Free H12-722 Exam Braindumps (page: 13)

Page 13 of 45

The network-based intrusion detection system is mainly used to monitor the information of the critical path of the network in real time, listen to all packets on the network, collect data, and divide Analyze the suspicious object, which of the following options are its main features? (multiple choices)

  1. Good concealment, the network-based monitor does not run other applications, does not provide network services, and may not respond to other computers, so Not vulnerable to attack.
  2. The monitoring speed is fast (the problem can be found in microseconds or seconds, and the host- based DS needs to take an analysis of the audit transcripts in the last few minutes
  3. Need a lot of monitors.
  4. It can detect the source address and destination address, identify whether the address is illegal, and locate the real intruder.

Answer(s): A,B



Huawei USG6000 products can scan and process certain file transfer protocols for viruses, but which of the following protocols is not included?

  1. POP3
  2. IMAP
  3. FTP
  4. TFTP

Answer(s): D



Malicious code usually uses RootKit technology in order to hide itself. RootKit modifies the kernel of the system by loading a special driver.
To hide itself and the role of designated files.

  1. True
  2. False

Answer(s): A



Analysis is the core function of intrusion detection. The analysis and processing process of intrusion detection can be divided into three phases; build an analyzer to perform analysis on actual field data.
Which of the analysis, feedback and refinement is the function included in the first two stages?

  1. Data analysis, data classification, post-processing
  2. Data processing, data classification, post-processing
  3. Data processing, attack classification, post-processing
  4. Data processing, data classification, attack playback

Answer(s): B

Explanation:

155955cc-666171a2-20fac832-0c042c0412



Page 13 of 45



Post your Comments and Discuss Huawei H12-722 exam with other Community members:

Dan commented on September 13, 2024
Going through
Anonymous
upvote