
[Jan 02, 2022] New Updated ACP-Sec1 Exam Questions 2022
Updated Free Alibaba ACP-Sec1 Test Engine Questions with 82 Q&As
Alibaba ACP-Sec1 Exam Syllabus Topics:
| Topic | Details |
|---|---|
| Topic 1 |
|
| Topic 2 |
|
| Topic 3 |
|
| Topic 4 |
|
| Topic 5 |
|
| Topic 6 |
|
| Topic 7 |
|
| Topic 8 |
|
| Topic 9 |
|
NEW QUESTION 27
You have bought an ECS instance on Alibaba Cloud After deploying a Python environment on it, which of the following is the easiest and quickest way to monitor whether the Python process is running normally and report an alert if the process is accidentally terminated?
- A. Use site monitoring
- B. Utilize process monitoring feature (can be found in ECS instance
- C. Log on to the ECS instance console
- D. Write a script for monitoring by yourself.
Answer: B
NEW QUESTION 28
When a Layer-4 forwarding rule is configured with multiple origin site IP addresses, Alibaba Cloud Anti-ODoS Premium Service will perform load balancing for Layer-4 requests using balancing algorithm
- A. False
- B. True
Answer: B
NEW QUESTION 29
User A is the system administrator of a company, who often takes business trips to Shanghai Each time when he remotely logs on to the Shanghai an alert is reported, prompting "Someone is remotely logging on to the server Please pay attention to your server security" Which of the following methods can be used to quickly and automatically resolve this issue?
- A. Ask the company leaders for help
- B. Call a friend, who is a famous hacker in the industry, for help.
- C. Log on to the Alibaba Cloud Security Center, and add a frequent logon location to the configuration item of Security Center.
- D. Open a ticket immediately to consult Alibaba Cloud engineers
Answer: C
NEW QUESTION 30
Alibaba Cloud WAF currently supports web security protection for HTTP and HTTPS. Which of the following ports are usually used for HTTP and HTTPS protocols? (Number of correct answers: 2)
- A. 0
- B. 1
- C. 2
- D. 3
Answer: B,C
NEW QUESTION 31
Which of the following services can be protected by the Alibaba Cloud Security Center's anti-brute force password cracking function? (Number of answers 3)
- A. Windows remote desktop service (RDP) Linux remote control service (SSH)
- B. MySQL database service SQLServer database service
- C. File transfer service (FTP)
- D. Web service (HTTP)
Answer: B,C,D
NEW QUESTION 32
You have helped a customer set up a content filtering solution based on Content Moderation service However, the customer is complaining that certain images are getting incorrectly flagged as pornographic content. What can you do to help fix this?
- A. Create an "Image Library" from the Content Moderation console and add the images to the Image Library's whitelist
- B. Open a ticket with Alibaba Cloud support, and send them a copy of the images, so that they can tune Content Moderation's detection algorithms
- C. Modify the images until Content Moderation service starts marking them as pornographic.
- D. Ask your customer to use different images on their site
Answer: A
NEW QUESTION 33
Alibaba Cloud Security Center can record source IP addresses that remotely access a server, and shield suspicious IP addresses that frequently connect to the server. During routine O&M. which of the following functions can be used to set the IP address that are commonly used by the system administrator'?
- A. Webshell detection
- B. Frequent logon location management
- C. Security group
- D. Valid Login IP list
Answer: B
NEW QUESTION 34
In a public cloud environment Alibaba Cloud is responsible for security of cloud computing infrastructure (such as the IDC environment, physical server O&M, and virtualization layer of cloud products). However, you still need to perform necessary security optimization measures for the Cloud products you purchased Which of the following actions do you think are safe?
- A. To enable colleagues working at home to update data, open public IP addresses for ApsaraDB for RDS instances, and allow all IP addresses to connect to the instances
- B. For easy management, change the administrator password for the ECS instance to 123456.
- C. To reduce the communication cost, five administrators of the company use the root account to log on to the ECS instance.
- D. After buying an ECS instance, enable the security group firewall for the ECS instance through the console, and only allow a management IP address to remotely log on to the ECS instance.
Answer: D
NEW QUESTION 35
There is a limit on the number of Customer Master Keys (CMKs) that users can create using Key Management Service (KMS), but users can raise this limit by submitting a support ticket to Alibaba Cloud.
- A. False
- B. True
Answer: B
NEW QUESTION 36
After you install the Alibaba Cloud Security center agent on a non with your Alibaba Cloud account*?
