リリースSAP P-SECAUTH-21更新された問題PDF [Q18-Q33]

Share

リリースSAP P-SECAUTH-21更新された問題PDF

P-SECAUTH-21問題集と練習テスト(80試験問題)


SAP P-SECAUTH-21試験は、システムセキュリティアーキテクチャに特化したテクノロジープロフェッショナルのスキルと知識をテストするために設計されています。この認定試験は、SAP認定テクノロジープロフェッショナルプログラムの一部であり、SAP環境におけるセキュリティの原則と実践に強い理解を持つ個人を対象としています。


SAP P_SECAUTH_21試験に合格することは、SAPシステムセキュリティの分野でキャリアアップを目指すITプロフェッショナルにとって重要な達成です。この試験に合格することで、最高水準のセキュリティとコンプライアンス基準を満たす安全なSAPシステムの設計と実装に必要な知識とスキルを持っていることを示すことができます。資格は2年間有効であり、その後、再認定試験を受けて資格状態を維持する必要があります。

 

質問 # 18
How are security relevant objects related in the Cloud Foundry? Note: There are 2 correct answers to this question

  • A. Role Templates have 1 or many scopes
  • B. Role Collections have 0 or many role templates
  • C. Role Collections have 0 or many roles
  • D. Role Templates have 0 or many attributes

正解:B、D


質問 # 19
The SSO authentication using X.509 client certificates is configured. Users complain that they can't log in to the back-end system. The trace file shows the following error message: "HTTP request [2/5/9] Reject untrusted forwarded certificate". What is missing in the configuration? Note: There are 2 correct answers to this question.

  • A. On the web-dispatcher, the SAPSSLS.pse must be signed by a trusted certification authority
  • B. The web dispatcher's SAPSSLC.PSE certificate must be added to the trusted reverse proxies list in icm/trusted_reverse_proxy_<xx>
  • C. On the back-end, the profile parameter icm/HTTPS/verify client must NOT be set to 0
  • D. On the web-dispatcher, the profile parameter icm/HTTPS/verify_client must be set to 0

正解:A、C


質問 # 20
What are characteristic of the SAP_INTERNAL_HANA_SUPPORT catalog role? Note: there are 2 correct answers to this question.

  • A. It has full access to all metadata
  • B. Object privileges can be granted to the role
  • C. System privileges can be granted to the role
  • D. No role can be granted to it

正解:C、D


質問 # 21
Which of the following function can be used to troubleshoot authorization errors for ABAP CDS views with Authorization based on Access Control?

  • A. STAUTHTRACE
  • B. E2E TRACE ANALYSIS
  • C. REPORT RSUSR008_009
  • D. ABAP TRACE

正解:A


質問 # 22
Which SAP tool provides functions to support Data Destruction, Business Rules Maintenance, and Processing of Audit Areas?

  • A. SAP Data Controller Rule Framework
  • B. SAP Information Lifecycle Management
  • C. SAP Business Rule Framework Plus
  • D. SAP Information Retrieval Framework

正解:A


質問 # 23
You have delimited a single role that is part of a composite role, and a user comparison for the composite role has been performed. You notice that the comparation did NOT.... profile assignments for that single role. What program would you run to resolve this situation?

  • A. PRGN_COMPARE_ROLE_MENU
  • B. PRGN_COMPRESS_TIMES
  • C. PRGN_DELETE_ACTIVITY_GROUPS
  • D. PRGN_MERGE_PREVIEW

正解:B


質問 # 24
You have implemented CUA in your organization and you only want to compare the company address data between the central system and child systems to perform the synchronization activities. Which transact on do you use for comparing the company address between these systems?

  • A. SCUC
  • B. SCUM
  • C. SUCOMP
  • D. SCUG

正解:C


質問 # 25
You want to create an SAP Fiori app for multiple users and multiple back-end systems. To support this, you create different roles for the different back-end systems in the SAP Fiori front-end system (central hub). What transactions do you have to use to map a back-end system to one of those roles?

  • A. /UI2/GW_SYS_ALIAS
  • B. SEGW
  • C. PFCG
  • D. /IWFND/MAINT_SERVICE

正解:D


質問 # 26
Which of the following user types can be used to log on interactively? Note: There are 2 correct answers to this question.

