2024 Latest H12-351_V1.0 dumps - Instant Download PDF
Updated Verified H12-351_V1.0 Downloadable Printable Exam Dumps
NEW QUESTION # 20
Drag the short-range wireless IoT technologies on the left to their corresponding descriptions on the right.
Answer:
Explanation:
Explanation
According to the Huawei documents and resources, the definitions of the short-range wireless IoT technologies are as follows:
ZigBee: IEEE 802.15.4-based wireless communication technology is a short-range, and low-power wireless communication technology that supports star, mesh, and hybrid networking.
Bluetooth: With the emergence of IoT industries such as smart wearables, smart home, and Internet of Vehicles, short-range communication technologies are attracting more and more developers.
REID: Its basic principle is to automatically identify objects based on the transmission characteristics of radio signals and space coupling (inductance or electromagnetic coupling) or radar reflection.
Wi-Fi: Wireless networking technology based on IEEE 802.11 is the most popular WLAN technology.
Therefore, ZigBee - 1, Bluetooth - 3, REID - 2, Wi-Fi - 4 is the correct answer. References: :
https://support.huawei.com/enterprise/en/doc/EDOC1100158948/9a0d5c37/zigbee :
https://support.huawei.com/enterprise/en/doc/EDOC1100158948/9a0d5c37/bluetooth :
https://support.huawei.com/enterprise/en/doc/EDOC1100158948/9a0d5c37/rfid :
https://support.huawei.com/enterprise/en/doc/EDOC1100158948/9a0d5c37/wi-fi
NEW QUESTION # 21
Which of the following statements about VXLAN is false?
- A. Layer 2 and Layer 3 VXLAN gateways must maintain VBDIF interfaces. Otherwise, users cannot communicate with each other through these interfaces.
- B. A Layer 2 VXLAN gateway forwards traffic to a VXLAN network and can also be used for Intra-subnet communication on the same VXLAN network.
- C. A Layer 3 VXLAN gateway is used for inter-subnet communication on a VXLAN network and communication with external non-VXLAN networks.
- D. A VBDIF interface is a logical interface created based on a BD. It is similar to a VLANIF interface on a traditional network.
Answer: A
Explanation:
Explanation
B is false because only Layer 3 VXLAN gateways need to maintain VBDIF interfaces for inter-subnet communication on a VXLAN network or communication with external non-VXLAN networks. Layer 2 VXLAN gateways do not need VBDIF interfaces.
References: https://support.huawei.com/enterprise/en/doc/EDOC1100058940/8a8f1c9b/vxlan-gateway
NEW QUESTION # 22
Differentiated network planning needs to be performed to meet requirements of different IoT services in Huawei's CloudCampus loT solutions. Drag the solutions on the left to their corresponding network planning suggestions on the right.
Answer:
Explanation:
Explanation
According to the Huawei documents and resources, the network planning suggestions for the solutions are as follows:
Asset management: The RFID signal coverage distance is 25 m. Therefore, RFID signal coverage must be considered during AP deployment planning. Attach RFID tags on the surface or top of assets to prevent signals from being blocked.
ESL: Shelves may be blocked in application scenarios. Therefore, shelf blocking must be considered during network planning. The shelves can be deployed in aisles to minimize obstacles toward integrated base stations.
Smart healthcare: For applications that support regional positioning, positioning devices need to be deployed at key entrances and exits based on service requirements.
Therefore, Asset management - 2, ESL - 1, Smart healthcare - 3 is the correct answer. References: :
https://support.huawei.com/enterprise/en/doc/EDOC1100158948/9a0d5c37/asset-management :
https://support.huawei.com/enterprise/en/doc/EDOC1100158948/9a0d5c37/esl :
https://support.huawei.com/enterprise/en/doc/EDOC1100158948/9a0d5c37/smart-healthcare
NEW QUESTION # 23
Which of the following encapsulation formats are used for EAP termination in 802.1X authentication? (Select All that apply)
- A. EAP-TLS
- B. EAP
- C. EAPoR
- D. EAPoL
Answer: C,D
Explanation:
Explanation
According to the Huawei documents and resources, the encapsulation formats used for EAP termination in
802.1X authentication are as follows:
B: EAPoL: The client and access device exchange information using EAPoL packets across the LAN2.