- A. Your account ID
- B. The installation verification key generated on the console
- C. The user name and password
- D. Your AccessKey
Answer: D
NEW QUESTION 37
Alibaba Cloud CloudMonitor is a service that monitors Alibaba Cloud resources and Internet applications Which of the following functions are currently provided by CloudMonitor? (Number of correct answers: 4)
- A. Cloud service monitoring
- B. Site monitoring
- C. Custom monitoring
- D. Custom firewall
- E. Alerting
Answer: A,B,C,E
NEW QUESTION 38
Products like ECS and Server Load Balancer it will be automatically protected by Anti-DDoS Basic service
- A. False
- B. True
Answer: B
NEW QUESTION 39
To improve ECS instance security, the administrator does not want users on public network to check whether an ECS instance is online using the ping command. Which of the following reinforcement measures designed by the administrator is NOT feasible?
- A. Resolve the IP address of the ECS instance to an uncommon level 4 domain name, and point the promotional domain name to the level 4 domain name through CNAME
- B. Enable an operating system firewall for the ECS instance, and reject ICMP for public network access.
- C. Enable a security group and only allow access from ports 80 and 25 of the public network through TCP
- D. Enable a security group, and reject ICMP for public network access.
Answer: A
NEW QUESTION 40
Alibaba Cloud Data Risk Control utilizes Alibaba Group's Big Data computing capabilities and industry-leading, risk decision making engine to address fraud threats in key service processes (such as account log on, online activity, payment) and avoid financial loss Which of the following is NOT an application scenario of Data Risk Control?
- A. Account registration
- B. Goods payment
- C. Application installation
- D. Transaction rating
Answer: C
NEW QUESTION 41
Anti-DDoS Premium Service is a value-added service intended to address the problem of service interruption caused by DDoS attack to servers including non-Alibaba Cloud hosts) Users can configure a protected IP address so that the attack traffic can be redirected to this IP address, thereby ensuring the stability and reliability of the origin site. When a user configures Anti-DDoS Premium Service and imports an HTTPS certificate, the system prompts an "incorrect parameter format" error Which of the following is NOT the reason of this error?
- A. The certificate contains nonstandard content
- B. The certificate contains strings like "--"
- C. The name of the certificate is too long to be accepted
- D. The name of the certificate contains invalid letters
Answer: A
NEW QUESTION 42
What are some of the products that support integration with Alibaba Cloud's SSL Certificates Service (Number of correct answers: 3)
- A. ApsaraDB for RDS
- B. Secure Content Distribution Network (SCDN)
- C. Content Distribution Network (CDN)
- D. Server Load Balancer (SLB)
Answer: B,C,D
NEW QUESTION 43
When submitting requests to the Content Moderation service API, which HTTP method should you use?
- A. POST
- B. GET
- C. PUT
- D. HEAD
Answer: A
NEW QUESTION 44
Alibaba Cloud WAF identifies attacks using human/robot detection, Big Data analysis, model analysis, and other related techniques. Which of the following CC attack defense modes does WAF provide to meet the protection requirements of users? (Number of correct answers 2)
- A. Attack emergency
- B. Exception
- C. Threat
- D. Normal
Answer: A,D
NEW QUESTION 45
For which of the following protection scenarios is Alibaba Cloud WAF applicable? (Number of correct answers: 5)
- A. Data leakage prevention
- B. Virtual vulnerability patches
- C. Defense against website trojans and tampering
- D. Brute force cracking protection
- E. Protection against SMS refresh and service data crawling
- F. Protection against malicious CC attacks
Answer: A,B,C,D,F
NEW QUESTION 46
A customer built his website on Alibaba Cloud- To defend against Web attacks he activated Alibaba Cloud WAF However, a week later, the customer finds that his website has suffered intrusion. Which of the following actions should he take to ensure that WAF functions correctly and enhance system security?
(Number of correct answers: 4)
- A. Delete all snapshots and clear the server
- B. Resolve the website domain name to the site s source IP address
- C. Check whether or not the DNS resolution results point to the WAF address
- D. Configure a security group for the ECS instance.
- E. Use Security Center to remove Trojans and fix vulnerabilities
- F. Secure other HTTP services on the ECS instance using WAF
Answer: C,D,E,F
NEW QUESTION 47
If you install Alibaba Cloud Security Center client on a non-Alibaba Cloud server, which of the following statements allows you to check the server-related reports on the Security Center?
- A. You cannot check the reports on the Alibaba Cloud console.
- B. You need to manually install the agent on the external server, and use a verification key to associate it with your account
- C. Associate the Security Center client with your Alibaba Cloud official website account.
- D. Security Center does not support non-Alibaba Cloud servers
Answer: B
NEW QUESTION 48
To improve system security and protect the system from DDoS attacks, you can use Alibaba Cloud Anti-DDoS Premium Service. Which of the following products can be used together with Alibaba Cloud Anti-DDoS Service to improve the system access capabilities? (Number of correct answers 3)
- A. Server Load Balancer
- B. WAF
- C. RDS
- D. CDN
Answer: A,B,D
NEW QUESTION 49
......
Try 100% Updated ACP-Sec1 Exam Questions [2022]: https://www.exam4pdf.com/ACP-Sec1-dumps-torrent.html

