[Jan-2022] H12-723-ENU Exam Dumps, H12-723-ENU Practice Test Questions [Q103-Q128]

Share

[Jan-2022] H12-723-ENU Exam Dumps, H12-723-ENU Practice Test Questions

Attested H12-723-ENU Dumps PDF Resource [2022]

NEW QUESTION 103
Portal authentication on Agile Controller-Campus has been configured and it is correct.
Configure the following command on admission control switch:
[S5720] authentication free-rule 1 destination ip 10.1.31.78 mask 255.255.255.255 Which of the following options are correct? (Multiple choices)

  • A. This configuration allows users to access the network resources before authentication.
  • B. After the configuration is complete, the administrator still needs to manually configure the release network segment.
  • C. After the configuration is complete, the switch will automatically release the data flow to access the security controller without the administrator manually configuring it.
  • D. The terminal can access the 10.1.31.78 host only after the authentication is passed.

Answer: A,C

 

NEW QUESTION 104
There is a three-layer forwarding device between the authentication client and the admission control device:If at this time Portal The certified three-layer authentication device can also obtain the authentication client's MAC address,So you can use IP Address and MC The address serves as the information to identify the user.

  • A. wrong
  • B. right

Answer: A

 

NEW QUESTION 105
Traditional access control policy are implemented through ACI or VLAN and can't be resolved with IP address. Maintenance workload is large when the IP address changes. Because the agile network introduces the concept of security groups, it can achieve decoupling from IP addresses.

  • A. True
  • B. False

Answer: A

 

NEW QUESTION 106
Which of the following statement is not correct about application and identification of knowledge base upgrade?

  • A. You can configure the automatic save function, after saving the upgrade application control is configured as system configuration
  • B. When USG device unable to connect to the Internet, you can choose local upgrade
  • C. When the USG devices can connect to the Internet, can upgrade manually and automatically*
  • D. The upgrade process of abnormal will not be able to return to the original Knowledge base

Answer: B,D

 

NEW QUESTION 107
Which of the following is correct for the isolation domain role?

  • A. Isolation domain refers to the area where the terminal host can access before being authenticated, such as DNS server, external authentication source, service controller (SC) and service manager (SM) are located.
  • B. Isolation domain is an area that allows access when an end user passes identity authentication but fails security authentication, such as the patch server and virus database server.
  • C. Isolation domain refers to the area where end users can access after passing authentication and security authentication, such as ERP system, financial system and database system are located.
  • D. End users can access the isolation domain regardless of identity authentication

Answer: B

 

NEW QUESTION 108
Regarding MAC authentication and MAC bypass authentication, which of the following descriptions are correct? (multiple choice)

  • A. The biggest difference between the two is MAC Bypass authentication belongs to 802 1X Certification, while MAC Certification does not belong to 802 1X Certification.
  • B. MAC Authentication MAC One more bypass authentication 802 In the instrument certification process, the open time is longer than MAC The bypass authentication time is long.
  • C. If a network can connect to dumb terminals(printer,IP telephone), The text may be connected to a portable computer, please use MAC Bypass authentication:First try 802 1X Authentication, try again if authentication fails MAC Certification
  • D. If a network will only connect to dumb terminals(printer,IP telephone),please use MAC Certification in order to shorten the certification time.

Answer: A,C,D

 

NEW QUESTION 109
About WEB URL filtering technology audit function, which of the following description is correct? (Choose 3 answers)

  • A. can audit user HTTP access in the specific content of the Post, as a user Internet censorship
  • B. internal users access to the specified type of WEB resource, the firewall will be logged and sent to log server.
  • C. URL audit function is used to record the user's HTTP Internet behavior as the basis for the audit.
  • D. The user can configure the web type to be audited, WEB types to distinguish with file extensions, including html, jsp, aspx, etc.

Answer: B,C,D

 

NEW QUESTION 110
Agile controller-Campus system can manage the software installed on the terminal, define the black and white list, and assist the terminal to install the necessary software and uninstall the software that is not allowed to be installed by linking with the access control device. The definition of the black and white list, which is correct?

