Exam Dumps H12-723-ENU Practice Free Latest Huawei Practice Tests [Q114-Q132]

Share

Exam Dumps H12-723-ENU Practice Free Latest Huawei Practice Tests

H12-723-ENU Exam Questions | Real H12-723-ENU Practice Dumps

NEW QUESTION 114
Which of the following methods can security protection be used for enterprise terminal security?

  • A. Business isolation
  • B. Encrypted access
  • C. Auditing and accounting
  • D. Admission control

Answer: D

 

NEW QUESTION 115
Which of the following descriptions is correct for distributed deployment scenario for an authentication server?

  • A. The terminal security management services between the branches and the headquarters are relatively independent, and the headquarters provides monitoring and recommendation scenarios for the terminal security management services of the branches.
  • B. The quality of the network between the branch office and the headquarters is difficult to guarantee. The network between the headquarters and the branch office may be interrupted, making the terminal of the branch office unable to connect to the data center of the headquarters.
  • C. The enterprise network is relatively decentralized. There are multiple branches and the users of the branches are large.
  • D. Scenarios where the number of users in branches is less than 2,000 and the network between the headquarters and branches is relatively stable.

Answer: B,C

 

NEW QUESTION 116
The AD/LDAP account can be synchronized to Agile Controller-Campus or not to Agile Controller-Campus. The synchronization to Agile Controller-Campus can only be authorized by the user group. If it is not synchronized to Agile Controller-Campus, it can be based on account authorization.

  • A. True
  • B. False

Answer: B

 

NEW QUESTION 117
Traditional access control policy are implemented through ACI or VLAN and can't be resolved with IP address. Maintenance workload is large when the IP address changes. Because the agile network introduces the concept of security groups, it can achieve decoupling from IP addresses.

  • A. True
  • B. False

Answer: A

 

NEW QUESTION 118
Wired 802.1X During authentication, if the access control equipment is deployed at the Jiangju layer, this deployment method has the characteristics of high security performance, multiple management equipment, and complex management.

  • A. right
  • B. wrong

Answer: B

 

NEW QUESTION 119
The service will determine the access right and QoS policy according to 5W1H condition of user access. Which of the following statements is correct for 5W1H? (Multiple choices)

  • A. What, determine the access device (PC, iOS, etc.)
  • B. Whose, determine the identity of the access person (employees, visitors, etc.)
  • C. Who, determine the attribution of access equipment (company standard, BYOD, etc.)
  • D. How to determine the access method (wired, wireless, etc.).

Answer: A,D

 

NEW QUESTION 120
The administrator issues notices to users through the form of announcements, such as the latest software and patch installation notices, etc. Which of the following options is wrong?

  • A. If the system issues an announcement and the proxy client is not online, it will not receive the announcement information after going online.
  • B. You can issue an announcement by department.
  • C. The endpoint must have proxy client installed to receive announcements.
  • D. You can issue an announcement by account number.

Answer: A

 

NEW QUESTION 121
Using Agile Controller-Campus for visitor management, users can obtain the account they applied for in a variety of ways, but which of the following are not included A way?

  • A. Voicemail
  • B. Web Print
  • C. Short message
  • D. E-mail

Answer: A

 

NEW QUESTION 122
In Agile Controller-Campus admission control technology framework, which of the following is correct for RADIUS?

  • A. PADIUS is used to push web pages to users by Portal Server.
  • B. PADIUS is used to deliver security policies to SACG devices by the server.
  • C. PADIUS is used to pass user name, password and other information between the client and 802.1X switch.
  • D. PADIUS is used to pass user name, password and other information between 802.1X switch and AAA server.

Answer: D

 

NEW QUESTION 123
In the scenario where SACG is linked in bypass mode, only the traffic initiated by the end user passes through the firewall. The traffic returned from the server to the end user does not need to pass through the firewall. For the firewall, it belongs to the inconsistent path of the traffic back and forth. In this case, you need to disable the session state detection function.

  • A. True
  • B. False

Answer: A

 

NEW QUESTION 124
After configuring the announcement,Agile Controller-Campus The system cannot assign this announcement to which of the following objects?

  • A. Assign to terminal IP Address range
  • B. Assigned to account
  • C. Assign to user
  • D. Assigned to places

Answer: D

 

NEW QUESTION 125
Which of the following series of devices does not support the free mobility feature?

