Spring Sale Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: buysanta

Exact2Pass Menu

ACA Cloud Security Associate

Last Update 1 day ago Total Questions : 147

The ACA Cloud Security Associate content is now fully updated, with all current exam questions added 1 day ago. Deciding to include ACA-Sec1 practice exam questions in your study plan goes far beyond basic test preparation.

You'll find that our ACA-Sec1 exam questions frequently feature detailed scenarios and practical problem-solving exercises that directly mirror industry challenges. Engaging with these ACA-Sec1 sample sets allows you to effectively manage your time and pace yourself, giving you the ability to finish any ACA Cloud Security Associate practice test comfortably within the allotted time.

Question # 1

After using WAF, if you find there are many user input data in the network traffic, you should apply:

A.

Loose protection policy

B.

Normal protection policy

C.

Strict protection policy

D.

Progression protection policy

Question # 2

By default, servers in VPC can ' t communicate with internet. By implementing which of the

following products these servers can gain the capability to communicate with internet? (the

number of correct answers: 3)

A.

Elastic Public IP

B.

CDN

C.

EIP + SLB

D.

EIP + NAT Gateway

E.

DNS service

Question # 3

Alibaba Cloud offers different security protection plans to different tenant accounts. Which of the

following is NOT a security plan offered by Alibaba Cloud?

A.

Password-free login

B.

Two-factor authentication

C.

Phone number binding

D.

Phone or email verification for password resetting

Question # 4

Which of the following statements about ECS, VPC, security groups are NOT true?

(the number of correct answers: 2)

A.

rule setting for security group supports both in and out direction configuration

B.

default security group rule is safe enough, please don ' t change it too much

C.

by default, ECS in different security group can communicate with each other

D.

one ECS can be in several different security group

Question # 5

Which of the following statements about cloud security shared responsibilities model are true? (the

number of correct answers: 2)

A.

for users who is using IAAS service, they should be responsible for their business system which is

on top of cloud infrastructure

B.

cloud service provider should guarantee the security of all physical infrastructure

C.

the damage caused by attacks leveraging security vulnerability in customers ' application server

should be charged to cloud service provider

D.

cloud user should also take care of some of the hardware maintenance and operation work

Question # 6

If Server Guard (product provided by Alibaba Cloud) report some brute force password

hacking attacks, the reporting information will include ? (the number of correct answers: 3)

A.

Attack initiated time

B.

Attack type

C.

Tools attacker used

D.

Attack source IP

E.

Physical location of attacker

Question # 7

Which of the following statements about the supported way of MySQL DB for backup are

true?(the number of correct answers: 2)

A.

you can use ' mysqldump ' do logical backup

B.

you can copy files directly to do physical backup

C.

you can use ' binlog ' to do real time backup

D.

you must stop accessing to DB before you do logical backup

Question # 8

Which of the following statements is true about HTTP protocol?

Score 2

A.

HTTP is a network layer protocol

B.

the data transmitted by this protocol is auto-encrypted

C.

default service port is 80

D.

HTTP protocol can ' t be used to transmit file

Question # 9

Which of the following logs can be accessed through ECS logs provided by Alibaba Cloud?

(the number of correct answers: 2)

A.

OS system log

B.

Application log

C.

Hypervisor log

D.

Cloud platform log

Question # 10

CC attacks can cause serious damages. Which of the following statements about CC attack is

not correct?

Score 2

A.

CC attack will simulate real user requests

B.

Will consume massive sever side resource

C.

CC attack is done on network layer

D.

The request generated by CC attack is hard to be distinguished from normal requests

Go to page: