Free Huawei H12-261_V3.0 Exam Questions (page: 16)

In a multicast network, what causes the multicast traffic to fail to be forwarded normally? (Multiple Choice)

  1. Router has no RPF route
  2. existPIM is not enabled on the RPF interface
  3. PI that the upstream router will receiveM Join message discarded
  4. Multi-router egress network, this router is not a DR

Answer(s): A,B,C



IPSG can statically configure the binding table, orDHCP-Snooping is used together to form a binding table

  1. True
  2. false

Answer(s): A

Explanation:

DHCP Snooping isDHCP A security feature of , mainly used in switchThe function is to shield the illegal DHCP server in the access network. combineDAI (Dynamic ARP Inspection)and IPSG(IP Source Guard) can realize ARP anti-spoofing and IP flow controlcontrol function.



As shown in the figure, the router load shares the communication traffic between branch network 1

and branch network 2. In this case, configure the configuration on the physical interface of the router.
URPF must use loose mode to prevent source IP address spoofing attacks.

  1. True
  2. false

Answer(s): B

Explanation:

uRPF (Unicast Reverse Path Forwarding) is a unicast reverse route lookup technology used to prevent network spoofing based on source addresscyber attack behavior. uThere are two main types of validity checks on the source address of packets by RPF: strict and loose. Also supports ignoring the default pathby uRPFChecks and uRPF checks with ACL rules configured.
Strict mode uRPF is set on an interface: the router queries the source address of the data packets entering from this interface. If the incoming interface is equal to the outgoing interface of the route, the packet is considered legal; otherwise, the packet is discarded. Set uRPF in loose mode on the interface: The router only checks whether the source address of the packet exists in the routing table (normal source address route or default route), and does not check whether the incoming interface of the packet matches the routing table. This enables uRPF not only to effectively prevent network attacks, but also to avoid erroneously intercepting packets of legitimate users.



Which of the following is a single-packet attack?

  1. Special Control Packet Attack
  2. Scanning to detect attacks
  3. DDos attack
  4. Malformed Packet Attack

Answer(s): A,B,D

Explanation:

The most common attack in a DDoS attack is a single packet. Single-packet attack defense is the most basic method and function of a firewall. Single-packet attacks are mainly divided into three categories:
Scanning and snooping attack Malformed packet attack Special packet attack



Viewing page 16 of 120



Post your Comments and Discuss Huawei H12-261_V3.0 exam prep with other Community members:

H12-261_V3.0 Exam Discussions & Posts