  • A. Dialog
  • B. System
  • C. Service
  • D. Communication

正解:A、D

解説:
Explanation
Dialog and Communication are two user types that can be used to log on interactively to an SAP system.
Dialog users are normal users who can access the system using a graphical user interface (GUI) or a web browser. Communication users are users who access the system using communication protocols, such as RFC or HTTP. References:
https://help.sap.com/doc/saphelp_nw70ehp3/7.03/en-US/c8/e8d53d35fb11d182b90000e829fbfe/content.htm?no_
https://help.sap.com/doc/saphelp_nw70ehp3/7.03/en-US/c8/e8d53d35fb11d182b90000e829fbfe/content.htm?no_


質問 # 27
You are running a 3-tier SAP system landscape. Each time you are accessing STMS_IMPORT on any of these systems, you are prompted for a TMSADM password. How can you stop this prompt from appearing?

  • A. Run the report RSUSR405 on the domain controller.
  • B. Change the TMSA DM user's password directly in the TMS RFC destination in transact on SM59.
  • C. Reset the TMSADM user's password on the system you are trying to access STMS_ IMPORT.
  • D. Run the report TMS_ UPDATE_PWD_OF_TMSADM on the domain controller.

正解:D


質問 # 28
What are the characteristics of assertion tickets? Note: There are 2 correct answers to this question.

  • A. They are used for system-to-system communication
  • B. They have an unconfigurable validity of 2 minutes
  • C. They are transmitted as cookies
  • D. They are used for user-to-system trusted login

正解:A、B


質問 # 29
You are running an SAP HANA database in a multi database container (MDC) mode with a single tenant configured. The global_auditing_state parameter has been set to "true" on the global.ini.After restarting the system and tenant databases, the tenant did not come up. When checking the cause, it was discovered that a tenant configuration parameter has been changed. The audit logging did NOT show any events.What could be the reason for this? Note: There are 2 correct answers to this question.

  • A. The configuration parameter was changed from the OS level
  • B. The system was offline when the changes were done
  • C. The audit level was set to INFO
  • D. The global_auditing_state parameter on the nameserver.ini file needs to be activated

正解:A、D


質問 # 30
To which services package does SAP Security Optimization Services (SOS) belong?

  • A. Performance Optimization
  • B. System Administration Optimization
  • C. Application Integration Optimization
  • D. EarlyWatch Reporting

正解:B

解説:
Explanation
This is one of the services packages that SAP Security Optimization Services (SOS) belongs to. SOS is a service that enables you to assess and improve the security level of your SAP systems and landscapes based on best practices and recommendations from SAP experts. SOS belongs to System Administration Optimization services package, which is a package that provides services for optimizing various aspects of system administration and operation, such as performance, availability, backup, or security. References:
https://support.sap.com/en/security/security-optimization-services.html
https://support.sap.com/en/security/security-optimization-services.html


質問 # 31
The security administrator is troubleshooting authorization errors using transaction SU53. While running transaction MM50, the user received the following error.
"You are not authorized to use transaction MM01"
The user's position in the organization makes it inappropriate for them to have direct access to transaction MM01 because it creates a Segregation of Duties conflict.
How can the security administrator resolve the issue and still provide the user with the needed access to MM50?

  • A. Set the check indicator value for object S_TCODE in the SU24 data for transaction MM01 to Do Not Check.
  • B. Set the value form instance parameter auth/no_check_in_some_cases to N.
  • C. Remove transaction MM01 as a CALLING transaction from table TCDCOUPLES.
  • D. Set the check indicator (for the transaction authorization called by the MM01 transaction) to NO, using transaction SE97 for transaction MM50.

正解:D


質問 # 32
How do you secure the special user "SAP*" in AS ABAP? Note: There are 3 correct answers to this question.

  • A. Remove all authorizations from the user
  • B. Lock and expire the user in all clients except 000
  • C. Lock and expire the user in all clients
  • D. Set profile parameter login/no_automatic_user_sapstar to 1
  • E. Set profile parameter login/no_automatic_user_sapstar to 0

正解:A、C、D

解説:
Explanation
These are some of the tasks that you would perform to secure the special user "SAP*" in AS ABAP. The user
"SAP*" is a default user that can be used to log on to any client with a predefined password if no other users exist or if all users are locked. To prevent unauthorized access using this user, you should remove all authorizations from it, lock and expire it in all clients, and set the profile parameter login/no_automatic_user_sapstar to 1, which disables the automatic logon feature for this user. References:
https://help.sap.com/doc/saphelp_nw70ehp3/7.03/en-US/c8/e8d53d35fb11d182b90000e829fbfe/content.htm?no_


質問 # 33
......

P-SECAUTH-21試験問題集合格させるのは更新されたのは2024年年最新の認証済み試験問題:https://www.passtest.jp/SAP/P-SECAUTH-21-shiken.html

ガイド(2024年最新)実際のSAP P-SECAUTH-21試験問題:https://drive.google.com/open?id=1WA6I8eWRFGnrwJHrAfP4oycufMcY1_En