Weekend Sale Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: suredis

Alibaba Cloud ACP-Sec1 ACP Cloud Security Professional Exam Practice Test

Page: 1 / 8
Total 80 questions

ACP Cloud Security Professional Questions and Answers

Testing Engine

  • Product Type: Testing Engine
$42  $119.99

PDF Study Guide

  • Product Type: PDF Study Guide
$36.75  $104.99
Question 1

More than one CNAME record is generated for the same domain name when Alibaba Cloud Anti-DDoS Premium Service Instance is purchased for load balancing purpose.

Options:

A.

True

B.

False

Question 2

You are importing your own key material in to Key Management Service (KMS). Which of the following is the correct sequence of steps to follow?

Options:

A.

1 Create an external key

2 Get the "import key material" parameters

3 Import the key material

B.

1 Import the key material

2 Get the "import key material" parameters

3 Create an external key

C.

1 Create an external key

2 Import the key material

3 Get the "import key material" parameters

D.

1 Get the "import key material" parameter

2 Create an external key

3. Import the key material

Question 3

Content Moderation service is useful m a wide variety of scenarios. Which of the following are the *most* suited to Content Moderation's capabilities? (Number of correct answers 2)

Options:

A.

Deleting porn on a social networking site

B.

Detecting spam posts on a forum

C.

Detecting faces in images

D.

Detecting sensitive customer information such as credit card numbers in uploaded images

Question 4

Products like ECS and Server Load Balancer it will be automatically protected by Anti-DDoS Basic service

Options:

A.

True

B.

False

Question 5

Alibaba Cloud WAF cannot protect against large traffic DDoS attacks which can be solved by Alibaba Cloud Ant-DDoS Service.

Options:

A.

True

B.

False

Question 6

A website is built using open-source software To prevent hacker attacks and fix vulnerabilities in a timely manner, the administrator of the website wants to use the patch management feature in Security Center. Which of the following statements about patch management is FALSE.

Options:

A.

Before patches for most common Web vulnerabilities are released, the Alibaba Cloud Security O&M team will have fixed the vulnerabilities using self-developed patches

B.

Rollback of Web vulnerabilities means to restore the original files, while rollback of Windows vulnerabilities means to uninstall the patch upgrade

C.

Patch management can operate machines in batches in the cloud. For large-scale vulnerabilities, it supports one-key patch upgrade, which is easy and convenient

D.

Vulnerabilities are automatically fixed Once a self-developed paten is released, it automatically fixes vulnerabilities for all customers who have enabled patch management.

Question 7

After you install the Alibaba Cloud Security center agent on a non with your Alibaba Cloud account*?

Options:

A.

The user name and password

B.

Your AccessKey

C.

Your account ID

D.

The installation verification key generated on the console

Question 8

Data Risk Control feature has been integrated into Alibaba Cloud WAF. When this function is activated, a script must be embedded into the page that wishes to be protected under the corresponding domain name to check whether a client is trustworthy. Which type of script is it?

Options:

A.

JavaScript

B.

C++

C.

Vbscript

D.

Java

Question 9

Anti-DDoS is one of the major products of Alibaba Cloud Security service Many websites have suffered DDoS attacks of different types. Therefore, accurate understanding of DDoS attacks is critical to the website security protection. Which of the following statements about DDoS attacks is the MOST accurate?

Options:

A.

The main purpose of a DDoS attack is to prevent the target server from providing normal services

B.

A DDoS attack cracks the servers logon password by means of numerous attempts

C.

The purpose of a DDoS attack is to steal confidential information

D.

DDoS attacks primarily target a database

Question 10

Alibaba Cloud Security Center can record source IP addresses that remotely access a server, and shield suspicious IP addresses that frequently connect to the server. During routine O&M. which of the following functions can be used to set the IP address that are commonly used by the system administrator'?

Options:

A.

Security group

B.

Valid Login IP list

C.

Frequent logon location management

D.

Webshell detection

Question 11

When users log on to ECS instances through SSH or remote desktop from public Internet, Alibaba Cloud Security Center will monitor the log on behaviors

If an IP address uses incorrect password to log on to an ECS instance for too many times, an alert "ECS instance suffers brute force password cracking" will be prompted If you receive this alert, which of the following is the safest way to handle this alert?

Options:

A.

This alert does not matter and can be ignored.

B.

Inform all users on the service platform of changing their passwords, and eliminate simple passwords using technical measures

C.

Log on immediately to the ECS instance and check the logon logs If no abnormal logon success record is found ignore this alert.

D.

Update the system user password immediately for the ECS instance, and enable the security group firewall to allow only specified IP addresses to connect to the ECS instance

Question 12

You have set an alert policy for the disk usage of an ECS instance by using Alibaba Cloud CloudMonitor Each measurement cycle lasts for 5 minutes, during which the average disk usage is measured If the average disk usage exceeds 80% for five consecutive measurement cycles, an alert will be reported After your average disk usage exceeds 80%, how long will it take to receive an alert with the best case scenario?

Options:

A.

30 minutes

B.

0 minutes

C.

40 minutes

D.

20 minutes

Page: 1 / 8
Total 80 questions