C: EAPoR: The access device directly encapsulates the received EAP packets into RADIUS using EAP over RADIUS (EAPoR) packets Therefore, B and C are the correct answers. References:
https://support.huawei.com/enterprise/en/doc/EDOC1100086527
NEW QUESTION # 24
To enable WPA3-incapable ST As to access a WPA3-conflgured network, the WI-FI Alliance defines the WPA3 transition mode in which WPA3 and WPA2 can coexist for a period of time in the future. This mode applies only to WPA3-Enterprise, not to WPA3-Personal.
- A. True
- B. False
Answer: B
Explanation:
Explanation
The WPA3 transition mode applies to both WPA3-Enterprise and WPA3-Personal. In this mode, WPA3 and WPA2 can coexist for a period of time in the future to enable WPA3-incapable STAs to access a WPA3-configured network.
References: https://support.huawei.com/enterprise/en/doc/EDOC1100058940/8a8f1c9b/wpa3-transition-mode
NEW QUESTION # 25
On a campus network, which of the following problems may occur when you manually create a static VXLAN tunnel? (Select All that Apply)
- A. Although the static VXLAN tunnel mode supports the distributed gateway scenario, the configuration involves a heavy workload and is complex to adjust.
- B. Remote MAC addresses can be learned only through data flooding.
- C. If N devices need to establish VXLAN tunnels, you need to manually configure the ingress replication list up to N x (N-l)/2 times.
- D. A static VXLAN tunnel uses related protocols on the control plane, consuming device resources.
Answer: A,C
Explanation:
Explanation
B is false because a static VXLAN tunnel does not use any protocols on the control plane, saving device resources.
References: https://support.huawei.com/enterprise/en/doc/EDOC1100058940/8a8f1c9b/static-vxlan-tunnel
NEW QUESTION # 26
After the HTTP domain name is entered in a browser, the user Is not redirected to the Portal URL. Which of the followings is the possible cause for this failure? (Select All that Apply)
- A. The URL template is incorrectly configured.
- B. The DNS server IP address is not added to the authentication-free rule.
- C. HTTPS redirection is disabled.
- D. The web server is incorrectly configured.
Answer: A,B,D
Explanation:
Explanation
C is false because HTTPS redirection is not required for Portal authentication to work properly.
References:
https://support.huawei.com/enterprise/en/doc/EDOC1100058940/8a8f1c9b/troubleshooting-portal-authentication
NEW QUESTION # 27
When calculating the number of APs, you can divide the total required bandwidth by the maximum bandwidth of a single AP.
- A. True
- B. False
Answer: B
Explanation:
Explanation
When calculating the number of APs, you cannot simply divide the total required bandwidth by the maximum bandwidth of a single AP. You also need to consider other factors such as signal coverage area, user density, interference level, and application type.
References:
https://support.huawei.com/enterprise/en/doc/EDOC1100058940/8a8f1c9b/calculation-of-the-number-of-aps
NEW QUESTION # 28
iMaster NCE-Campuslnsight provides Intelligent radio calibration for high-load APs to increase the frequency bandwidth. This function applies to both 5 GHz and 2.4 GHz frequency bands.
- A. True
- B. False
Answer: B
Explanation:
Explanation
iMaster NCE-CampusInsight provides intelligent radio calibration for high-load APs to increase the frequency bandwidth. However, this function applies only to the 5 GHz frequency band, not to the 2.4 GHz frequency band.
References:
https://support.huawei.com/enterprise/en/doc/EDOC1100058940/8a8f1c9b/intelligent-radio-calibration
NEW QUESTION # 29
WPA3 has the following advantages over WPA and WPA2: supports WPA3-SAE, provides a more secure handshake protocol, enhances the algorithm strength, and supports Suite A cryptography.
- A. False
- B. True
Answer: B
Explanation:
Explanation
WPA3 has the following advantages over WPA and WPA2:
Supports WPA3-SAE, which provides more secure authentication and key management than PSK.
Provides a more secure handshake protocol than 802.11i, which can resist offline dictionary attacks and protect forward secrecy.