  • A. Check for prohibited install software and allowed install software
  • B. Check the software that must be installed
  • C. Check for prohibited install software and software that must be installed
  • D. Check for prohibited install software

Answer: C

 

NEW QUESTION 111
Which of the following options are relevant to MAC Certification and MAC The description of bypass authentication is correct? (Multiple choice)

  • A. MAC Certification is based on MAC The address is an authentication method that controls the user's network access authority. It does not require the user to install any client software.
  • B. MAC The bypass authentication process does not MAC The address is used as the user name and password to automatically access the network.
  • C. MAC Bypass authentication is first performed on the devices that are connected to the authentication
    802 1X Certification;If the device is 802. 1X No response from authentication, re-use MAC The authentication method verifies the legitimacy of the device.
  • D. MAC During the authentication process, the user is required to manually enter the user name or password.

Answer: A,C

 

NEW QUESTION 112
Which of the following is true about software SACG and hardware SACG?

  • A. Hardware SACG use Any Office for admission control.
  • B. Hardware SACG save costs compared to software SACG.
  • C. Hardware SACG is more secure.
  • D. Software SACG use Any Office for admission control.

Answer: D

 

NEW QUESTION 113
When an administrator accesse network for an account assigned to guest, which of the following audit action not included in that an administrator can perform on the visitor?

  • A. Account Deactivation/Reset Password
  • B. Force users to go offline
  • C. Visitors logging off and on
  • D. Send warning message to user

Answer: D

 

NEW QUESTION 114
Guest management is important feature of Agile Controller-Campus. Which of the following statements is correct regarding visitor management?

  • A. The reception staff can't create guest account
  • B. Administrators can assign different permissions to each visitor
  • C. Visitors can use the mobile number to quickly register an account
  • D. Violation of guest accounts, administrators can't trace

Answer: B,C

 

NEW QUESTION 115
Agile Controller-Campus is deployed with highly reliable Windows+SQL Server platform. Which of the following components is not supported?

  • A. Deploy the witness DB
  • B. Deploy MC and SM Dual-System Backup
  • C. Deploy the mirror DB
  • D. Deploy the main DB

Answer: B

 

NEW QUESTION 116
In user management, user groups and account relationships are stored in a tree on Agile Controller-Campus. An account only belongs to one user group, which is consistent with the organizational structure of the enterprise. If the Organization Unit (OU) structure stored in AD/LDAP server is the same as the organizational structure of the enterprise, the user is stored under OU.
Then, what kind of synchronization method can be used when Agile Controller-Campus synchronizes AD/LDAP server account?

  • A. Press OU to synchronize
  • B. LDAP synchronization by "group"
  • C. AO synchronizes by "group" and "OU" describes organization structure
  • D. AO synchronizes by "group", and "group" describes organization structure

Answer: A

 

NEW QUESTION 117
In Agile Controller-Campus admission control technology framework, which of the following is correct for RADIUS?

  • A. PADIUS is used to push web pages to users by Portal Server.
  • B. PADIUS is used to pass user name, password and other information between the client and 802.1X switch.
  • C. PADIUS is used to pass user name, password and other information between 802.1X switch and AAA server.
  • D. PADIUS is used to deliver security policies to SACG devices by the server.

Answer: C

 

NEW QUESTION 118
A network administrator configure IP function, when the signed agreement is http, will only detect http header information.

  • A. TRUE
  • B. FALSE

Answer: B

 

NEW QUESTION 119
Deployed by an enterprise network managerAgile Controller-Campus withSACG Later;Identity authentication is successful but cannot access the post-authentication domain, This phenomenon may be caused by any reason? (Multiple choice)

  • A. The access control list of the post-authentication domain has not been delivered SACG.
  • B. A serious violation will prohibit access to the post-authentication domain.
  • C. Agile Controller-Campus Wrong post-authentication domain resources are configured on the server.
  • D. ALC The number of rules issued is too many, and a lot of time is required to match, causing interruption of access services.

Answer: A,B,C

 

NEW QUESTION 120
Regarding the description of the logic architecture of the business accompanying, which of the following options is correct?

  • A. The user plane focuses on authentication points and policy enforcement points.
  • B. The business management plane focuses on administrators, authentication servers, and policy servers.
  • C. The network equipment plane focuses on user terminals and static resources.
  • D. The business free mobility logic architecture includes a management subsystem, an authentication and authorization subsystem, and a business strategy subsystem.

