H12-921-V1-0 Sample Questions

H12-921-V1-0 Sample Questions & Answers

Virtualization technologies, cloud platforms, and containers carry the biggest weight, alongside data-center and CloudFabric basics with VXLAN, computing and cloud-network integration for multi-DC use, architecture and underlay/overlay design, and NCE-Fabric operations.

Launch the full H12-921-V1-0 simulator →

Showing 10 of 20 free samples.

  1. Question 1Beginner

    Data Center Network Basic Knowledge · Microsegmentation

    True or False: In a Huawei CloudFabric solution, microsegmentation is achieved by defining Endpoint Groups (EPGs) and then applying contracts between them. A contract is required even for EPGs within the same tenant VRF to allow traffic.

    Show answer & explanation

    Correct answer: A

    This is true. The microsegmentation model in solutions like Huawei CloudFabric (similar to Cisco ACI) operates on a zero-trust, whitelist principle. By default, all traffic between different EPGs is denied, even if they belong to the same VRF or subnet. A contract, which defines the allowed protocols and ports, must be explicitly configured and applied between the source and destination EPGs to permit communication.

  2. Question 2AdvancedSelect 2

    Advanced Technologies and Applications · Container Management Platforms

    A large e-commerce platform runs its application on a Kubernetes cluster integrated with a Huawei CloudFabric data center network. To expose their services to the internet, they use the Kubernetes LoadBalancer service type. Which two of the following components work together to automatically provision an external IP and configure the necessary network policies on the fabric? (Select TWO)

    Show answer & explanation

    Correct answers: B, C

    In a tightly integrated environment, when a developer creates a LoadBalancer service in Kubernetes, the API request is intercepted. The Huawei CNI plugin communicates this request to the iMaster NCE-Fabric controller. NCE-Fabric then orchestrates the allocation of an external IP address (from a predefined pool) and programs the border leaf switches with the necessary NAT and load balancing rules to direct external traffic to the correct service pods.

  3. Question 3Advanced

    Huawei CloudFabric Solution · Multi-DC Deployments

    Case Study:

    A retail company is migrating its on-premises infrastructure to a new data center built with the Huawei CloudFabric solution. The company has two primary data centers, DC1 (Primary) and DC2 (Disaster Recovery), located in different cities. The business requires active-active access to applications hosted in both data centers and seamless VM mobility for maintenance and disaster avoidance. The infrastructure consists of a VXLAN EVPN fabric in each DC, managed by iMaster NCE-Fabric.

    The network team is responsible for designing the Data Center Interconnect (DCI) solution. A key requirement is that a VM's IP address and MAC address must remain the same when it is moved from DC1 to DC2. Furthermore, traffic from a VM in DC1 destined for a VM in DC2 should take the most optimal path without hairpinning through a centralized gateway.

    To meet these requirements, the network team needs to extend the L2 and L3 domains across both data centers. They are considering different VXLAN gateway deployment models for the DCI.

    Which DCI design using BGP EVPN best fulfills all the stated requirements for seamless mobility and optimal traffic forwarding?

    Show answer & explanation

    Correct answer: B

    This design is the optimal solution. Deploying distributed anycast gateways on all VTEPs (leaf switches) in both data centers allows VMs to use a consistent gateway IP regardless of their location. Extending the EVPN control plane between the DCs allows for the exchange of L2 (MAC/IP) and L3 (IP Prefix) reachability information. This enables seamless L2 extension for VM mobility and ensures that inter-DC traffic is routed optimally without trombone effects. EVPN multihoming on the DCI links provides redundancy and load balancing.

  4. Question 4Intermediate

    Data Center Network Planning and Design · Data Planning

    A network architect is in the capacity planning phase for a new data center. The design uses a spine-leaf topology. The leaf switches have 48x25GE server-facing ports and 8x100GE uplink ports. To avoid performance bottlenecks, the architect needs to determine the oversubscription ratio from the leaf switches to the spine switches. What is the correct oversubscription ratio for this leaf switch configuration?

    Show answer & explanation

    Correct answer: B

    The oversubscription ratio is calculated by dividing the total bandwidth of the server-facing ports (downlinks) by the total bandwidth of the uplink ports.
    Total Downlink Bandwidth = 48 ports * 25 Gbps = 1200 Gbps.
    Total Uplink Bandwidth = 8 ports * 100 Gbps = 800 Gbps.
    Ratio = Downlink / Uplink = 1200 / 800 = 1.5.
    Therefore, the oversubscription ratio is 1.5:1.

