Summer Certification Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code = getmirror

Pass the Alibaba Cloud Alibaba Security ACA-Sec1 Questions and answers with ExamsMirror

Practice at least 50% of the questions to maximize your chances of passing.
Exam ACA-Sec1 Premium Access

View all detail and faqs for the ACA-Sec1 exam


840 Students Passed

93% Average Score

92% Same Questions
Viewing page 4 out of 5 pages
Viewing questions 31-40 out of questions
Questions # 31:

Which of the following logs can be accessed through ECS logs provided by Alibaba Cloud?

(the number of correct answers: 2)

Options:

A.

OS system log

B.

Application log

C.

Hypervisor log

D.

Cloud platform log

Questions # 32:

Which of the following statements is NOT true about EIP and NAT gateway?

Options:

A.

NAT gateway can support multi servers inside VPC to access public internet through one

public IP

B.

EIP can be bind to different ECS servers at the same time

C.

Different EIP can't share bandwidth

D.

NAT gateway can support shared bandwidth between several ips

Questions # 33:

Which of the following services can suffer from DDoS attack?

Options:

A.

Servers in VPC only configured with private network

B.

Any device internet reachable

C.

Government website

D.

Public DNS service

E.

Offline servers

Questions # 34:

Regarding the 'Shared Security Responsibilities' on Alibaba Cloud, which of the following options

are the responsibilities Cloud user need to take care of ?

Options:

A.

Data security inside ECS

B.

Physical servers water proof

C.

Application vulnerabilities

D.

ECS network configuration

Questions # 35:

If WAF service user updated web page content after turning on website tampering protection, what does user need to do on WAF console?

Options:

A.

Update cache

B.

turn on protection switch manually

C.

add one protection rule

D.

restart the whole WAF service

Questions # 36:

Which of the following statements about ECS, VPC, security groups are NOT true?

(the number of correct answers: 2)

Options:

A.

rule setting for security group supports both in and out direction configuration

B.

default security group rule is safe enough, please don't change it too much

C.

by default, ECS in different security group can communicate with each other

D.

one ECS can be in several different security group

Questions # 37:

Which of the following function is provided by 'server guard' patch management service?

Options:

A.

fix vulnerability found in open source software using Alibaba self-developed patch

B.

detect any vulnerability before it bursts

C.

release official patches for any exposed vulnerability

D.

stop hacker's vulnerabilities probing

Questions # 38:

Which of the IP addresses are private IP addresses? (Correct Answers: 2)

Options:

A.

192.169.1.1

B.

172.16.58.14

C.

10.44.10.45

D.

8.8.8.8

Questions # 39:

For an IP subnet like 192.168.0.0/24, which of the following statements is true?

Options:

A.

Every IP address inside this subnet can be assigned as a HOST IP

B.

The broadcast address of this subnet is 192.168.0.0

C.

The network address of this subnet is 192.168.0.255

D.

IP communication between the hosts inside this subnet will not go through the gateway

Questions # 40:

Which of following statements about the possible reasons that cause web server

vulnerabilities are true? (the number of correct answers: 2)

Score 1

Options:

A.

Bugs generated during common component development

B.

Hardware configuration is not up to date

C.

Software used or OS itself contain some logic flaw

D.

End user didn't follow the user manual

Viewing page 4 out of 5 pages
Viewing questions 31-40 out of questions
TOP CODES

TOP CODES

Top selling exam codes in the certification world, popular, in demand and updated to help you pass on the first try.