H3CNE-Security GB0-510 mock examination

    07-08-2026

1. In the following attack means, ______ is not a DOS attack.

A. Smurf attack

B. Land attack

C. Cross-site attack

D. Fraggle attack

2. Which of the following protocols works below the transport layer in the TCP/IP protocol stack?

A. SSL

B. ARP

C. HTTPS

D. SSH

3. The TCP/IP protocol defines a peer-to-peer open network, and possible attacks and damages against this network include ______.

A. Damage to physical transmission lines

B. Damage to network layer and application layer protocols

C. Damage to software

D. Damage to hardware

4. In the following statements about measuring firewall performance indicators, ______ is correct.

A. Throughput needs to be tested based on data packets in different sizes and traffic in different directions.

B. Delay is a time interval from a time at which a packet enters the firewall to a time at which the packet is output from the firewall.

C. The number of new connections is the total number of connections that the firewall can simultaneously process per second.

D. The number of concurrent connections is the number of new connections that the firewall can process per second.

5. In the statements about the H3C firewall version upgrade process, ______ is correc.

A. Obtain the software version from H3C's official website http://www.h3c.com/cn/.

B. The software version file can be uploaded to the local via the FTP/TFTP.

C. Execute the boot-loader command to specify the version file to be used when the device is started next time.

D. The boot-loader file command must include a system parameter, which indicates that the software package is specified as a system software package.

6. AAA authentication mainly includes ______.

A. Access

B. Authentication

C. Authorization

D. Accounting

7. User AAA Authorization manners include ______.

A. No authorization

B. Local authorization

C. Remote authorization

D. Administrator authorization

8. In the H3C firewall device, the ACL (Access Control List) is mainly applied to ______.

A. QoS, to classify data traffic.

B. IPSec, to specify conditions that trigger establishment of IPSec.

C. NAT, to restrict addresses that need to be translated.

D. Policy routing, to perform routing and forwarding according to a user-defined policy (such as the ACL rule).

9. Default security domains of the H3C firewall include ______.

A. Trust

B. Untrust

C. Local

D. DMZ

E. Management

10. The default inter-domain access control policy of the H3C SecPath firewall is ______.

A. Packets between security domains are discarded by default, including those between interfaces in the same security domain.

B. Packets between interfaces that are not divided into the security domains will be discarded.

C. Packets between interfaces that belong to the same security domain can be accessed mutually.

D. All domains can access the Local area.

11. On the firewall, use the _____ command to configure the address pool.

A. nat address-group

B. nat ip pool

C. nat net pool

D. nat pool

12. Which of the following belongs to dynamic NAT?

A. NAT in NO-PAT mode

B. NAT in PAT mode

C. Easy IP

D. NAT Server

13. During the IKE negotiation, the aggressive mode needs to exchange ______ message packets.

A. 3

B. 4

C. 5

D. 6

14. In the following VPNs, ______ can separately provide the data encryption feature.

A. L2TP VPN

B. IPsec VPN

C. SSL VPN

D. GRE VPN

15. About the DPI function of the H3C firewall, in the following statements, ______ is correct.

A. DPI detection will be performed after the service flow matches the security policy.

B. The application to which the packet belongs cannot be deeply identified.

C. If the packet matches the blacklist successfully, the packet will be discarded directly without other detection.

D. The APR function can be used to identify the application to which the packet belongs.

GB0-510-Mock Reference Answer