AliCloud ACA-Sec1 ACA Cloud Security Associate Online Training
AliCloud ACA-Sec1 Online Training
The questions for ACA-Sec1 were last updated at Dec 25,2024.
- Exam Code: ACA-Sec1
- Exam Name: ACA Cloud Security Associate
- Certification Provider: AliCloud
- Latest update: Dec 25,2024
Which of the following protocol is dedicated to resolve IP and MAC addresses?
- A . TCP
- B . ARP
- C . DNS
- D . ICMP
Which of following statements about the possible reasons that cause web server vulnerabilities are true? (the number of correct answers: 2) Score 1
- A . Bugs generated during common component development
- B . Hardware configuration is not up to date
- C . Software used or OS itself contain some logic flaw
- D . End user didn’t follow the user manual
Which web server is default one in Windows OS?
- A . HTTPD
- B . IIS
- C . Web Daemon
- D . Apache
In a regular server maintenance operation, the purpose of installing a patch on the operating system is?
- A . To improve server resource usage
- B . to improve system usability
- C . to enhance system functionality
- D . to avoid existing system vulnerabilities being used by some hackers
Regarding the ‘Shared Security Responsibilities’ on Alibaba Cloud, which of the following options are the responsibilities Cloud user need to take care of?
- A . Data security inside ECS
- B . Physical servers water proof
- C . Application vulnerabilities
- D . ECS network configuration
Which of the following methods CANNOT increase account security?
- A . Strong password policies
- B . Periodically reset the user login passwords
- C . Adhere to the minimum authorization principle
- D . Unite user management, permission management and resource management into a single management process
In order to stop the service provided through a particular port in Windows OS, which of the following methods can be used to achieve this objective? (the number of correct answers: 3)
- A . adjust firewall rule
- B . adjust local security policy
- C . update OS patch
- D . stop the service itself
- E . stop all guest role access
If user is using anti-DDOS Pro service, but the original server has rule to limit access to the client IPs, which of the following actions is the most proper one to take?
- A . enable CDN and change anti-DDOS pro IP to CDN address
- B . add anti-DDOS pro IP into customer firewall white list
- C . disable original server firewall
- D . enable SLB for original server
Which of the following shell command can be used to check disk usage in a Linux OS ECS
- A . Df Ch
- B . Echo
- C . Free Cm
- D . Ps Ce Co
User A rented 2 ECS server and one RDS in Alibaba Cloud to setup his company public website.
After the web site will become available online, the security risks he/she will face will include: (the number of correct answers: 3)
- A . physical cable is cut by someone
- B . ECS admin password is hacked
- C . website codes has some vulnerability
- D . RDS DB got unknown remote logon
- E . the disk in ECS is broken