
ACP-Sec1 Free Update With 100% Exam Passing Guarantee [2021]
[Oct-2021] Verified Alibaba Exam Dumps with ACP-Sec1 Exam Study Guide
NEW QUESTION 30
Alibaba Cloud Security Center is consisted of light-weight Agents and cloud engine to provide functions such as webshell scanning and removal, day vulnerability repair, security baseline inspection, and host access control, to protect the server security. Which of the following processes is NOT included in Security Center Agent?
- A. AliYunDun
- B. AliHids
- C. All Safe
- D. AliYunDunUpdate
Answer: C
NEW QUESTION 31
To improve system security and protect the system from DDoS attacks, you can use Alibaba Cloud Anti-DDoS Premium Service. Which of the following products can be used together with Alibaba Cloud Anti-DDoS Service to improve the system access capabilities? (Number of correct answers 3)
- A. WAF
- B. CDN
- C. Server Load Balancer
- D. RDS
Answer: A,B,C
NEW QUESTION 32
More than one CNAME record is generated for the same domain name when Alibaba Cloud Anti-DDoS Premium Service Instance is purchased for load balancing purpose.
- A. False
- B. True
Answer: A
NEW QUESTION 33
If a user has multiple ECS instances on Alibaba Cloud but has no professional O&M team or is unwilling to put efforts in O&M, the user can activate Alibaba Cloud Security Center which provides security expert services like manual security checking, Trojan removing and hosted service monitoring.
- A. True
- B. False
Answer: A
NEW QUESTION 34
Alibaba Cloud CloudMonitor is a service that monitors Alibaba Cloud resources and Internet applications Which of the following functions are currently provided by CloudMonitor? (Number of correct answers: 4)
- A. Custom monitoring
- B. Site monitoring
- C. Alerting
- D. Custom firewall
- E. Cloud service monitoring
Answer: A,B,C,E
NEW QUESTION 35
When a Layer-4 forwarding rule is configured with multiple origin site IP addresses, Alibaba Cloud Anti-ODoS Premium Service will perform load balancing for Layer-4 requests using balancing algorithm
- A. True
- B. False
Answer: A
NEW QUESTION 36
Alibaba Cloud WAF is a security protection product based on Alibaba Group's web security defense experience accumulated over more than a decade By defending against common OWASP attacks, providing patches to fix vulnerabilities, and allowing users to customize protection policies for website services, WAF can successfully safeguard the security and availability of websites and web applications. Which of the following types of security configurations does WAF provide? (Number of correct answers 3)
- A. Web application attack protection
- B. Precision access control
- C. CC protection
- D. Port access control
Answer: A,C,D
NEW QUESTION 37
After a customer uses Alibaba Cloud Anti-DDoS Premium Service, a 502 error is prompted. Which of the followings are the possible causes of the error? (Number of correct answers 3)
- A. The IP address of the origin site is exposed and suffered an attack
- B. The Anti-DDoS Service IP range was not released As a result, the origin site is blocked.
- C. Network congestion or jitter occurred
- D. The service was configured using the IP address method instead of the CI
Answer: A,B,C
NEW QUESTION 38
Which of the following configurations is NOT a feature provided by Alibaba Cloud Web Application Firewall product?
- A. Data Leakage Prevention
- B. Crawler Detection
- C. Blocked Regions
- D. HTTP ACL Policy
Answer: C
NEW QUESTION 39
After you install the Alibaba Cloud Security center agent on a non with your Alibaba Cloud account*?
- A. The installation verification key generated on the console
- B. Your account ID
- C. The user name and password
- D. Your AccessKey
Answer: D
NEW QUESTION 40
baba Cloud security service provides in-depth defense Which of the following services is dedicated for host security?
