H12-721 HCNP-Security-CISN (Huawei Certified Network Professional - Constructing Infrastructure of Security Network)

Loading demo links...

Showing 13–15 of 15 questions

Question 13

Refer to the following NIP firewall intrusion detection actions:

1 records the invasion process, alarm logging

2. NIP attack detection

3 reconfigure the firewall

4 Termination invasion

Which of the following is the correct sequence of events?

Select an option, then click Submit answer.

  • 1 -> 2 -> 3 -> 4

  • 2 -> 1 -> 3 -> 4

  • 3 -> 1 -> 2 -> 4

  • 1 -> 2 -> 4 -> 3

Question 14

In the TCP / IP protocol, TCP protocol provides reliable connectivity service using three-way handshake to achieve.

The first handshake: establish a connection, the client sends a SYN packet (SYN = J) to the server, and enter SYN_SENT state, waiting for the server to confirm.

Second handshake: the server receives a SYN packet and must issue an ACK packet (ACK = ①) to confirm the client's SYN packet, but he is sending a SYN packet (SYN = K), ie, SYN-ACK packets, the server enters SYN_RCVD state.

Third handshake: the client receives the SYN-ACK packet, the server sends an acknowledgment packet ACK (SYN = ② ASK = ③), this package has been sent, the client and server enter into the ESTABLISHED state, completing the three-way handshake.

About three-way handshake during the three parameters, which of the following statements is correct?

Select an option, then click Submit answer.

  • ① = J +1
    ② = J +1
    ③ = K +1

  • ① = J
    ② = K +1
    ③ = J +1

  • ① = J +1
    ② = K +1
    ③ = J +1

  • ① = J +1
    ② = J
    ③ = K +1

Question 15

Regarding IKEv1 and IKEv2, which of the following is not correct?

Select an option, then click Submit answer.

  • IKEv2 builds a pair of IPsec SA, normally used twice to exchange four messages that can be used to establish a pair of IPsec Security Associations.

  • IKE version 2 does not support master mode, it uses the concept of savage mode.

  • To create the next pair of IPsec SA IKEv1 Main Mode requires only six messages.

  • IKEv2 IPsec SA established more than a pair, each additional SA on just one exchange, that is, two messages can be completed.