  • A. S5720HI Series Switches
  • B. SVN5600 series
  • C. USG6000 Series Firewalls
  • D. AR Series Routers

Answer: D

 

NEW QUESTION 126
Use hardware SACG access control, the result of viewing the session table on hardware SACG is as follows:
<FW>display firewall session table verbose:
tcpVPN: public-->public
Zone: untrust-->trust TTL: 00:10:00 Left: 00:05:27
Interface: GigabitEthernet0/0/1 NextHop:192.168.200.11 MAC:00-0c-29-d4-47-d2
<--packets: 316ytes:9516-->packets:33bytes:17277
192.168.0.119:1574-->192.168.200.11:15080
tcpVPN: public-->public
Zone: untrust-->trust TTL: 00:10:00 Left: 00:02:20
Interface: GigabitEthernet0/0/1 NextHop:192.168.100.1 MAC: 00-0c-29-a4-37-c2
<--packets:31bytes:9516-->packets:336ytes:17277
192.168.0.119:1671-->192.168.100.1:8443
Which of the following statements are correct? (Multiple choices)

  • A. 192.168.100.1 must be the manager IP address of Agile Controller-Campus.
  • B. If 192.168.200.11 is the server in the post-authentication domain, then the terminal with the IP address 192.168.0.119 may access the server if it is not authenticated.
  • C. If the session 192.168.0.119:1574-->192.168.200.11:15080 is not refreshed within 6 minutes, the IP address is 192.168.0.119. If the device wants to communicate with the device whose IP address is 192.168.200.11, must must reestablish the session.
  • D. 192.168.100.1 must be the controller IP address of Agile Controller-Campus.

Answer: A,B,C

 

NEW QUESTION 127
If automatic account lockout function is enabled on Agile Controller-Campus and the account IP/MAC address is bound, if the number of wrong passwords entered during the end user authentication exceeds the limit within limited time, which of the following descriptions are correct? (Multiple choices)

  • A. If you want to unlock the account, only the administrator can delete the account from the list.
  • B. After the lockout time expires, the account lockout is automatically released.
  • C. This account is locked on all terminal devices and can't be authenticated.
  • D. When the account is locked, only the account can't be authenticated on the bound terminal device. Normal authentication can be performed on other terminal devices.

Answer: B,D

 

NEW QUESTION 128
In some scenarios, anonymous accounts can be used for authentication. Which are correct for anonymous account? (Multiple choices)

  • A. The administrator can't delete the anonymous account "~anonymous".
  • B. By default, anonymous account access control, policy/patching template invocation and software distribution can't be performed.
  • C. The "~anonymous" account needs to be manually created on Agile Controller-Campus.
  • D. Use anonymous account for authentication is based on the belief that the certification authority does not require the other party to provide identity information and provide services to the other party.

Answer: A,D

 

NEW QUESTION 129
Which of the following is correct about the source of files set in software management?

  • A. When the source of file is external data source, Any Office will obtain the software to be distributed.
  • B. Microsoft Windows file sharing server provides the path to the software to be distributed in UNC (Universal Naming Conversion) path (beginning with "\\").
  • C. The external data source can't distribute FTP-type file server files.
  • D. When the source of the file is internal data source, when distributing the software, the service manager only sends the path of software data source to be distributed to Any Office.

Answer: B

 

NEW QUESTION 130
In the reception hall of company visitors, there are a large number of end users who access temporarily. The administrator hopes that users can access the Internet without providing any account number and password.
Which of the following authentication methods can be used for access?

  • A. AD account authentication
  • B. Local account authentication
  • C. MAC authentication
  • D. Anonymous authentication

Answer: D

 

NEW QUESTION 131
Regarding the definition of WIPS/WIDS, which of the following statements is correct?

  • A. WIDS Is a wireless intrusion countermeasure system
  • B. WIDS Is a wireless intrusion prevention system
  • C. WIPS Is a wireless intrusion prevention system
  • D. WIPS Wireless intrusion detection system

Answer: C

 

NEW QUESTION 132
......

Verified H12-723-ENU Exam Dumps Q&As - Provide H12-723-ENU with Correct Answers: https://www.prep4pass.com/H12-723-ENU_exam-braindumps.html