Exam Details

  • Exam Code
    :ACP-SEC1
  • Exam Name
    :ACP Cloud Security Professional
  • Certification
    :Alibaba Cloud Security
  • Vendor
    :Alibaba
  • Total Questions
    :80 Q&As
  • Last Updated
    :Apr 26, 2024

Alibaba Alibaba Cloud Security ACP-SEC1 Questions & Answers

  • Question 1:

    Alibaba Cloud WAF identifies attacks using human/robot detection, Big Data analysis, model analysis, and other related techniques. Which of the following CC attack defense modes does WAF provide to meet the protection requirements of users? (Number of correct answers 2)

    A. Threat

    B. Exception

    C. Attack emergency

    D. Normal

  • Question 2:

    Which of the following attacks can Alibaba Cloud Anti-DDoS Basic defend against? (Number of coned answers 4)

    A. ACK Flood

    B. UDP Flood

    C. CMP Flood

    D. Brute force password cracking

    E. SYN Flood

  • Question 3:

    Alibaba Cloud ECS instances are common targets of hacker attacks. There are many types of attacks against ECS instances. Which of the following attacks specifically target the operating system of an ECS instance? (Number of correct answers: 3)

    A. SQL injection

    B. Trojan or Webshell installation

    C. Brute force RDP password cracking

    D. Brute force SSH password cracking

  • Question 4:

    Data transfer between Internet devices requires specific specifications, which are called "protocols" Among those, the invention of a certain protocol played a decisive role in the creation of the Internet. By using those protocols, tens of thousands of computers can be connected and communicate with each other. What is the following protocol is not defined in OSI 7 layer model?

    A. HTTP

    B. TCP

    C. UDP

    D. SOAP

  • Question 5:

    Users can detach the Security Center client on Alibaba Cloud ECS instances, and reinstall it later when necessary.

    A. True

    B. False

  • Question 6:

    When you receive a security alert from Alibaba Cloud Security Center, which of the following actions should you do?

    A. The alert is dangerous You must immediately report it to the police

    B. Shield the alert because it is not important

    C. Once you receive an alert, you need to determine the specific risk and perform troubleshooting For example, change the password, or upgrade application software

    D. There is no need to care about the alert Alibaba Cloud Security Center will handle it.

  • Question 7:

    To improve system security and protect the system from DDoS attacks, you can use Alibaba Cloud Anti-DDoS Premium Service. Which of the following products can be used together with Alibaba Cloud Anti-DDoS Service to improve the system access capabilities? (Number of correct answers 3)

    A. Server Load Balancer

    B. CDN

    C. WAF

    D. RDS

  • Question 8:

    An Alibaba Cloud user buys an ECS instance and deploys Tomcat on it.

    Which of the following is the easiest way for the user to monitor whether port 8080 (used by Tomcat) on

    this ECS instance is functioning normally or not?

    A. Log on to the ECS instance every hour to check the port using the command line.

    B. Buy a third-party monitoring tool

    C. Write a script for detection and report the data to CloudMonitor.

    D. Use Alibaba Cloud CloudMonitor s site monitor feature to create a new Monitoring Task to monitor the port status.

  • Question 9:

    Alibaba Cloud Security Center is consisted of light-weight Agents and cloud engine to provide functions such as webshell scanning and removal, day vulnerability repair, security baseline inspection, and host access control, to protect the server security. Which of the following processes is NOT included in Security Center Agent?

    A. AliHids

    B. AliYunDunUpdate

    C. AliYunDun

    D. All Safe

  • Question 10:

    You applied for an SSL certificate through Alibaba Cloud's SSL Certificates Service During the application,

    you selected "Manual" at the "CSR "" step. You now want to install your certificate on a server running

    Apache.

    What must you do?

    A. You must revoke your certificate and re-apply, this time choosing "Automatic" at the "CSR Generation" step. Otherwise, the SSL certificate cannot be downloaded

    B. You can download a crt file of type "Other" from the SSL Certificates Service console, then use openssl to convert this file to pfx format for use with Apache

    C. SSL Certificates Service doesn't support the type of certificates needed by Apache. They cannot be used together

    D. You can use the "generate pfx file" function built into the SSL Certificates Service to manually generate and download the pfx file needed by Apache

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Alibaba exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your ACP-SEC1 exam preparations and Alibaba certification application, do not hesitate to visit our Vcedump.com to find your solutions here.