ExamGecko
Home Home / Huawei / H12-891

Huawei H12-891 Practice Test - Questions Answers, Page 21

Question list
Search
Search

List of questions

Search

What are some of the following misrepresentations about URPF, IPSG, and DAI technologies? ( Multiple choice questions).

A.
DAI does not support manual configuration of binding tables.
A.
DAI does not support manual configuration of binding tables.
Answers
B.
IPSG checks the source IP address and source MAC address of the IP packet , and DAI only checks the correspondence between the IP and the MAC.
B.
IPSG checks the source IP address and source MAC address of the IP packet , and DAI only checks the correspondence between the IP and the MAC.
Answers
C.
URPF can be used to protect against DDoS spoofed source attacks.
C.
URPF can be used to protect against DDoS spoofed source attacks.
Answers
D.
IPSG technology checks IP packets for source IP spoofing attack prevention, while DAI checks ARP packets to filter attack sources.
D.
IPSG technology checks IP packets for source IP spoofing attack prevention, while DAI checks ARP packets to filter attack sources.
Answers
Suggested answer: A, B

In order to configure M4, you first need to define a RADIUS server, which is defined as follows:

Huawei]radius-server template EXAM

[Huawei-radius-EXAM]radius-servershared-key cipher HUAwei123(Huawei-radius-EXAM]radusserver authentication 10766661812(Huawei-radius- EXAM]radius-server authorization 1076666 1812[Huawei-radius-EXAM]radius-server accounting 10766661813 (Huawei-radius EXAM]radiusserver retransmit 2

A.
True
A.
True
Answers
B.
False
B.
False
Answers
Suggested answer: B

Router A has an IP route entry with a purposeful CIDR block of 10001/32 and an outgoing interface of GigabitEthernetO/0/1. Now add the following configuration: acd number 2000 rule 10 permit source1001.10#traffic classifier test if-match acl 2000 # traffic behavior test remarkdscp cs3#traffic policy test classifier test behavior test# interfaceGigabitftherneto/0/1 ip address 1001212552552550 traffic-policy test outbound#assuming router A received a destination IP of 10001 Of packets, the following statements are correct:

A.
If the data packet source lIP address is 1001.2, it can be forwarded with the DSCP field marked CS3
A.
If the data packet source lIP address is 1001.2, it can be forwarded with the DSCP field marked CS3
Answers
B.
If the packet source IP address is 1001.1, it can be forwarded while the DSCP field is marked as CS3
B.
If the packet source IP address is 1001.1, it can be forwarded while the DSCP field is marked as CS3
Answers
C.
If the packet source IP address is 1001.2, it cannot be forwarded
C.
If the packet source IP address is 1001.2, it cannot be forwarded
Answers
D.
If the packet source IP address is 1001.2, it can be forwarded while the DSCP field remains unchanged
D.
If the packet source IP address is 1001.2, it can be forwarded while the DSCP field remains unchanged
Answers
Suggested answer: B, D

MSTP switches treat RSTP switches as MSTP domains, MSTP, which are formed by a single switch The interchange resolves the RSTBPDU to MSTBPDU, where IRPC is 0

A.
True
A.
True
Answers
B.
False
B.
False
Answers
Suggested answer: A

If you have a Huawei switch running the STP protocol, and now connect the GO/O/17 interface and the GO/O/18 interface of the switch through a cable, then the scenario described below is correct ?( Single choice questions).

A.
Both the G0/0/17 interface and the GO/0/18 interface enter the Forwarding state
A.
Both the G0/0/17 interface and the GO/0/18 interface enter the Forwarding state
Answers
B.
Both the Go/0/17 interface and the G0/0/18 interface enter the Disccarding state
B.
Both the Go/0/17 interface and the G0/0/18 interface enter the Disccarding state
Answers
C.
The Go/0/17 interface enters the Blocking state
C.
The Go/0/17 interface enters the Blocking state
Answers
D.
The GO/0/18 interface will continuously change back and forth between the Listening state and the Learning state
D.
The GO/0/18 interface will continuously change back and forth between the Listening state and the Learning state
Answers
E.
GO/0/18 interface will enter the Disking state
E.
GO/0/18 interface will enter the Disking state
Answers
Suggested answer: E

Huawei's two switches SWA and SWB are connected together by 7 Ethernet cables, and static link clustering is configured, and the corresponding port on the switch SWA is Ethernet 1/0/1 ?Ethernet1/0/2?Ethernet 1/0/3?Ethernet 1/0/4?

