Huawei Certified ICT Professional - Constructing Service Security Network (HCIP-Security-CSSN V3.0) H12-722 Question # 37 Topic 4 Discussion

Huawei Certified ICT Professional - Constructing Service Security Network (HCIP-Security-CSSN V3.0) H12-722 Question # 37 Topic 4 Discussion

H12-722 Exam Topic 4 Question 37 Discussion:
Question #: 37
Topic #: 4

Use BGP protocol to achieve diversion, the configuration command is as follows

[sysname] route-policy 1 permit node 1

[sysname-route-policy] apply community no-advertise

[sysname-route-policy] quit

[sysname]bgp100

155955cc-666171a2-20fac832-0c042c04

29

[sysname-bgp] peer

[sysname-bgp] import-route unr

[sysname- bgpl ipv4-family unicast

[sysname-bgp-af-ipv4] peer 7.7.1.2 route-policy 1 export

[sysname-bgp-af-ipv4] peer 7.7. 1.2 advertise community

[sysname-bgp-af-ipv4] quit

[sysname-bgp]quit

Which of the following options is correct for the description of BGP diversion configuration? (multiple choice)


A.

Use BGP to publish UNR routes to achieve dynamic diversion.


B.

After receiving the UNR route, the peer neighbor will not send it to any BGP neighbor.


C.

You also need to configure the firewall ddos ​​bgp-next-hop fib-filter command to implement back-injection.


D.

The management center does not need to configure protection objects. When an attack is discovered, it automatically issues a traffic diversion task.


Get Premium H12-722 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.