Spring Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code = getmirror

Pass the Huawei Certified Network Professional HCNP H12-721 Questions and answers with ExamsMirror

Practice at least 50% of the questions to maximize your chances of passing.
Exam H12-721 Premium Access

View all detail and faqs for the H12-721 exam


746 Students Passed

86% Average Score

95% Same Questions
Viewing page 4 out of 7 pages
Viewing questions 31-40 out of questions
Questions # 31:

As shown in the following figure, the BFD for OSPF network is as follows: 1. OSPF is running between the three devices: FW_A, FW_B, and FW_C. The neighbors are in the FULL state. The association between BFD and OSPF is complete. BFD is complete. To establish a BFD session, the following instructions are correct?

Question # 31

Options:

A.

When link a fails, BFD first senses, and FWA and FWB will converge immediately.

B.

link switching is switched in seconds

C.

FWA processes the neighbor Down event and recalculates the route. The new route is link b.

D.

When link a finds a fault, OSPF automatically converges and notifies BFD.

Questions # 32:

Based on the following information analysis on the firewall, which of the following options are correct?

Question # 32

Options:

A.

The first packet of this data flow enters from the Trust zone interface and is sent from the Untrust zone interface.

B.

This data stream has been NAT translated

C.

uses NPAT conversion technology

D.

firewall has virtual firewall function enabled

Questions # 33:

The main function of URPF is to prevent network attack behavior based on destination address spoofing.

Options:

A.

TRUE

B.

FALSE

Questions # 34:

The dual-system hot standby networking environment is as shown in the following figure: VRRP group 1 and 2 are added to the VGMP management group, USG_A is the master device, and USG_B is the standby device. When the USG_A has a fault Status, such as power failure, the USG_B status is switched from Slave to Master. After the USG_A is faulty, its status is switched back to Master and the USG_B status is still Master. What is the reason for this now?

Question # 34

Options:

A.

Two firewalls are in load grouping mode. They are configured as master and slave in the same backup group.

B.

After the fault of the USG_A is restored, the priority of the VRRP backup group is not restored in time.

C.

After the USG_A recovers from the fault, the heartbeat line fails.

D.

is not configured hrp track

Questions # 35:

In the USG firewall, which two commands can be used to view the running status and memory/CPU usage of the device components (main control board, board, fan, power supply, etc.)?

Options:

A.

display device

B.

display environment

C.

display version

D.

dir

Questions # 36:

Which of the following statements is correct about the IKE main mode and the aggressive mode?

Options:

A.

All negotiation packets in the first phase of the aggressive mode are encrypted.

B.

All the negotiation packets of the first phase in the main mode are encrypted.

C.

barbarian mode uses DH algorithm

D.

will enter the fast mode regardless of whether the negotiation is successful or not.

Questions # 37:

A network is as follows: The l2tp vpn is established through the VPN Client and the USG (LNS). What are the reasons for the dialup failure?

Question # 37

Options:

A.

The tunnel name of the A LNS is inconsistent with the tunnel name of the client.

B.

L2TP tunnel verification failed

C.

0PPP authentication failed, the PPP authentication mode set on the client PC and LNS is inconsistent.

D.

The client PC cannot obtain the IP address assigned to it from the LNS.

Questions # 38:

The following are traffic-type attacks.

Options:

A.

IP Flood attack

B.

HTTP Flood attack

C.

IP address scanning attack

D.

ICMP redirect packet attack

Questions # 39:

Both AH and ESP protocols of IPSec support NAT traversal

Options:

A.

TRUE

B.

FALSE

Questions # 40:

IPSec VPN uses digital certificates for authentication. It has the following steps: 1. verify the certificate signature; 2. find the certificate serial number in the CRL; 3. share the entity certificate between the two devices; 4. verify the validity period of the certificate; . Establish a VPN tunnel. Which of the following is correct?

Options:

A.

3 2 1 4 5

B.

1 3 2 4 5

C.

3 1 4 2 5

D.

2 4 3 1 5

Viewing page 4 out of 7 pages
Viewing questions 31-40 out of questions
TOP CODES

TOP CODES

Top selling exam codes in the certification world, popular, in demand and updated to help you pass on the first try.