Answer: B

 

NEW QUESTION 121
Configuring WLAN device detection can realize the monitoring of the entire network, but you need to set the working mode of the AP first, which of the following options are.
What is the working mode of AP? (multiple choice)

  • A. access mode
  • B. Mixed mode
  • C. Monitoring mode
  • D. Normal mode

Answer: C,D

 

NEW QUESTION 122
In the terminal host check class policy, you can control the access of the terminal host by checking whether the important subkeys and keys of the registry meet the requirements. Which of the following check results are recorded as violations? (Multiple choices)

  • A. The registry contains the "subkeys and key values" enforced by this policy.
  • B. The registry does not include the "subkeys and key values" enforced by this policy.
  • C. The registry does not "subkeys and key values" prohibited by this policy.
  • D. The registry contains "subkeys and key values" prohibited by this policy.

Answer: B,D

 

NEW QUESTION 123
Security domain division refers to dividing the intranet into several logically appropriate logical areas based on intranet service types and security requirements in order to better secure the intranet.
Which of the following options does not belong to the security domain in Agile Controller-Campus?

  • A. Business Domain
  • B. User domain
  • C. Attack domain
  • D. Network domain

Answer: C

 

NEW QUESTION 124
Which of the following descriptions are correct regarding the process of use LDAP account for authentication? (Multiple choices)

  • A. If Agile Controller-Campus authentication account exists, verify the account on Agile Controller-Campus. If the account does not exist, send the account to AD/LDAP authentication password. After passed the password verification, it returns to Agile Controller-Campus and authorizes the user according to the configured authorization rules.
  • B. If the account is synchronized to Agile Controller-Campus, verify the account on Agile Controller-Campus. If the account exists, send the password to AD/LDAP server for verification. After the password is verified, it returns to Agile Controller-Campus and authorizes the user according to the configured authorization rules.
  • C. If Agile Controller-campus authentication account does not exist, continue sending the account to AD/LDAP authentication. If the account exists on the AD/LDAP server, the account is incrementally synchronized to Agile Controller-Campus. After the synchronization is successful, Agile Controller-Campus sends the password of the account to AD/DAP server for verification. After the verification succeeds, the authentication passes.
  • D. The account has been synchronized to Agile Controller-Campus, and Agile Controller-Campus continues to send AD/LDAP authentication. If the account exists on AD/LDAP server, Agile Controller-Campus sends the password corresponding to the account to AD/LDAP server for verification. After successful verification, the authentication passes.

Answer: B,C

 

NEW QUESTION 125
Deploying on Windows platform, using SQL Server database About the HA function of Agile Cotoller-Campus, which of the following descriptions Is it correct? (multiple choice)

  • A. Deploy Business Manager SM Time, support HA, Provide based on Keepalived Technical HA Active/standby switchover.
  • B. Deploy business controller 3SC Time, support HA, Provide a backup solution in resource pool mode, which needs to be deployed N+1 indivual SC
  • C. Deploy the database DB Time, support HA use SQL Server Database mirroring technology requires the deployment of master DB+Mirroring DB+witness DB.
  • D. Deployment Management Center MC Time, support HA, Provide based on Keepalived Technical HA Active/standby switchover.

Answer: B,C

 

NEW QUESTION 126
The visitor management process includes page customization, account application, user authentication, auditing and logout. After the user successfully applies for an account, the user needs to distribute the account to the user. Which stage of the account distribution?

  • A. Page customization phase
  • B. User authentication stage
  • C. Account application stage
  • D. Audit and cancellation stages

Answer: C

 

NEW QUESTION 127
The traditional campus network is based on IP As the core network, if there are mobile office users, which of the following options is not the problem that mobile office users face when deploying access authentication?

  • A. User experience technology
  • B. Access rights are difficult to control.
  • C. The deployment of the access control strategy is significant.
  • D. The user distribution range is large, and the access control requirements are high.

Answer: D

 

NEW QUESTION 128
......

Latest H12-723-ENU Actual Free Exam Questions Updated 200 Questions: https://www.testkingpdf.com/H12-723-ENU-testking-pdf-torrent.html