- A. WAF
- B. Security Center
- C. Data Risk Control
- D. Anti-DDoS pro Service
Answer: D
NEW QUESTION 41
For which of the following protection scenarios is Alibaba Cloud WAF applicable? (Number of correct answers: 5)
- A. Brute force cracking protection
- B. Defense against website trojans and tampering
- C. Virtual vulnerability patches
- D. Protection against SMS refresh and service data crawling
- E. Data leakage prevention
- F. Protection against malicious CC attacks
Answer: A,B,C,E,F
NEW QUESTION 42
What are some of the products that support integration with Alibaba Cloud's SSL Certificates Service (Number of correct answers: 3)
- A. Secure Content Distribution Network (SCDN)
- B. ApsaraDB for RDS
- C. Content Distribution Network (CDN)
- D. Server Load Balancer (SLB)
Answer: A,C,D
NEW QUESTION 43
Which of the following permissions is required to manually install the Alibaba Cloud Security center agent on the server?
- A. System administrator privilege
- B. Common user permission
- C. FTP service permission
- D. Database permission
Answer: A
NEW QUESTION 44
If an ECS instance needs to be accessed by other applications from internet, a corresponding "port" must be enabled For example, HTTP applications work on port 80, while FTP applications work on port 21 If an administrator configures network security policies for this ECS instance, which of the following policies is the safest?
- A. The administrator wants to build multiple applications on an ECS instance. For easy management, the administrator uses default settings and allows any IP address to access required service ports
- B. After buying an ECS instance, the administrator immediately enables the security group firewall on the console and opens all ports for public networks
- C. After buying an ECS instance, the administrator immediately enables the security group firewall on the console and opens only the required service ports for public networks
- D. After buying an ECS instance, the administrator immediately enables the security group firewall on the console and opens ports 0-1024 for public networks
Answer: C
NEW QUESTION 45
Data Risk Control feature has been integrated into Alibaba Cloud WAF. When this function is activated, a script must be embedded into the page that wishes to be protected under the corresponding domain name to check whether a client is trustworthy. Which type of script is it?
- A. Java
- B. C++
- C. Vbscript
- D. JavaScript
Answer: D
NEW QUESTION 46
Border Gateway Protocol (BGP) is mainly used for interconnection between autonomous systems (AS) on the Internet It. Controlling route transmission and selecting the best route Alibaba Cloud uses a BGP multi-line access mechanism for all its IDCs in China. Which of the followings are advantages of a BGP multi-line IDC?
(Number of correct answers 2)
- A. Low bandwidth cost
- B. Larger bandwidth
- C. Elimination of access barriers between North China and South China because China is big and North China and South China has different telecom operators
- D. High-speed interconnection
Answer: C,D
NEW QUESTION 47
If you install Alibaba Cloud Security Center client on a non-Alibaba Cloud server, which of the following statements allows you to check the server-related reports on the Security Center?
- A. Security Center does not support non-Alibaba Cloud servers
- B. You need to manually install the agent on the external server, and use a verification key to associate it with your account
- C. Associate the Security Center client with your Alibaba Cloud official website account.
- D. You cannot check the reports on the Alibaba Cloud console.
Answer: B
NEW QUESTION 48
Anti-DDoS is one of the major products of Alibaba Cloud Security service Many websites have suffered DDoS attacks of different types. Therefore, accurate understanding of DDoS attacks is critical to the website security protection. Which of the following statements about DDoS attacks is the MOST accurate?
- A. The main purpose of a DDoS attack is to prevent the target server from providing normal services
- B. DDoS attacks primarily target a database
- C. A DDoS attack cracks the servers logon password by means of numerous attempts
- D. The purpose of a DDoS attack is to steal confidential information
Answer: A
NEW QUESTION 49
Alibaba Cloud Security Center Agent is installed in ECS instances by default, no need to install it manually Users can detach Security Center Agent at any time they desire.
- A. False
- B. True
Answer: A
NEW QUESTION 50
Cross Site Script (XSS) attacks refer to a kind of attack by tampering the webpage using HTML injection to insert malicious scripts so as to control the user's browser when the user browses the webpage XSS vulnerabilities may be used for user identity stealing (particularly the administrator identity), behavior hijacking, Trojan insertion and worm spreading, and also phishing
- A. True
- B. False
Answer: A
NEW QUESTION 51
Alibaba Cloud's Content Moderation service cannot detect advertising or spam content.
- A. False
- B. True
Answer: A
NEW QUESTION 52
......
Authentic Best resources for ACP-Sec1 Online Practice Exam: https://www.updatedumps.com/Alibaba/ACP-Sec1-updated-exam-dumps.html