Pre-Winter Sale Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: xmas50

Huawei H12-821_V1.0 - HCIP-Datacom-Core Technology V1.0

Page: 10 / 12
Total 376 questions

ACLs are a common matching tool in routing policies. An ACL can be configured on a router to match routes.

A.

TRUE

B.

FALSE

A router uses an advanced ACL to filter data. The ACL configuration is shown below. Which of the following statements is false about the configuration?

csharp

CopyEdit

[Huawei] acl 3001

[Huawei-acl-adv-3001] rule permit icmp source 192.168.1.3 0 destination 192.168.2.0 0.0.0.255

A.

The ACL permits ICMP packets from host 192.168.1.3 to host 192.168.2.200.

B.

The ACL denies ICMP packets from host 192.168.1.2 to network segment 192.168.2.0/24.

C.

The ACL permits IP packets from host 192.168.1.3 to network segment 192.168.2.0/24.

D.

The ACL is a numbered ACL whose number is 3001.

The Origin attribute is used to define the origin of BGP path information. There are three types of Origin attributes. Which of the following lists the Origin attributes in descending order of priority?

A.

IGP > EGP > Incomplete

B.

Incomplete > IGP > EGP

C.

EGP > IGP > Incomplete

D.

Incomplete > EGP > IGP

Without a prior version check, an engineer configures IGMP snooping on a device and the version of IGMP snooping is earlier than the IGMP versions on user hosts. In this case, which of the following situations will occur?

A.

Users cannot receive multicast data because the device forwards received IGMP Report messages only to router ports and does not generate group member ports or forwarding entries.

B.

Users cannot receive multicast data, but the device generates forwarding entries after receiving IGMP Report messages.

C.

The IGMP snooping version of the device is automatically degraded, and users can receive multicast data properly.

D.

The IGMP versions of the hosts are automatically upgraded, and users can receive multicast data properly.

BGP confederations are widely used because they can reduce the number of IBGP connections in an AS. Which of the following statements is false about confederations?

A.

The ASs outside a confederation still consider the confederation as one AS.

B.

After a confederation is configured, the original IBGP attributes can be retained.

C.

After a confederation is configured, the original AS number is used as the confederation ID of each router.

D.

A confederation divides an AS into several sub-ASs, and EBGP full-mesh connections are established in each sub-AS.

CPU attack defense uses a multi-level security mechanism to implement hierarchical device protection. Match the following levels with the corresponding protection functions.

An edge port is a new port role added to RSTP to overcome the disadvantages of STP. Which of the following statements is false about this port role?

A.

The port does not participate in RSTP calculation.

B.

The port can directly enter the Forwarding state from the Discarding state.

C.

After receiving a configuration BPDU, the port is still in the Forwarding state.

D.

The Up and Down states of the port do not cause network topology changes.

On an OSPF network, one router with P2P as the network type is directly connected to another router with P2MP as the network type. If the Hello intervals on the two routers are changed to be the same, neighbor relationship establishment and LSDB synchronization are not affected.

A.

TRUE

B.

FALSE

Hackers often obtain the login permissions of system administrators through various attacks.

Which of the following measures can be taken to enhance the security of administrator accounts? (Select all that apply)

A.

Periodically check whether unnecessary administrator accounts exist in the system. If such accounts exist, delete them to reduce the attack surface.

B.

Encrypt passwords before transferring them. Whenever possible, transfer passwords by email.

C.

Assign exclusive accounts for administrators with different maintenance roles to avoid account sharing.

D.

To ensure security and make the password easier to remember, you can set the password to be valid for a long time.

OSPF networks are classified into four types of networks by link layer protocol. Drag the following link layer protocols to the corresponding network types.(Token is reusable)