  5. Question 5Beginner

    Data Center Network Operations and Maintenance · Network Service Open Programmability

    A DevOps engineer is attempting to automate the creation of a new tenant VRF and associated subnets in a Huawei CloudFabric environment using RESTful APIs provided by iMaster NCE-Fabric. The engineer sends a POST request to the correct API endpoint but receives a 401 Unauthorized error. What is the most likely cause of this issue?

    Show answer & explanation

    Correct answer: C

    The HTTP status code 401 Unauthorized specifically indicates that the request lacks valid authentication credentials. Before making functional API calls to iMaster NCE-Fabric, a client must first authenticate (typically with a username/password) to a login endpoint to obtain a temporary access token. This token must then be included in the header (e.g., X-Auth-Token) of all subsequent requests. A missing or expired token will result in a 401 error.

  6. Question 6Intermediate

    Advanced Technologies and Applications · Storage Architecture

    In a distributed storage network using Huawei FusionStorage, which network characteristic is most critical for ensuring optimal performance and avoiding I/O bottlenecks?

    Show answer & explanation

    Correct answer: B

    While high bandwidth is important, distributed storage systems like FusionStorage are extremely sensitive to latency. Data is often replicated across multiple nodes for redundancy, and I/O operations require coordination and acknowledgments between these nodes. High or unpredictable latency (jitter) can severely delay these operations, leading to poor application performance. Therefore, designing a network with low, consistent latency is the most critical factor.

  7. Question 7Intermediate

    Data Center Network Basic Knowledge · EVPN Variations and Deployment

    What is the primary function of an EVPN Type-3 (Inclusive Multicast Ethernet Tag) route in a BGP EVPN VXLAN fabric?

    Show answer & explanation

    Correct answer: C

    The EVPN Type-3 route is used to automate the discovery of VTEPs participating in a specific VNI and to establish tunnels for forwarding BUM traffic. When a VTEP learns of a new VNI, it advertises a Type-3 route. Other VTEPs receive this route and add the originating VTEP to a flood list for that VNI. This allows for the creation of an ingress replication tree to handle BUM traffic without manual configuration.

  8. Question 8Advanced

    Huawei CloudFabric Solution · Security Design

    A hospital is deploying a new electronic health record (EHR) system on Huawei's FusionSphere OpenStack platform. Due to compliance requirements, traffic between the application servers and the database servers must be isolated and inspected by a dedicated virtual firewall. Which combination of technologies within the CloudFabric solution would be used to achieve this policy-driven traffic steering and isolation?

    Show answer & explanation

    Correct answer: C

    This is the ideal solution. The application servers and database servers would be placed into separate Endpoint Groups (EPGs). This provides the initial isolation (microsegmentation). Then, a Service Function Chain (SFC) would be created that defines the virtual firewall as a service function. A contract linking the two EPGs would be configured to use this SFC, forcing all communication between them to be inspected by the firewall, thus meeting the compliance requirements in an automated, policy-driven manner.

  9. Question 9Intermediate

    Data Center Network Planning and Design · Multi-PoD and Multi-Site Configurations

    An administrator is designing a multi-PoD data center architecture. To ensure scalability and fault isolation, each PoD is built as a self-contained spine-leaf fabric. What is the recommended method for connecting these PoDs together at the network layer?

    Show answer & explanation

    Correct answer: B

    The standard and most scalable design for interconnecting multiple spine-leaf PoDs is to introduce a third tier, known as the 'Super Spine' or 'Core' layer. The spine switches from each PoD connect to all super spine switches. This creates a three-stage Clos network that maintains predictable latency and allows for seamless inter-PoD communication and horizontal scaling of the data center.

  10. Question 10Intermediate

    Data Center Network Operations and Maintenance · iMaster NCE-Fabric Management

    True or False: When using iMaster NCE-Fabric to manage a data center, all network device configurations, including IP addresses and routing protocols, must be provisioned exclusively through the NCE-Fabric GUI or API. Manual CLI changes on the devices are strictly prohibited and will be immediately overwritten.

    Show answer & explanation

    Correct answer: A

    This is true. A key principle of SDN controllers like iMaster NCE-Fabric is to act as the single source of truth for the network configuration. The controller maintains the desired state and continuously ensures the network devices conform to it. Manual changes made via CLI are considered 'out-of-band' and will be detected during synchronization. NCE-Fabric will then overwrite these manual changes to restore the centrally defined configuration, ensuring consistency and preventing configuration drift.

Ready for the real thing?

The full H12-921-V1-0 simulator has every exam-style question, timed mode, and instant scoring.