H12-224 : HCNP-R&S Fast Track (Huawei Certified Network Professional – Routing & Switching Fast Track) : Part 09
-
Which of the following high availability (HA) features are supported by the Eudemon 1000E? (Choose two.)
- Dual-system hot backup
- Multi-system hot backup
- Dual-system load balancing
- Multi-system load balancing
-
Two Eudemons in dual-system hot backup mode use Huawei Redundancy Protocol (HRP) to back up key information (such as configuration commands and session status) between the active and standby devices.
- True
- False
-
MPLS is a switching standard defined by the IETF. Which devices exist on the MPLS network? (Choose two.)
- LSR
- LER
- Label distribution router
- Label transmit router
-
The Per-Hop Behavior (PHB) defines the policy and priority applied to a packet when traversing a hop (such as a DS) in a DiffServ network.
- True
- False
-
Which of the following data traffic is incoming data traffic on the Eudemon? (Choose two.)
- Data traffic from a Trust zone to a demilitarized zone (DMZ)
- Data traffic from an Untrust zone to a DMZ
- Data traffic from a Local zone to a Trust zone
- Data traffic from an Untrust zone to a Local zone
-
The Eudemon supports load balancing between multiple uplinks.
- True
- False
-
The Eudemon does not support port mapping.
- True
- False
-
Which of the following are performance parameters of the firewall? (Choose three.)
- Throughput
- Maximum number of interface
- Number of new connections per second
- Process delay
-
Which of the following solutions effectively defend against ARP attacks? (Choose three.)
- Binding a MAC address and an IP address
- Enabling the ARP attack protection function on a Huawei switching device
- Adding network segments to different VLANs on a switch
- Enabling IP packet filtering
-
A firewall filters packets exchanged between zones but does not filter packets exchanged between interfaces in the same zone.
- True
- False
-
What is the function of DHCP Offer messages?
- DHCP Offer messages are broadcast by the client to detect the available server.
- DHCP Offer messages are sent by the server to respond to the DHCP Discover messages sent by the client. Certain configuration parameters are specified in the Offer messages.
- DHCP Offer messages are sent by the client to apply to the server for configuration parameters, configuration confirmation, or extension of the IP address lease.
- DHCP Offer messages are sent from the server to the client. They contain configuration parameters such as including the IP address.
-
The option field in DHCP messages has a fixed length of four bytes.
- True
- False
-
When an Eudemon is working in composite mode, some of its interfaces are configured with IP addresses (Layer 3 interfaces) and the other interfaces are not configured with IP addresses (Layer 2 interfaces). To enable dual-system hot backup on an Eudemon, you can configure the Eudemon to work in composite mode.
- True
- False
-
Virtual firewalls on the Eudemon are not allowed to access each other by default unless a security policy is specified.
- True
- False
-
In a Land attack, the source address and destination address of an SYN packet are both the IP address of the attacked object or a loopback address.
- True
- False
-
The firewall does not use security rules to filter packets exchanged between interfaces in the same zone.
- True
- False
-
When the DHCP relay receives a DHCP request message in which the giaddr (gateway IP address) field is 0, how does the DHCP relay process the DHCP request message?
- The DHCP relay fills its IP address in the giaddr field and transmits the DHCP request message to the DHCP server in unicast mode.
- The DHCP relay fills its IP address in the giaddr field and transmits the DHCP request message in broadcast mode.
- The DHCP relay retains the value of the giaddr field and transmits the DHCP request message to the DHCP server in unicast mode.
- The DHCP relay retains the value of the giaddr field and transmits the DHCP request message in broadcast mode.
-
Assume that the traceroute test is used to detect the packet forwarding path and tracert packets have passed through the firewall. Which of the following attack protection functions needs to be disabled to normally display the tracert result?
- ICMP-redirect
- ICMP-unreachable
- Tracert
- Smurf
-
If only some devices on a network run MPLS (MPLS domain is encapsulated in the IP packet header), labels are generated only for direct routes of devices running MPLS.
Labels are not generated for the routes originated from other devices running IP protocols.
- True
- False
-
What is the recommended minimum delay for HRP preemption on the Eudemon?
- 120s
- 60s
- 10s
- 5s
Subscribe
0 Comments
Newest