2021 ACP-Sec1 Dumps PDF - ACP-Sec1 Real Exam Questions Answers [Q40-Q55]

Share

2021 ACP-Sec1 Dumps PDF - ACP-Sec1 Real Exam Questions Answers

Valid ACP-Sec1 Test Answers & Alibaba ACP-Sec1 Exam PDF

NEW QUESTION 40
A website is built using open-source software To prevent hacker attacks and fix vulnerabilities in a timely manner, the administrator of the website wants to use the patch management feature in Security Center. Which of the following statements about patch management is FALSE.

  • A. Rollback of Web vulnerabilities means to restore the original files, while rollback of Windows vulnerabilities means to uninstall the patch upgrade
  • B. Patch management can operate machines in batches in the cloud. For large-scale vulnerabilities, it supports one-key patch upgrade, which is easy and convenient
  • C. Vulnerabilities are automatically fixed Once a self-developed paten is released, it automatically fixes vulnerabilities for all customers who have enabled patch management.
  • D. Before patches for most common Web vulnerabilities are released, the Alibaba Cloud Security O&M team will have fixed the vulnerabilities using self-developed patches

Answer: C

 

NEW QUESTION 41
Users can detach the Security Center client on Alibaba Cloud ECS instances, and reinstall it later when necessary.

  • A. True
  • B. False

Answer: A

 

NEW QUESTION 42
You applied for an SSL certificate through Alibaba Cloud's SSL Certificates Service During the application, you selected "Manual" at the "CSR "" step. You now want to install your certificate on a server running Apache What must you do?

  • A. You can download a crt file of type "Other" from the SSL Certificates Service console, then use openssl to convert this file to pfx format for use with Apache
  • B. SSL Certificates Service doesn't support the type of certificates needed by Apache. They cannot be used together
  • C. You can use the "generate pfx file" function built into the SSL Certificates Service to manually generate and download the pfx file needed by Apache
  • D. You must revoke your certificate and re-apply, this time choosing "Automatic" at the "CSR Generation" step. Otherwise, the SSL certificate cannot be downloaded

Answer: C

 

NEW QUESTION 43
After you install the Alibaba Cloud Security center agent on a non with your Alibaba Cloud account*?

  • A. The user name and password
  • B. The installation verification key generated on the console
  • C. Your account ID
  • D. Your AccessKey

Answer: D

 

NEW QUESTION 44
Which of the following attacks can Alibaba Cloud Anti-DDoS Basic defend against? (Number of coned answers 4)

  • A. SYN Flood
  • B. Brute force password cracking
  • C. ACK Flood
  • D. CMP Flood
  • E. UDP Flood

Answer: A,B,C,E

 

NEW QUESTION 45
Alibaba Cloud's Content Moderation service cannot detect advertising or spam content.

  • A. True
  • B. False

Answer: B

 

NEW QUESTION 46
User A is the system administrator of a company, who often takes business trips to Shanghai Each time when he remotely logs on to the Shanghai an alert is reported, prompting "Someone is remotely logging on to the server Please pay attention to your server security" Which of the following methods can be used to quickly and automatically resolve this issue?

  • A. Ask the company leaders for help
  • B. Log on to the Alibaba Cloud Security Center, and add a frequent logon location to the configuration item of Security Center.
  • C. Call a friend, who is a famous hacker in the industry, for help.
  • D. Open a ticket immediately to consult Alibaba Cloud engineers

Answer: B

 

NEW QUESTION 47
Data transfer between Internet devices requires specific specifications, which are called "protocols" Among those, the invention of a certain protocol played a decisive role in the creation of the Internet. By using those protocols, tens of thousands of computers can be connected and communicate with each other What is the following protocol is not defined in OSI 7 layer model?

