Try Before You Buy

Download a free sample of any of our exam questions and answers

  • 24/7 customer support, Secure shopping site
  • Free One year updates to match real exam scenarios
  • If you failed your exam after buying our products we will refund the full amount back to you.

[Q33-Q51] Try 100% Updated ACA-Sec1 Exam Questions [2021]

Share

Try 100% Updated ACA-Sec1 Exam Questions [2021]

Pass ACA-Sec1 Exam - Real Questions & Answers


Alibaba ACA-Sec1 Exam Syllabus Topics:

TopicDetails
Topic 1
  • Understanding of the concepts of Alibaba Cloud Security related products
Topic 2
  • Activating, creating, configuring, starting and stopping and disabling a service
Topic 3
  • Knowledge of network security, such as firewall policy, key encryption, access control, network security, and network attack and protection methodologies
Topic 4
  • Familiar with operations of Alibaba Cloud Security related products
Topic 5
  • Familiar with common network protocols such as HTTP, FTP, TCP, UDP and ICMP

 

NEW QUESTION 33
Which of the following reasons is the least possible reason leading to a network attack?

  • A. help to find system vulnerability
  • B. technical skills show off of hacker
  • C. blackmail
  • D. business competition

Answer: A

 

NEW QUESTION 34
Which of the following service may under anti-DDOS attack?(the number of correct answers:
3)
Score 1

  • A. any device internet reachable
  • B. public DNS service
  • C. government website
  • D. servers in VPC only configured with private network
  • E. offline servers

Answer: A,B,C

 

NEW QUESTION 35
Which of the following damages can't be caused by a DDOS attack
Score 2

  • A. DNS service down
  • B. physical server broken
  • C. military commander system down
  • D. web service down

Answer: B

 

NEW QUESTION 36
Using ECS security group can help you achieve:

  • A. better CPU usage
  • B. fine grained access control to you server
  • C. enlarge your network bandwidth
  • D. apply QOS to a specific IP

Answer: B

 

NEW QUESTION 37
Which of the following protocol can be considered as 'application' layer protocol in ISO/OSI 7 layer model?

  • A. IP
  • B. TCP
  • C. UDP
  • D. SMTP

Answer: D

 

NEW QUESTION 38
Which of the following benefit cannot be provided by 'Server Guard'?
Score 2

  • A. get instant alerts after attacks are detected
  • B. lower the risk of sensitive data leak
  • C. lower the cost of security protection
  • D. improve the usage of system resource

Answer: D

 

NEW QUESTION 39
You just physically attached one new disk to a Linux server. Before you can write data into that disk with shell command, which of the following steps you have to finish? (the number of correct answers: 4) Score 1

  • A. Make Partitions
  • B. Mount
  • C. Format
  • D. Create Filesystem
  • E. Raw Format

Answer: A,B,C,D

 

NEW QUESTION 40
For an IP subnet like 192.168.0.0/24, which of the following statements is true?

  • A. The network address of this subnet is 192.168.0.255
  • B. Every IP address inside this subnet can be assigned as a HOST IP
  • C. The broadcast address of this subnet is 192.168.0.0
  • D. IP communication between the hosts inside this subnet will not go through the gateway

Answer: D

 

NEW QUESTION 41
Which of the following scenarios are suitable to use CC emergency mode protection? (the number of correct answers: 2)

  • A. API
  • B. Native APPs
  • C. HTML 5 page
  • D. Web page

Answer: C,D

 

NEW QUESTION 42
Which of the following function is provided by 'server guard' patch management service?

  • A. stop hacker's vulnerabilities probing
  • B. detect any vulnerability before it bursts
  • C. fix vulnerability found in open source software using Alibaba self-developed patch
  • D. release official patches for any exposed vulnerability

Answer: B

 

NEW QUESTION 43
Which of the following protocols is not an application level protocol in ISO/OSI 7 layer networking model?

  • A. FTP
  • B. TCP
  • C. SNMP
  • D. HTTP

Answer: B

 

NEW QUESTION 44
Which directory is the home directory of root user?

  • A. /root
  • B. /boot
  • C. /
  • D. /home/root

Answer: C

 

NEW QUESTION 45
Which of the following statements about ECS, VPC, security groups are NOT true?
(the number of correct answers: 2)

  • A. by default, ECS in different security group can communicate with each other
  • B. default security group rule is safe enough, please don't change it too much
  • C. one ECS can be in several different security group
  • D. rule setting for security group supports both in and out direction configuration

Answer: A,B

 

NEW QUESTION 46
Which of the following cloud services are the most common ones when we talk about different types of Cloud service

  • A. DaaS
  • B. PaaS
  • C. IaaS
  • D. SaaS

Answer: B,C,D

 

NEW QUESTION 47
Which of the following statements about 'webshell' detection feature of WAF is NOT true?

  • A. there is a switch need to be turned on first
  • B. If you changed some page content, you can use 'cache update' button to manually update the cache
  • C. It will totally block any file to be able to upload to the web server
  • D. cache will be enabled only after you turn on the protection switch

Answer: C

 

NEW QUESTION 48
Which of the following statements are true about the difference between HTTP and HTTPS
? (the number of correct answers: 2)

  • A. HTTP must use port 80 and HTTPS must use port 443 to provide service
  • B. HTTPS is more secure than HTTP regarding the way they transfer data
  • C. Data transferred through HTTPs is under encryption
  • D. You must buy commercial CA before you setup your own web server with HTTPS service

Answer: B,C

 

NEW QUESTION 49
Which of the followings are not the reasons for a DDoS attack?

  • A. Destroying of confidentiality
  • B. Destroying of business credit
  • C. Destroying of availability
  • D. Destroying of integrity

Answer: A,B,D

 

NEW QUESTION 50
Each host connecting to internet will face the potential attacks from internet as follows : ( the numbers of correct answers : 3)

  • A. Brute Force password hacking
  • B. Trojan planting
  • C. Lack of storage resource
  • D. Content Compliance Requirement
  • E. Vulnerability scanning

Answer: A,B,E

 

NEW QUESTION 51
......

ACA-Sec1 Exam Questions Get Updated [2021] with Correct Answers: https://www.examstorrent.com/ACA-Sec1-exam-dumps-torrent.html