[Oct-2021] ACP-Sec1 Pre-Exam Practice Tests Exam Questions and Answers for Alibaba Security Study Guide [Q30-Q48]

Share

[Oct-2021] ACP-Sec1 Pre-Exam Practice Tests | Exam Questions and Answers for Alibaba Security Study Guide

ACP Cloud Security Professional Certification Sample Questions

NEW QUESTION 30
When importing key material into Key Management Service (KMS), you will be given an import token and public encryption key valid for 24 hours. The public key KMS provides must be used to encrypt your key material before upload KMS allows you to choose different public key encryption algorithms Which ones are supported? (Number of correct answers; 3)

  • A. RSAES_OAEP_SHA_1
  • B. RSAES_OAEP_SHA_256
  • C. RSAES PKCS1 V1 5
  • D. RSAES_ECDHE_V1 _5

Answer: A,C,D

 

NEW QUESTION 31
Your applications are deployed on Alibaba Cloud ECS instances. You want to collect indicators by yourself for application layer monitoring. Which of the following functions provided by Alibaba Cloud CloudMonitor can be used for indicator collection, aggregation, and alerting?

  • A. Custom monitoring
  • B. Cloud service monitoring
  • C. CloudMonitor cannot meet these requirements
  • D. Site monitoring

Answer: A

 

NEW QUESTION 32
When users log on to ECS instances through SSH or remote desktop from public Internet, Alibaba Cloud Security Center will monitor the log on behaviors If an IP address uses incorrect password to log on to an ECS instance for too many times, an alert "ECS instance suffers brute force password cracking" will be prompted If you receive this alert, which of the following is the safest way to handle this alert?

  • A. This alert does not matter and can be ignored.
  • B. Log on immediately to the ECS instance and check the logon logs If no abnormal logon success record is found ignore this alert.
  • C. Update the system user password immediately for the ECS instance, and enable the security group firewall to allow only specified IP addresses to connect to the ECS instance
  • D. Inform all users on the service platform of changing their passwords, and eliminate simple passwords using technical measures

Answer: C

 

NEW QUESTION 33
You have helped a customer set up a content filtering solution based on Content Moderation service However, the customer is complaining that certain images are getting incorrectly flagged as pornographic content. What can you do to help fix this?

  • A. Open a ticket with Alibaba Cloud support, and send them a copy of the images, so that they can tune Content Moderation's detection algorithms
  • B. Create an "Image Library" from the Content Moderation console and add the images to the Image Library's whitelist
  • C. Modify the images until Content Moderation service starts marking them as pornographic.
  • D. Ask your customer to use different images on their site

Answer: B

 

NEW QUESTION 34
When a Layer-4 forwarding rule is configured with multiple origin site IP addresses, Alibaba Cloud Anti-ODoS Premium Service will perform load balancing for Layer-4 requests using balancing algorithm

  • A. True
  • B. False

Answer: A

 

NEW QUESTION 35
For which of the following protection scenarios is Alibaba Cloud WAF applicable? (Number of correct answers: 5)

  • A. Brute force cracking protection
  • B. Defense against website trojans and tampering
  • C. Virtual vulnerability patches
  • D. Protection against SMS refresh and service data crawling
  • E. Data leakage prevention
  • F. Protection against malicious CC attacks

Answer: A,B,C,E,F

 

NEW QUESTION 36
Which of the following attacks can Alibaba Cloud Anti-DDoS Basic defend against? (Number of coned answers 4)

  • A. CMP Flood
  • B. SYN Flood
  • C. UDP Flood
  • D. ACK Flood
  • E. Brute force password cracking

Answer: B,C,D,E

 

NEW QUESTION 37
You are importing your own key material in to Key Management Service (KMS). Which of the following is the correct sequence of steps to follow?

  • A. 1 Create an external key
    2 Get the "import key material" parameters
    3 Import the key material
  • B. 1 Get the "import key material" parameter
    2 Create an external key
    3. Import the key material
  • C. 1 Import the key material
    2 Get the "import key material" parameters
    3 Create an external key
  • D. 1 Create an external key
    2 Import the key material
    3 Get the "import key material" parameters

Answer: A

 

NEW QUESTION 38
Content Moderation Service is an API-based service Like many API services, it employs throttling to make sure that the service cannot be overwhelmed by a large number of simultaneous requests. What is the maximum number of requests per minute you can make against the Content Moderation API?

