
Latest [Sep 10, 2021] Alibaba ACA-Sec1 Exam Practice Test To Gain Brilliante Result
Take a Leap Forward in Your Career by Earning Alibaba ACA-Sec1
NEW QUESTION 57
Which of the following security issues is considered by the OWASP to be the most dangerous issue facing cloud computing?
- A. Injection
- B. Account or service flow hijacking
- C. Multi-tenant isolation failure
- D. Denial of service
Answer: A
NEW QUESTION 58
Which of following statements is NOT true about anti-DDOS basics and anti-DDOS Pro?
- A. both can defend DDOS attack
- B. anti-DDOS pro can protect both inside and outside Alibaba Cloud servers
- C. anti-DDOS pro is free to charge
- D. anti-DDOS pro has more capabilities to defend against DDOS attacks
Answer: B,C
NEW QUESTION 59
In Windows OS what command can be used to open registry table and edit it?
- A. Gpedit
- B. Zedit
- C. Regedit
- D. Gedit
Answer: C
NEW QUESTION 60
CC attacks can cause serious damages. Which of the following statements about CC attack is not correct?
Score 2
- A. Will consume massive sever side resource
- B. CC attack will simulate real user requests
- C. CC attack is done on network layer
- D. The request generated by CC attack is hard to be distinguished from normal requests
Answer: C
NEW QUESTION 61
Which of the following methods can't be used to prevent SQL injection attack?
- A. Warning message for abnormal input
- B. SQL precompiling and variable binding
- C. Strict input check
- D. Use secured function call
Answer: A
NEW QUESTION 62
Please list the correct order of the following 4 steps to enable a WAF service : (1) upload HTTPS CA and private key(HTTPS website only) (2) add the domain name that needs to be protected (3) select the original IP address (4) add CNAME DNS record Score 2
- A. 0
- B. 1
- C. 2
- D. 3
Answer: A
NEW QUESTION 63
User A rented 2 ECS server and one RDS in Alibaba Cloud to setup his company public website. After the web site will become available online, the security risks he/she will face will include: (the number of correct answers: 3)
- A. RDS DB got unknown remote logon
- B. the disk in ECS is broken
- C. website codes has some vulnerability
- D. physical cable is cut by someone
- E. ECS admin password is hacked
Answer: A,C,E
NEW QUESTION 64
When 'Server Guard' detects remote logon behavior, what information will be shown on 'Server Guard' console?
- A. Illegal Logon!
- B. Migrated Already!
- C. Remote Logon Detected!
- D. Logon Successfully!
Answer: C
NEW QUESTION 65
Which of the following statements is the possible reason that might lead to system vulnerabilities?
- A. hardware devices are not up to date
- B. The proprietary software that is safer than open source one should be installed
- C. software logic flaw or mistakes made during software development cycle
- D. system administrator didn't follow the operation manual exactly
Answer: C
NEW QUESTION 66
Which of the following scenarios are suitable to use CC emergency mode protection? (the number of correct answers: 2)
- A. Native APPs
- B. API
- C. HTML 5 page
- D. Web page
Answer: C,D
NEW QUESTION 67
. In the ISO/OSI 7 layers networking model, which of the following functions are provided for the 'network layer'? (the number of correct answers: 2)
- A. congestion handling
- B. physical connection
- C. end to end reliable and transparent data transition
- D. Routing
Answer: A,D
NEW QUESTION 68
After WAF was purchased, users need to add one DNS record to map their domain name to WAF provided IP. What is the type of that DNS record?
- A. CNAME Record
- B. MX Record
- C. A record
- D. TXT Record
Answer: A
NEW QUESTION 69
Which of the following scenarios is the one that 'Server Guard' will support for brute force password hacking detection?
- A. RDS remote connection
- B. Linux CRM application remote logon
- C. Windows shared directory access
- D. ECS server remote logon or inside DB remote logon
Answer: D
NEW QUESTION 70
Each host connecting to internet will face the potential attacks from internet as follows : ( the numbers of correct answers : 3)
- A. Trojan planting
- B. Lack of storage resource
- C. Vulnerability scanning
- D. Content Compliance Requirement
- E. Brute Force password hacking
Answer: A,C,E
NEW QUESTION 71
May, 2017. New blackmail virus WannaCry burst globally. This virus leveraged Windows OS opened port 445 to initiate the attack, so the quickest way to prevent this kind of attack is?
- A. Always set password with highly complex combination of number, letter and other characters
- B. With 'Server Guard' protection in Alibaba Cloud, you can set password to some easy to remember words.
- C. Change 'Administrator' to some other name
- D. Except some necessary accounts for system management, disable or delete other useless accounts
Answer: D
NEW QUESTION 72
......
Authentic Best resources for ACA-Sec1 Online Practice Exam: https://www.lead2passed.com/Alibaba/ACA-Sec1-practice-exam-dumps.html