Weekend Sale 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: sale65best

Free Alibaba Cloud ACP-Sec1 Practice Exam with Questions & Answers | Set: 2

Questions 11

Which of the following features are available in Alibaba Cloud Anti-DDoS Premium product? (Number of correct answers: 3)

Options:
A.

SQL injection Attack blocking

B.

Web application layer DDoS protection

C.

Transport layer DDoS protection

D.

Malformed packets filtering

Alibaba Cloud ACP-Sec1 Premium Access
Questions 12

Various profit-oriented hacker groups exist on the Internet. They control a large number of server resources and can launch network attacks against a target server at any time Among those, one type of attack is common and destructive, which completely consumes resources of the target server so that normal customers cannot connect to the server Which of the following belongs to this type of attack?

Options:
A.

XSS attack

B.

Webshell attack

C.

DDoS attack

D.

SQL injection

Questions 13

More and more blackmail attacks (using hacking tools or ransomware) have been detected among recent network security events, causing ever greater damage and financial loss. Which of the following measures can help Alibaba Cloud customers reduce risks in blackmail attacks? (Number of correct answers 3)

Options:
A.

Enable images and snapshots for ECS instances, back up data every day, and keep more than three redundant copies

B.

Deploy different service applications on servers with the same security level and security domain, and ensure unified policy management and defense

C.

Use strong passwords with more than 15 characters for the accounts of all types of cloud services

D.

When remotely operating and maintaining an ECS instance use the superuser account for login at all times

E.

If remote O&M is required use IpsecVPN or SSL VPN remote solutions

Questions 14

Data transfer between Internet devices requires specific specifications, which are called "protocols" Among those, the invention of a certain protocol played a decisive role in the creation of the Internet. By using those protocols, tens of thousands of computers can be connected and communicate with each other What is the following protocol is not defined in OSI 7 layer model?

Options:
A.

HTTP

B.

TCP

C.

UDP

D.

SOAP

Questions 15

Anti-DDoS Premium Service is a value-added service intended to address the problem of service interruption caused by DDoS attack to servers

including non-Alibaba Cloud hosts)

Users can configure a protected IP address so that the attack traffic can be redirected to this IP address, thereby ensuring the stability and reliability of the origin site. When a user configures Anti-DDoS Premium Service and imports an HTTPS certificate, the system prompts an "incorrect parameter format" error Which of the following is NOT the reason of this error?

Options:
A.

The certificate contains strings like "-—"

B.

The name of the certificate contains invalid letters

C.

The certificate contains nonstandard content

D.

The name of the certificate is too long to be accepted

Questions 16

Before using the HTTPS protection feature in Alibaba Cloud WAF, you must upload the server certificate and private key beforehand.

Options:
A.

True

B.

False

Questions 17

You have set an alert policy for the disk usage of an ECS instance by using Alibaba Cloud CloudMonitor Each measurement cycle lasts for 5 minutes, during which the average disk usage is measured If the average disk usage exceeds 80% for five consecutive measurement cycles, an alert will be reported After your average disk usage exceeds 80%, how long will it take to receive an alert with the best case scenario?

Options:
A.

30 minutes

B.

0 minutes

C.

40 minutes

D.

20 minutes

Questions 18

In which of the following scenarios is Alibaba Cloud Security Center applicable? (Number of correct answers 3)

Options:
A.

Setting up web server to provide web service to public

B.

Penetration testing

C.

Creating an ECS with generic software

D.

Batch server security O&M

E.

Network security protection for ad campaigns or other activities

Questions 19

Alibaba Cloud Ant.-DDoS Premium Service is an advanced DDoS protection product It can defend against layer 4 and layer 7 attacks. Which of the following statements about Alibaba Cloud Anti-DDoS Premium Service is FALSE?

Options:
A.

Anti-DDoS Premium Service provides precise traffic reports and attack details in real time to keep you informed of the current service details on time

B.

Anti-DDoS Premium Service defends against various DDoS attacks, including but not limited to ICMP flood, UDP flood, TCP flood. SYN flood, and ACK flood attacks

C.

Anti-DDoS Premium Service supports 2 billing modes: Unlimited and Insurance.

D.

You can adjust the anti-DDoS elastic protection threshold to a higher level at any time, with the service interruption period no longer than 3 minutes

Questions 20

You have helped a customer set up a content filtering solution based on Content Moderation service However, the customer is complaining that certain images are getting incorrectly flagged as pornographic content. What can you do to help fix this?

Options:
A.

Create an "Image Library" from the Content Moderation console and add the images to the Image Library's whitelist

B.

Ask your customer to use different images on their site

C.

Modify the images until Content Moderation service starts marking them as pornographic.

D.

Open a ticket with Alibaba Cloud support, and send them a copy of the images, so that they can tune Content Moderation's detection algorithms