Ethernet 1/0/5, Ethernet1/0/6, Ethernet 1/0/7, configured in order of port if the switch SWA, SWB supports only 6 ports per aggregation group

A.
In the case of consistent configuration of each port, Ethernet 1/0/6 port is an aggregate group Unselected port
A.
In the case of consistent configuration of each port, Ethernet 1/0/6 port is an aggregate group Unselected port
Answers
B.
In the case of consistent configuration of each port, the Ethernet1/0/1 port is an aggregate group Unselected port
B.
In the case of consistent configuration of each port, the Ethernet1/0/1 port is an aggregate group Unselected port
Answers
C.
With the same configuration of each port, the Ethernet 1/0/7 port is the aggregate group Unselecte port
C.
With the same configuration of each port, the Ethernet 1/0/7 port is the aggregate group Unselecte port
Answers
D.
With the same configuration of each port, SWA randomly selects one of the 7 ports as the aggregate group Unselecte port
D.
With the same configuration of each port, SWA randomly selects one of the 7 ports as the aggregate group Unselecte port
Answers
Suggested answer: C

??? aggregate ipv4-address { mask/masklength }[as-set lattribute-policy route-policy-namel ldetailsuppressedlorigin- policy routein policy-name2[suppress3policy route-policy-name3], multiple parameters can be used to influence summary routes and their results. The correct description about the command is ?( Multiple choice questions).

A.
If As-set is configured, the A S_PATH of the aggregate route contains ass path information for all specific routes in case the route loop is blocked
A.
If As-set is configured, the A S_PATH of the aggregate route contains ass path information for all specific routes in case the route loop is blocked
Answers
B.
If Suppress-policy is configured, aggregate routes are also generated, and the if-match clause in Route-policy is used to pick suppressed detail routes. Detail routes that match Route-policy are still advertised to other BGP neighbors
B.
If Suppress-policy is configured, aggregate routes are also generated, and the if-match clause in Route-policy is used to pick suppressed detail routes. Detail routes that match Route-policy are still advertised to other BGP neighbors
Answers
C.
If Origin-policy is configured, only detail routes that match Route-policy can participate in aggregation
C.
If Origin-policy is configured, only detail routes that match Route-policy can participate in aggregation
Answers
D.
If You configure The Interface-policy, you can change the properties of the aggregate route
D.
If You configure The Interface-policy, you can change the properties of the aggregate route
Answers
Suggested answer: A, C, D

Communityflter has two types of basic group nature filters and advanced group property filters.

Which of the following filters makes the Advanced Group Genus Filter more flexible than the Basic Group Attribute Filter to match group attributes?

A.
IP-prefix
A.
IP-prefix
Answers
B.
AS-path-filter
B.
AS-path-filter
Answers
C.
Regular-expression
C.
Regular-expression
Answers
D.
ACL
D.
ACL
Answers
Suggested answer: C

In a shared network, what mechanism does PIM-SM use to prevent duplicate traffic?( Single choice questions).

A.
Register mechanism
A.
Register mechanism
Answers
B.
BSR/RP mechanism
B.
BSR/RP mechanism
Answers
C.
Assert mechanism
C.
Assert mechanism
Answers
D.
Join/Prune mechanism
D.
Join/Prune mechanism
Answers
Suggested answer: C

What are the following statements about 8021x, RADIUS, and HWTACACS certification? ( Multiple choice questions).

A.
Users can use 8021x authentication to access the network and complete identity authentication through RADIUS
A.
Users can use 8021x authentication to access the network and complete identity authentication through RADIUS
Answers
B.
RADIUS authentication and WTACACS authentication are mutually exclusive and cannot be twofactor authentication for the same user at the same time.
B.
RADIUS authentication and WTACACS authentication are mutually exclusive and cannot be twofactor authentication for the same user at the same time.
Answers
C.
RADIUS authentication and HWTACACS authentication can perform two-factor authentication for the same user at the same time, which is more secure.
C.
RADIUS authentication and HWTACACS authentication can perform two-factor authentication for the same user at the same time, which is more secure.
Answers
D.
RADIUS authentication is mutually exclusive with 8021x authentication.
D.
RADIUS authentication is mutually exclusive with 8021x authentication.
Answers
Suggested answer: A, B
Total 610 questions
Go to page: of 61