  • A. 0
  • B. 1
  • C. 2
  • D. 3

Answer: B

 

NEW QUESTION 39
After you activate the button Data Risk Control feature in Alibaba Cloud WAF. Which of the following risk control verification modes m displayed if you directly request for a risk control protection URL?

  • A. QR code verification
  • B. Slider verification
  • C. Digit verification
  • D. Image verification

Answer: B

 

NEW QUESTION 40
In which of the following scenarios is Alibaba Cloud Security Center applicable? (Number of correct answers
3)

  • A. Creating an ECS with generic software
  • B. Setting up web server to provide web service to public
  • C. Penetration testing
  • D. Network security protection for ad campaigns or other activities
  • E. Batch server security O&M

Answer: C,D,E

 

NEW QUESTION 41
User A is the system administrator of a company, who often takes business trips to Shanghai Each time when he remotely logs on to the Shanghai an alert is reported, prompting "Someone is remotely logging on to the server Please pay attention to your server security" Which of the following methods can be used to quickly and automatically resolve this issue?

  • A. Call a friend, who is a famous hacker in the industry, for help.
  • B. Open a ticket immediately to consult Alibaba Cloud engineers
  • C. Ask the company leaders for help
  • D. Log on to the Alibaba Cloud Security Center, and add a frequent logon location to the configuration item of Security Center.

Answer: D

 

NEW QUESTION 42
Alibaba Cloud CloudMonitor is a service that monitors Alibaba Cloud resources and Internet applications.
Which of the following statements about CloudMonitor is accurate'?

  • A. CloudMonitor cannot be used through the Alibaba Cloud console
  • B. To use CloudMonitor for ECS monitoring, there no agent needs to be installed in ECS.
  • C. CloudMonitor must be independently bought and paid for activation
  • D. CloudMonitor can monitor websites that are not deployed in Alibaba Cloud products.

Answer: D

 

NEW QUESTION 43
Alibaba Cloud Security's Data R.sk Control can effectively resolve junk registration, database hacking, and other service risk identification problems To use this service. you need to first collect service data. Which of the following methods can be used to collect information off Web application systems?

  • A. HTML5
  • B. JavaScript, SDK
  • C. JavaScript
  • D. SDK

Answer: C

 

NEW QUESTION 44
Various profit-oriented hacker groups exist on the Internet. They control a large number of server resources and can launch network attacks against a target server at any time Among those, one type of attack is common and destructive, which completely consumes resources of the target server so that normal customers cannot connect to the server Which of the following belongs to this type of attack?

  • A. XSS attack
  • B. SQL injection
  • C. Webshell attack
  • D. DDoS attack

Answer: D

 

NEW QUESTION 45
After opening the Task Manager in Windows, you can easily see abnormal processes whose names do not comply with English grammar or computer naming conventions or contain random strings. Which of the following processes may be abnormal? (Number of correct answers: 4)

  • A. svchost exe
  • B. Ikdhpec exe
  • C. RegSrvc exe
  • D. eeosec exe
  • E. nihao exe
  • F. 466363.exe

Answer: B,D,E,F

 

NEW QUESTION 46
Which of the following methods can be used to download the metric data of Alibaba Cloud CloudMonitor?

  • A. You can only view the reports, but cannot download them.
  • B. Download the data through Open APIs
  • C. You can download the data through both the console and Open APIs
  • D. Download the data from the console

Answer: C

 

NEW QUESTION 47
Data Risk Control feature has been integrated into Alibaba Cloud WAF. When this function is activated, a script must be embedded into the page that wishes to be protected under the corresponding domain name to check whether a client is trustworthy. Which type of script is it?

  • A. Java
  • B. C++
  • C. Vbscript
  • D. JavaScript

Answer: D

 

NEW QUESTION 48
......

Alibaba Exam Practice Test To Gain Brilliante Result: https://www.exam4tests.com/ACP-Sec1-valid-braindumps.html