  • A. UDP
  • B. SOAP
  • C. TCP
  • D. HTTP

Answer: B

 

NEW QUESTION 48
Alibaba Cloud ECS instances are common targets of hacker attacks. There are many types of attacks against ECS instances. Which of the following attacks specifically target the operating system of an ECS instance?
(Number of correct answers: 3)

  • A. Brute force RDP password cracking
  • B. Brute force SSH password cracking
  • C. Trojan or Webshell installation
  • D. SQL injection

Answer: A,B,C

 

NEW QUESTION 49
You have helped a customer set up a content filtering solution based on Content Moderation service However, the customer is complaining that certain images are getting incorrectly flagged as pornographic content. What can you do to help fix this?

  • A. Open a ticket with Alibaba Cloud support, and send them a copy of the images, so that they can tune Content Moderation's detection algorithms
  • B. Ask your customer to use different images on their site
  • C. Modify the images until Content Moderation service starts marking them as pornographic.
  • D. Create an "Image Library" from the Content Moderation console and add the images to the Image Library's whitelist

Answer: D

 

NEW QUESTION 50
Alibaba Cloud Security's Data R.sk Control can effectively resolve junk registration, database hacking, and other service risk identification problems To use this service. you need to first collect service data. Which of the following methods can be used to collect information off Web application systems?

  • A. SDK
  • B. JavaScript, SDK
  • C. JavaScript
  • D. HTML5

Answer: C

 

NEW QUESTION 51
Among various types of network attacks, "phishing" is one of the most common attacks. A phishing website looks exactly the same as the real website It asks visitors to login with their accounts and passwords; at the same time, record these privacy information for illegal purpose. Which of the following statements about how phishing websites are spread is FALSE?

  • A. Phishing website links are sent through Facebook. Twitter and other IM(instant Messenger) applications.
  • B. Phishing website links are published in batches through emails forums, blogs, and SNS(Social Network Sites).
  • C. Banks publish phishing website links in prominent positions on their official websites
  • D. Advertisements are pushed to search engines and small and medium websites, attracting users to click the phishing website links.

Answer: C

 

NEW QUESTION 52
As your business grows, you begin exceeding the maximum number of requests-per-minute supported by the Content Moderation API and requests begin to fail What is the best way to resolve this issue?

  • A. There is nothing you can do to reoslve this problem, except to make fewer requests.
  • B. Open a second Alibaba Cloud account, buy Content Moderation service under that account, and split your quests between these two accounts.
  • C. Build a custom message queue solution which you can use to buffer requests and spread them out over time
  • D. Open a ticket and ask for the API request limits to be raised

Answer: D

 

NEW QUESTION 53
The protection rules of Alibaba Cloud WAF are updated in real time after a user makes changes in WAF configuration page.

  • A. True
  • B. False

Answer: A

 

NEW QUESTION 54
Alibaba Cloud Anti-DDoS Premium Service can be used to protect against DDoS attacks larger than 100 Gbps. It can be used to protect both Alibaba Cloud hosts and non-Alibaba Cloud hosts

  • A. True
  • B. False

Answer: A

 

NEW QUESTION 55
......


Alibaba ACP-Sec1 Exam Syllabus Topics:

TopicDetails
Topic 1
  • Understanding the positioning, main features, working principles and application scenarios of the above products
Topic 2
  • Security application solution design, such as correct understanding and handling after receiving alerts from the console, e-mails or text messages
Topic 3
  • web SQL injections among other common security risks and taking appropriate measures for protection
Topic 4
  • Core security products: basic operations and management of Anti-DDoS, Security Center, SSL Certificate, Content Moderation, Key Management Service
Topic 5
  • Discovering DDoS attacks, brute force password cracking attacks
  • Security advantages of their combined solutions
Topic 6
  • Characteristic, application scenarios, competitive edges and features of Alibaba Cloud Anti-DDos and WAF
Topic 7
  • Cloud service-related basic security protocols such as HTTP, FTP, TCP, UDP and ICMP
  • Understanding common security risks of the above products
Topic 8
  • Characteristics, application scenarios and features of Alibaba Cloud security management-related products
Topic 9
  • Cloud computing-related product (ECS, Server Load Balancer, OSS, RDS, VPC and CDN) content

 

ACP-Sec1 Exam Dumps - PDF Questions and Testing Engine: https://www.pass4training.com/ACP-Sec1-pass-exam-training.html