Exam HCNA-Security-CBSN (Huawei Certified Network Associate - Constructing Basic Security Network)
Number H12-711
File Name HCNA-Security-CBSN (Huawei Certified Network Associate -Constructing Basic Security Network).CertDumps.H12-711.2022-01-22.1e.136q.vcex
Size 92 Kb
Posted January 22, 2022
Downloads 11

Demo Questions

Question 1
Which of the following state information can be backed up by Huawei Redundancy Protocol (HRP)? (Multiple choices)

  • A: Session table
  • B: ServerMap entry
  • C: Dynamic blacklist
  • D: Routing table

Question 2
Evidence identification needs to address the verification of the completeness of the evidence and determine whether it meets the applicable standards. 
Regarding the standards of evidence identification, which of the following descriptions is correct?

  • A: Relevance criterion refers to the fact that if the evidence is able to have a substantial impact on the facts of the case to a certain extent, the court should rule that it is relevant. Sex.
  • B: Objectivity standards mean that the acquisition, storage, and submission of electronic evidence should be legal, and should be based on national interests, social welfare, and personal privacy.  
    This right does not constitute a strict violation.
  • C: The standard of legality is to ensure that the content of electronic evidence has not changed from the initial collection to the submission as evidence of litigation.  
  • D: The fairness standard refers to the evidence materials obtained by legal entities through legal means to have evidence capacity.

Question 3
Regarding SSL VPN technology, which of the following options is wrong?

  • A: SSL VPN technology is perfect for NAT traversal scenarios
  • B: The encryption of SSL VPN technology is only effective at the application layer
  • C: SSL VPN requires a dial-up client
  • D: SSL VPN technology extends the reach of an enterprise's network

Question 4
Which of the following attacks is not a malformed packet attack?

  • A: Teardrop attack
  • B: Smurf attack
  • C: TCP Fragmentation Attack
  • D: ICMP Unreachable Packet Attack

Question 5
The "Caesar cipher" is mainly used to encrypt data by using a stick of a specific specification.

  • A: Yes
  • B: wrong

Question 6
Which of the following is the encryption technology used in digital envelopes?

  • A: Symmetric encryption algorithm
  • B: Asymmetric encryption algorithm
  • C: Hashing algorithm
  • D: Stream encryption algorithm

Question 7
NAPT technology can implement one public network IP address for multiple private network hosts.

  • A: Yes
  • B: wrong

Question 8
IPSec VPN technology does not support NAT traversal when using ESP security protocol encapsulation, because ESP encrypts the packet header

  • A: Yes
  • B: wrong

Question 9
Regarding the description of SSL VPN, which of the following is correct?

  • A: Can be used without a client
  • B: Can encrypt the IP layer
  • C: NAT traversal problem
  • D: No authentication required

Question 10
Which of the following options does not fall into the 5-tuple range?

  • A: Source IP
  • B: Source MAC
  • C: Destination IP
  • D: Destination port 