Enhances the algorithm strength from AES-128 to AES-192 or AES-256.
Supports Suite A cryptography, which provides higher security levels for government or military networks.
References: https://support.huawei.com/enterprise/en/doc/EDOC1100058940/8a8f1c9b/wpa3
NEW QUESTION # 30
In a dual-link HSB scenario, after an AP sets up CAPWAP links with the active and standby WACs, which of the following types of packets does the AP periodically send to the WACs to detect link status?
- A. Keepalive
- B. Join
- C. Echo
- D. DTLS
Answer: C
Explanation:
Explanation
In a dual-link HSB scenario, after an AP sets up CAPWAP links with the active and standby WACs, the AP periodically sends Echo packets to the WACs to detect link status. The Echo packets are sent every 30 seconds by default.
References: https://support.huawei.com/enterprise/en/doc/EDOC1100058940/8a8f1c9b/dual-link-hsb
NEW QUESTION # 31
In 802. IX authentication using port-based access control, once a user is authenticated successfully on a port, subsequent users on this port can access the network without authentication. When the authenticated user goes offline, all other users are denied access to the network.
- A. False
- B. True
Answer: B
Explanation:
Explanation
According to the Huawei documents and resources, 802.1X authentication using port-based access control is a method that allows only one user to access the network through a port at a time. If a user is authenticated successfully on a port, subsequent users on this port can access the network without authentication. When the authenticated user goes offline, all other users are denied access to the network . Therefore, A is the correct answer. References: 1: https://support.huawei.com/enterprise/en/doc/EDOC1100086527
NEW QUESTION # 32
Which of the following statements about the access layer design are true when Huawei's CloudCampus Solution is applied to small and midsize campus networks? (Select All that Apply)
- A. For relatively large networks in midsize shopping malls, supermarkets, and primary/secondary education campuses, it is recommended that stack networking be used at the access layer. If a single device can provide sufficient access capacity for downstream terminals, single-device networking can be used at the access layer. If the upstream devices of access-layer devices are stacked, it is recommended that Eth-Trunks be used to connect to such upstream devices. If more APs need to be deployed, use the PoE switch to increase the number of APs to be connected.
- B. In the mini-store scenario, APs and egress devices must be deployed if Wi-Fi coverage is required. APs cannot directly connect to egress links and do not support NAT.
- C. Select appropriate models of access switches based on whether PoE support is required and how many APs need to access the network.
- D. When selecting a switch, ensure that the following condition is met; Number of connected APs x AP power ^ Power provided by the PoE switch. Therefore, select PoE switches with a proper power supply based on the AP model and quantity.
Answer: C,D
Explanation:
Explanation
A is false because in the mini-store scenario, APs can directly connect to egress links and support NAT if Wi-Fi coverage is required. There is no need to deploy egress devices separately.
References: https://support.huawei.com/enterprise/en/doc/EDOC1100058940/8a8f1c9b/access-layer-design
NEW QUESTION # 33
After multicast-to-unicast conversion is enabled on an AP's air interface, which of the followings is the destination MAC address of multicast packets sent over the air interface?
- A. MAC address of the multicast source
- B. Multicast MAC address
- C. MAC address of a STA
- D. Broadcast MAC address
Answer: C
Explanation:
Explanation
After multicast-to-unicast conversion is enabled on an AP's air interface, the destination MAC address of multicast packets sent over the air interface is changed to the MAC address of a STA that has joined the multicast group. This improves the transmission efficiency and reliability of multicast packets.
References:
https://support.huawei.com/enterprise/en/doc/EDOC1100058940/8a8f1c9b/multicast-to-unicast-conversion
NEW QUESTION # 34
Drag the reasons for AP onboarding failures on the left to the corresponding troubleshooting operations on the right.
Answer:
Explanation:
Explanation
According to the Huawei documents and resources, the troubleshooting operations for the AP onboarding failures are as follows:
APS fail to be authenticated by the WAC: Whitelist the APS. The WAC can authenticate APs based on their MAC addresses or SNs. If an AP is not whitelisted on the WAC, it cannot be authenticated and onboarded.
License resources on the WAC are insufficient: Expand the license capacity. The WAC can manage a limited number of APs based on its license. If the license resources are insufficient, some APs cannot be onboarded.
