firewall, it belongs to the inconsistent path of the traffic back and forth. In this case, you need to disable the session state detection function.

  • A. True
  • B. False

Answer: A

 

NEW QUESTION 113
The SACG query right-manager information as follows, which are correct? (Multiple choices)
[USG] display right-manager server-group
17:35:21 2017/7/14
Server group state: Enable
Server number:1
Server ip address Port State Master
1.1.1.2 3288 active Y
2.1.1.1 3288 active N

  • A. The linkage between SACG and the controller is successful.
  • B. The main controller IP address is 2.1.1.1.
  • C. The main controller IP address is 1.1.1.2.
  • D. The collaboration between SACG and IP address 2.1.1.1 was unsuccessful.

Answer: A,C

 

NEW QUESTION 114
Which of the following methods can security protection be used for enterprise terminal security?

  • A. Encrypted access
  • B. Business isolation
  • C. Auditing and accounting
  • D. Admission control

Answer: D

 

NEW QUESTION 115
Which of the following are the correct of security domains in Agile Controller-Campus? (Multiple choices)

  • A. The user domain is generally composed of various types of terminal users. The terminal in this area has features such as large quantity, wide distribution and strong flow.
  • B. A service domain is an area that provides security services for intranets of enterprises. This area is generally composed of systems that provide security services such as anti-virus servers, patch management servers and terminal security servers.
  • C. The network domain is the security protection area most concerned by all kinds of enterprises, and it carries the important and core information assets of the enterprise.
  • D. The service domain is a platform for service traffic bearing. It use security technology to logically divide the business according to the enterprise's needs, so as to achieve the security of the network.

Answer: A,B

 

NEW QUESTION 116
When an administrator accesse network for an account assigned to guest, which of the following audit action not included in that an administrator can perform on the visitor?

  • A. Visitors logging off and on
  • B. Send warning message to user
  • C. Account Deactivation/Reset Password
  • D. Force users to go offline

Answer: B

 

NEW QUESTION 117
If the deployment business is accompanied, in logical architecture, which of the following is administrator concern?

  • A. Policy deployment if it is for single department?
  • B. Policy deployment if it is for single user
  • C. Choose the right policy control point and user authentication point
  • D. The policy if it is automatically deployed?

Answer: C

 

NEW QUESTION 118
In user management, user groups and account relationships are stored in a tree on Agile Controller-Campus. An account only belongs to one user group, which is consistent with the organizational structure of the enterprise. If the Organization Unit (OU) structure stored in AD/LDAP server is the same as the organizational structure of the enterprise, the user is stored under OU.
Then, what kind of synchronization method can be used when Agile Controller-Campus synchronizes AD/LDAP server account?

  • A. Press OU to synchronize
  • B. AO synchronizes by "group", and "group" describes organization structure
  • C. LDAP synchronization by "group"
  • D. AO synchronizes by "group" and "OU" describes organization structure

Answer: A

 

NEW QUESTION 119
The AD/LDAP account can be synchronized to Agile Controller-Campus or not to Agile Controller-Campus. The synchronization to Agile Controller-Campus can only be authorized by the user group. If it is not synchronized to Agile Controller-Campus, it can be based on account authorization.

  • A. False
  • B. True

Answer: A

 

NEW QUESTION 120
When manage guest accounts, you need to create guest account policy and set account creation method. Which of the following descriptions is incorrect for account creation?

  • A. If the number of users is large, you can choose database synchronization.
  • B. If the number of users is large, you can create them in batches.
  • C. Self-registration can be used to facilitate management and enhance the user experience.
  • D. When you add accounts individually, you can select individual creation.

Answer: A

 

NEW QUESTION 121
The free mobility is a special access control method. According to the user's access point, access time, access method and user terminal specified permission is granted. From the physical connection, the access method can be divided into 3 categories, which of the following access methods not include?

  • A. Wired access
  • B. Wireless access
  • C. 802.1X access
  • D. VPN access

Answer: C

 

NEW QUESTION 122
There are two types of accounts on Agile Controller-Campus: one is local account and the other is external account.
Which of the following does not belong to local account?

  • A. Ordinary account
  • B. Mobile certificate account
  • C. anonymous account
  • D. Guest account

Answer: B

 

NEW QUESTION 123
Which of the following is wrong about account blacklist?

  • A. If manually locked account is deleted from the list, the account lock is released.
  • B. For automatically locked an account, if the number of wrong passwords entered during end user authentication exceeds the limited time, the account is automatically locked.
  • C. Automatic account lockout and manual account lockout can't be enabled at the same time.
  • D. For manually locking an account, the administrator needs to manually add the account to the locked account list.

Answer: C

 

NEW QUESTION 124
......

Valid Way To Pass Huawei's H12-723-ENU Exam with : https://www.testkingpass.com/H12-723-ENU-testking-dumps.html