
Verified ACA-Sec1 dumps Q&As - Pass Guarantee Exam Dumps Test Engine [2022]
ACA-Sec1 dumps and 145 unique questions
NEW QUESTION 69
Which of following statement about 'Server Guard' Trojan scanning functionality is NOT correct?
Score 2
- A. you can log on to the Server Guard console to isolate webshell files with one click.
- B. A change to a file in the web pages directories will trigger a scan for that file
- C. Server Guard will delete any suspicious webshell file immediately
My - D. Server Guard Agent will automatically scan your web pages directories and look for any webshell file.
Answer: C
NEW QUESTION 70
For MySQL DB, if the records number exceeds one million in one single table, which of the following methods can help you improve querying speed?(the number of correct answers: 2) Score 1
- A. setup index for this table
- B. use 'count(*)' to get total record number before query
- C. use 'limit N' to limit the number of possible returned records
- D. use 'group by' to filter information
Answer: A,D
NEW QUESTION 71
User A rented 2 ECS server and one RDS in Alibaba Cloud to setup his company public website. After the web site will become available online, the security risks he/she will face will include: (the number of correct answers: 3)
- A. ECS admin password is hacked
- B. the disk in ECS is broken
- C. physical cable is cut by someone
- D. RDS DB got unknown remote logon
- E. website codes has some vulnerability
Answer: A,D,E
NEW QUESTION 72
Which of the following statements are true for how to login to different ECS operating system? (the number of correct answers: 2) Score 1
- A. use 'remote desktop connection' for windows
- B. use 'ssh' tool for windows
- C. use 'remote desktop connection' for Linux
- D. use 'ssh' tool for Linux
Answer: A,D
NEW QUESTION 73
Which of the following statements about VLAN are NOT true?(the number of correct answers: 3) Score 1
- A. VlAN can enhance the network security and data isolation
- B. different VLAN means different physical location of switches
- C. VLAN configuration can be done through an TCP/IP router device
- D. users in different VLAN can connect each other directly without pre-configuration
Answer: B,C,D
NEW QUESTION 74
In making cloud accounts more secure, which of the following is NOT a guiding principle?
- A. Anonymous logins
- B. Login verification
- C. Account permissions
- D. Authorization distribution
Answer: A
NEW QUESTION 75
Which of the following statements are true to describe a SQL attack commonly used pattern? (the number of correct answers: 3)
- A. adding an absolute true condition to bypass original request
- B. use selfmade variable
- C. Adding more search request together with the original one
- D. use incorrect SQL function
- E. adding ";" or "--" to change the original request purpose with new request attached
Answer: A,B,C
NEW QUESTION 76
In an IP (Internet Protocol) spoofing attack, what field of an IP (Internet Protocol) packet does the attacker manipulate?
- A. The source port field
- B. The source address field
- C. The version field
- D. The destination address field
Answer: B
NEW QUESTION 77
You are planning on hosting an eCommerce Web server. You are intent on making the server secure against all external attacks possible. Which of the following would be the best way to test your server for its weaknesses? Choose the best answer.
- A. Simulate a DDoS attack on that server
- B. Simulate a DoS attack on the server
- C. Ping to the server
- D. Check if all the patches and required antivirus software has been loaded o the server
Answer: A
NEW QUESTION 78
Which of the following cloud services are the most common ones when we talk about different types of Cloud service
- A. DaaS
- B. PaaS
- C. IaaS
- D. SaaS
Answer: B,C,D
NEW QUESTION 79
Which of these options contains the three basic target categories for a DoS or a DDoS?
- A. Systems, memory, network access card
- B. Networks, systems and applications
- C. Network access card, applications, peripheral devices
- D. Resources, printers and storage devices
Answer: B
NEW QUESTION 80
If user is using anti-DDOS Pro service, but the original server has rule to limit access to the client IPs, which of the following actions is the most proper one to take?
- A. enable SLB for original server
- B. add anti-DDOS pro IP into customer firewall white list
- C. enable CDN and change anti-DDOS pro IP to CDN address
- D. disable original server firewall
Answer: B
NEW QUESTION 81
Which service in RedHat Linux OS can be used to build network firewall functionality?
Score 2
- A. ipfirewall
- B. iptables
- C. netstat
- D. linuxfw
Answer: B
NEW QUESTION 82
ECS cloud server is one of the service provided by Alibaba Cloud. If it is attacked by some internet hacker, which of the following consequences such attack could cause? (the number of correct answers: 2)
- A. The datacenter where the ECS belongs to need to shutdown
- B. Leak of customer sensitive data
- C. Physical Server Damage
- D. Service running on this ECS become not available
Answer: B,D
NEW QUESTION 83
Which of the following can be termed as the Denial of Service Attack? Choose the best answer.
- A. You keyboard is no longer responding
- B. Your Web server has gone into a loop trying to service a client request
- C. A computer on your network has crashed
- D. Your router is unable to find a destination outside of your network
Answer: B
NEW QUESTION 84
Which of following statements is NOT true about anti-DDOS basics and anti-DDOS Pro?
- A. anti-DDOS pro is free to charge
- B. anti-DDOS pro can protect both inside and outside Alibaba Cloud servers
- C. both can defend DDOS attack
- D. anti-DDOS pro has more capabilities to defend against DDOS attacks
Answer: A,B
NEW QUESTION 85
If Server Guard (product provided by Alibaba Cloud) report some brute force password hacking attacks, the reporting information will include? (the number of correct answers: 3)
- A. Attack type
- B. Attack initiated time
- C. Physical location of attacker
- D. Tools attacker used
- E. Attack source IP
Answer: A,B,E
NEW QUESTION 86
After using WAF, if you find there are many user input data in the network traffic, you should apply:
- A. Strict protection policy
- B. Loose protection policy
- C. Normal protection policy
- D. Progression protection policy
Answer: A
NEW QUESTION 87
Which of the following statements is NOT true about web application security protection best practices?
- A. enforce security management to any public service
- B. keep monitoring system processes , performance and status
- C. keep installing official released patches will be good enough
- D. always scan input by user through web application
Answer: C
NEW QUESTION 88
What will the correct stops the traffic will flow through if the user used all following cloud service: WAF, Anti-DDOS pro, CDN.
- A. CDN- >WAF->Anti-DDOS Pro->Original website
- B. CDN- >Anti-DDOS Pro->WAF->Original Website
- C. Anti-DDOS Pro->CDN->WAF->Original website
- D. Anti-DDOS Pro->WAF->CDN->Original website
Answer: C
NEW QUESTION 89
Which of the following options can be considered as Physical environment security risks in IT infrastructure
- A. Room temperature
- B. Data encryption
- C. Rain
- D. Sounder
Answer: A,C,D
NEW QUESTION 90
......
Alibaba ACA-Sec1 Exam Syllabus Topics:
| Topic | Details |
|---|---|
| Topic 1 |
|
| Topic 2 |
|
| Topic 3 |
|
| Topic 4 |
|
| Topic 5 |
|
| Topic 6 |
|
| Topic 7 |
|
| Topic 8 |
|
ACA-Sec1 Dumps for Pass Guaranteed - Pass ACA-Sec1 Exam: https://www.itpass4sure.com/ACA-Sec1-practice-exam.html