APS fail to obtain IP addresses: Check the DHCP server. The APs need to obtain IP addresses from a DHCP server before they can communicate with the WAC. If the DHCP server is not configured or reachable, the APs cannot obtain IP addresses and onboard.
APS fail to ping the WAC: Check the network between the WAC and APS. The APs need to ping the WAC to discover its IP address and establish a CAPWAP tunnel. If there is a network problem between the WAC and APs, such as incorrect VLAN configuration or firewall blocking, the APs cannot ping the WAC and onboard.
Therefore, APS fail to be authenticated by the WAC - c, License resources on the WAC are insufficient - b, APS fail to obtain IP addresses - d, APS fail to ping the WAC - a is the correct answer. References: :
https://support.huawei.com/enterprise/en/doc/EDOC1100158948/9a0d5c37/ap-onboarding-failures
NEW QUESTION # 35
802. 11r fast roaming (over-the-air) is enabled on the WLAN shown in the figure. A STA roams from AP1 to AP2. Sort the steps in chronological order during the 802.11r fast roaming process between WACs.

Answer:
Explanation:
Explanation
According to the Huawei documents and resources, the chronological order during the 802.11r fast roaming process between WACs is as follows:
2.The STA accesses the network through API. This is the initial association process before roaming.
1.The STA initiates an 802.11 FT authentication request to AP2. This is the first step of the roaming process when the STA moves to a new AP.
3.AP2 starts the reassociation timer, and sends an 802.11 FT authentication response to the STA. This is the second step of the roaming process when AP2 responds to the STA's request and sets a timer for reassociation.
4.The STA generates and installs a P TK based on the information contained in the response frame. This is the third step of the roaming process when the STA derives a new pairwise key for encryption.
5.The STA sends a reassociation request to AP2. This is the fourth step of the roaming process when the STA requests to reassociate with AP2.
6.AP2 generates and installs a PTK according to PMK-RI and information contained in the request frame. This is the fifth step of the roaming process when AP2 derives the same pairwise key as the STA.
7.After receiving the reassociation request, AP2 disables the reassociation timer, and then sends a reassociation reg onse to the STA. This is the sixth step of the roaming process when AP2 confirms the reassociation with the STA and stops the timer.
8.The STA receives the response frame of AP2. The roaming process is complete. This is the final step of the roaming process when the STA completes the handover to AP2.
Therefore, 2, 1, 3, 4, 5, 6, 7, 8 is the correct answer. References:
https://support.huawei.com/enterprise/en/doc/EDOC1100169459/8d79210e/configuring-wireless-mesh-networki
NEW QUESTION # 36
In the early phase of a project, after the project requirements are clarified, the project owner should Checklist to describe the customer's requirements. (Capitalize the first letter of each word.)
Answer:
Explanation:
Customer Requirement Specification
Customer Requirement Specification (CRS) is a document that needs to be output after the project requirements are clarified. The CRS describes the customer's requirements in detail and serves as the basis for subsequent project design and delivery.
References: https://support.huawei.com/enterprise/en/doc/EDOC1100058940/8a8f1c9b/crs
NEW QUESTION # 37
Which of the following configurations may cause ST As to experience a slow Internet connection? (Select All that Apply)
- A. Rate limiting is configured in the SSID profile.
- B. Radio 1 of APs is disabled.
- C. TKIP encryption is configured, causing a low link setup rate.
- D. QoS CAR is configured in the traffic profile.
Answer: A,C,D
Explanation:
Explanation
B is false because disabling radio 1 of APs does not affect the Internet connection speed of STAs that use radio 2.
References:
https://support.huawei.com/enterprise/en/doc/EDOC1100058940/8a8f1c9b/troubleshooting-slow-internet-connec
NEW QUESTION # 38
When a STA roams from API to AP2 at Layer 2, AP2 notifies its neighbors of from this STA is encapsulated in a tunnel and sent to API for forwarding.
- A. True
- B. False
Answer: B
Explanation:
Explanation
When a STA roams from AP1 to AP2 at Layer 2, AP2 notifies its neighbors of the MAC address learned from this STA. The MAC address is not encapsulated in a tunnel and sent to AP1 for forwarding. Instead, AP1 deletes the MAC address entry of the STA and releases the IP address lease.
