H12-811 Hcia-Datacom V1.0 Practice Questions
Prepare for H12-811 with more than an answer.
- Exam fee
- $200 USD
- Level
- Associate
- Valid for
- 3 years
Domains covered on the exam 10
- Data communication and network basics8%
- Build an IP network with interconnection and interworking27%
- Ethernet switching network construction28%
- Cyber security infrastructure and network access8%
- Network services and applications5%
- WLAN basics10%
- WAN basics3%
- Network management and O&M3%
- IPv6 basics5%
- SDN and automation basics3%
- 1
What is the primary purpose of separating the control plane and data plane in a Software-Defined Networking (SDN) architecture?
Show answer details
Correct answer: B
The fundamental concept of SDN is the separation of the control plane (which makes decisions about where traffic is sent) from the data plane (which forwards traffic based on those decisions). In traditional networking, these planes are integrated into each device. SDN moves the control plane logic to a centralized controller. This centralization provides a global view of the network, simplifies management, and allows the network to be programmed and automated through APIs, making it more agile and responsive to application needs.
- 2
In the context of network management, which SNMP version introduced robust security features, including authentication, encryption, and message integrity?
Show answer details
Correct answer: C
SNMPv3 is the most secure version of the protocol. It addresses the security deficiencies of earlier versions by introducing a User-based Security Model (USM). SNMPv3 provides three main security services: authentication (verifying the source of the message), encryption (ensuring message privacy), and message integrity (preventing unauthorized modification). SNMPv1 and SNMPv2c rely on a simple community string for access, which is transmitted in clear text and is considered insecure.
- 3
Which part of the TCP/IP protocol stack is responsible for logical addressing, path determination, and forwarding between different networks?
Show answer details
Correct answer: C
The Internet Layer in the TCP/IP model (which corresponds to the Network Layer in the OSI model) is responsible for these key functions. It uses logical addresses (like IP addresses) to identify hosts on different networks. It determines the best path for packets to travel from source to destination using routing protocols. Finally, it handles the forwarding of packets across these interconnected networks (an internetwork).
- 4
A network administrator needs to ensure high availability for the default gateway in a critical network segment. They decide to use VRRP between two Huawei routers, R1 and R2. If R1 is configured with a priority of 120 and R2 is configured with the default priority, which router will become the master and what will be its primary role?
Show answer details
Correct answer: B
In VRRP (Virtual Router Redundancy Protocol), the router with the highest priority value is elected as the master router. The default priority is 100. Since R1 is configured with a priority of 120, which is higher than R2's default of 100, R1 will win the election and become the master. The master router is responsible for owning the virtual IP address and actively forwarding packets sent to that address, acting as the default gateway for the segment.
- 5
A host with MAC address AAAA-BBBB-CCCC sends an Ethernet frame to a host with MAC address DDDD-EEEE-FFFF on the same VLAN. When this frame is received by a switch, what information does the switch use to update its MAC address table?
Show answer details
Correct answer: B
Layer 2 switches build their MAC address tables by examining the source MAC address of incoming frames. When a frame arrives on a port, the switch inspects the source MAC address. If this address is not already in the table, the switch creates a new entry, mapping the source MAC address to the port on which the frame was received. This process is called MAC address learning. The destination MAC address is used to make a forwarding decision, not to update the table.
- 6
A network administrator is configuring a Huawei switch to segment traffic between the Sales (VLAN 10) and Marketing (VLAN 20) departments. The switch connects to a router on interface GigabitEthernet0/0/24 for inter-VLAN routing. Which configuration is required on this specific switch interface to allow communication between the two departments?
Show answer details
Correct answer: C
To facilitate inter-VLAN routing, the link between the switch and the router (a 'router-on-a-stick' configuration) must carry traffic for multiple VLANs. This is achieved by configuring the switch port as a trunk port. A trunk port uses IEEE 802.1Q tagging to identify frames belonging to different VLANs. Permitting VLANs 10 and 20 ensures that traffic from both the Sales and Marketing departments can reach the router for routing.
- 7
A junior engineer is analyzing an OSPF network and observes two adjacent routers stuck in the 2-Way state. Which of the following conditions are the most likely causes for this issue? (Select TWO)
Show answer details
Correct answer: A, D
- 8
True or False: In Huawei VRP, when configuring a static route, if you specify only the next-hop IP address without an outbound interface on a broadcast network like Ethernet, the router must perform a recursive lookup to find the exit interface.
Show answer details
Correct answer: A
This statement is true. If only the next-hop IP address is specified for a static route on a multi-access network (like Ethernet), the router cannot directly determine which interface to send the packet out of. It must first look up the next-hop IP address in its routing table to find the corresponding outbound interface. This process is known as a recursive lookup. To avoid this and improve performance, it is best practice to specify both the next-hop IP address and the outbound interface when configuring static routes on broadcast networks.
- 9
A network security team is implementing a policy to restrict access to a critical server with the IP address 192.168.100.10. They need to create an advanced ACL on a Huawei router that allows TCP traffic to this server's web port (80) and secure management port (22) from the IT department's subnet (10.1.1.0/24), while denying all other access to this server. Which command correctly defines a rule for this policy?
Show answer details
Correct answer: B
This command correctly defines one of the required rules for an advanced ACL. It specifies the protocol (TCP), the source network (10.1.1.0 with a wildcard mask of 0.0.0.255, equivalent to /24), the specific destination host (192.168.100.10 with a wildcard mask of 0, meaning an exact match), and the destination port (equal to 80). An additional rule would be needed for port 22. The other options are incorrect because they either permit all IP traffic, use an incorrect wildcard mask, or use incorrect syntax for port specification.
- 10
A company is deploying a new WLAN using Huawei APs and an AC. The network administrator wants to ensure that wireless client data traffic is tunneled back to the AC for centralized processing and forwarding, while management frames are handled separately. Which WLAN forwarding mode must be configured to achieve this?
Show answer details
Correct answer: B
Tunnel forwarding, also known as centralized forwarding, is the mode where all user data traffic is encapsulated in a CAPWAP tunnel and sent from the Access Point (AP) to the Access Controller (AC). The AC then decapsulates the traffic and forwards it to the upstream network. This allows for centralized control, security policy enforcement, and simplified AP configuration. Direct forwarding would involve the AP forwarding data traffic directly to the local wired network.