References: https://support.huawei.com/enterprise/en/doc/EDOC1100058940/8a8f1c9b/layer-2-roaming
NEW QUESTION # 39
Which of the following methods are used in IPsec to ensure secure transmission of service data on the network through encryption and authentication?
- A. Data integrity is verified.
- B. The receiver verifies the identity of the sender.
- C. The receiver rejects old or duplicate packets in order to prevent attacks initiated by malicious users who resend sniffed packets,
- D. The sender verifies the identity of the receiver.
Answer: A,B
Explanation:
Explanation
IPsec uses authentication headers (AHs) and encapsulating security payloads (ESPs) to ensure secure transmission of service data on the network. AHs provide authentication and integrity verification for the sender and the receiver, while ESPs provide encryption and optional authentication for the data.
References: https://support.huawei.com/enterprise/en/doc/EDOC1100058940/8a8f1c9b/ipsec
NEW QUESTION # 40
Drag the Huawei's wireless positioning solutions on the left to their corresponding features and application scenarios on the right.
Answer:
Explanation:
Explanation
According to the Huawei documents and resources, the features and application scenarios of the wireless positioning solutions are as follows:
Wi-Fi terminal positioning: Performs network-side positioning generally based on the RSSI, but provides low positioning accuracy. This method applies to scenarios such as precision marketing and customer flow analysis in shopping malls.
Bluetooth tag positioning: Runs based on the built-in Bluetooth module of an AP. The AP reports data to a positioning engine for location resolution. This positioning technology provides low positioning accuracy and applies to asset positioning and personnel positioning scenarios.
UWB positioning: Provides high positioning accuracy, and is applicable to scenarios that require high accuracy, such as intelligent manufacturing, warehousing logistics, and mechanical manufacturing.
Bluetooth terminal positioning: Runs based on the built-in Bluetooth module of an AP, which can be implemented on either the network side or terminal side.
Therefore, Wi-Fi terminal positioning - 3, Bluetooth tag positioning - 4, UWB positioning - 2, Bluetooth terminal positioning - 1 is the correct answer. References: :
https://support.huawei.com/enterprise/en/doc/EDOC1100158948/9a0d5c37/wi-fi-terminal-positioning :
https://support.huawei.com/enterprise/en/doc/EDOC1100158948/9a0d5c37/bluetooth-tag-positioning :
https://support.huawei.com/enterprise/en/doc/EDOC1100158948/9a0d5c37/uwb-positioning :
https://support.huawei.com/enterprise/en/doc/EDOC1100158948/9a0d5c37/bluetooth-terminal-positioning
NEW QUESTION # 41
Which of the following statements about attack defense is true?
- A. Defense against flood attacks can be used to defend against Ping of Death attacks.
- B. Fragmentation attack defense enables a device to detect packet fragments in real time and discard or rate-limit them to protect the device.
- C. Attack defense allows APs to analyze the contents and behaviors of incoming packets on ports to determine whether packets have attack characteristics. The APs then take defense measures on the packets that have attack characteristics.
- D. Attack defense can defend against spoofing packet attacks, malformed packet attacks, fragmentation attacks, and flood attacks.
Answer: C
Explanation:
Explanation
Attack defense is a feature that allows APs to analyze the contents and behaviors of incoming packets on ports to determine whether packets have attack characteristics. The APs then take defense measures on the packets that have attack characteristics, such as discarding them or limiting their rate. Attack defense can defend against spoofing packet attacks, malformed packet attacks, fragmentation attacks, and flood attacks.
References: https://support.huawei.com/enterprise/en/doc/EDOC1100058940/8a8f1c9b/attack-defense
NEW QUESTION # 42
......
The Ultimate Huawei H12-351_V1.0 Dumps PDF Review: https://www.braindumpspass.com/Huawei/H12-351_V1.0-practice-exam-dumps.html
Achieve The Utmost Performance In H12-351_V1.0 Exam Pass Guaranteed: https://drive.google.com/open?id=1MEJZaoLF6I-gJ2vgG3SF5Jv-0ktC3eim