最新 [2022年11月16日]P_SECAUTH_21試験正確解答Certified Technology Professional - System Security ArchitectのPDF問題 [Q47-Q71]

Share

最新 [2022年11月16日]P_SECAUTH_21試験正確解答Certified Technology Professional - System Security ArchitectのPDF問題

あなたのキャリアーを稼いで飛躍せよSAP 81問題

質問 47
You want to use Configuration Validation functionality in SAP Solution Manager to check the consistency of settings across your SAP environment. What serves as the reference basis for Configuration Validation? Note: There are 2 correct answers to this question.

  • A. A virtual set of manually maintained configuration ems
  • B. A result list of configuration items from SAP Early Watch Alert (EWA)
  • C. A target system in your system landscape
  • D. A list of recommended settings attached to a specific SAP Note

正解: A,C

 

質問 48
Which Object ID is used to integrate Business Rule Framework (BRF+) to Multi Step Multi Process (MSMP) initiator workflow?

  • A. Expression ID
  • B. Function ID
  • C. Application ID
  • D. Process ID

正解: B

 

質問 49
Which authorization object controls access to the trusting system between the managed system and SAP Solution Manager?

  • A. S_RFCACL
  • B. S_ ICM
  • C. S_SERVICE
  • D. S_RFC

正解: A

 

質問 50
How is the role concept applied in the authorizations for Core Data Services (CDS) views?

  • A. CDS roles are mapped to the CDS view in the access rules
  • B. CDS roles are defined in the CDS view and implicitly applied to all users
  • C. CDS roles are defined in the CDS view and assigned to users in the classic role editor
  • D. CDS roles are defined in the WHERE clause when calling a CDS view in Open SOL

正解: C

 

質問 51
You are running a 3-tier SAP system landscape. Each time you are accessing STMS_IMPORT on any of these systems, you are prompted for a TMSADM password. How can you stop this prompt from appearing?

  • A. Change the TMSA DM user's password directly in the TMS RFC destination in transact on SM59.
  • B. Run the report RSUSR405 on the domain controller.
  • C. Run the report TMS_ UPDATE_PWD_OF_TMSADM on the domain controller.
  • D. Reset the TMSADM user's password on the system you are trying to access STMS_ IMPORT.

正解: C

 

質問 52
Your company is running SAP S/4HANA on premise, with the requirement to run the SAP Fiori Launchpad in the SAP Cloud Platform. What would be the recommended scenario for user authentication for internet browser access to the SAP Fiori Launchpad?

  • A. Principal Propagation
  • B. SAML2 and OData Provisioning
  • C. SAP Logon Tickets
  • D. X.509 Client Certificates

正解: D

 

質問 53
You are consolidating user measurement results and transferring them to SAP. What act on do you take?

  • A. Run transact on USMM
  • B. Run report RSUSR200
  • C. Run report RSLAW_PLUGIN
  • D. Run report RFAUDI06_BCE

正解: A

 

質問 54
User1 grants role 1 to user2. Who can revoke role 1 role from user2?

  • A. Only User1
  • B. Any user with the 'ROLE ADMIN' database role
  • C. The owner of role 1
  • D. The system OBA user

正解: B

 

質問 55
A security consultant has activated a trace via ST01 and is analyzing the authorization error with Return Code 12. What does the Return Code 12 signify?

  • A. "No authorizations but does have authorization object in their buffer"
  • B. "Too many parameters for authorization checks"
  • C. "No authorizations and does NOT have authorization object in their buffer"
  • D. "Objects not contained in User Buffer"

正解: C

 

質問 56
A user has the authorization to execute SP01. What can this user access with authorization object S_ SPO_ ACT when the 'Value for Authorization Check' field is set to "_USER.

  • A. All spool requests for all users in the client
  • B. All spool requests for a specific user in the client
  • C. User's own spool requests
  • D. All spool requests for users in the same user group

正解: A

 

質問 57
What authorization object is checked when a user selects an A BAP Web Dynpro application to execute?

  • A. S_PROGRAM
  • B. S_START
  • C. S_SERVICE
  • D. S_TCODE

正解: B

 

質問 58
You want to check the custom ABAP codes in your system for security vulnerabilities and you want to use the Code Vulnerability Analyzer (CVA) for carrying out these extended security checks. What needs to be done for this purpose? Note: There are 2 correct answers to this question.

  • A. Run CVA from the ABAP Trace
  • B. Execute transaction ST12 to start the analysis
  • C. Run CVA from the ABAP Test Cockpit
  • D. Execute program RSLIN_SEC_LICENSE_SETUP

正解: A,C

 

質問 59
What does the SAP Security Optimization Service provide? Note: There are 2 correct answers to this question.

  • A. Analysis of security vulnerabilities within an enterprise's SAP landscape to ensure optimal protection against intrusions
  • B. Analysis of your operating system, database, and entire SAP system to ensure optimal performance and reliability
  • C. Results with recommendations on how to resolve identified vulnerabilities without prioritization
  • D. Configuration check of the SAP systems and the SAP middleware components against defined configurations

正解: A,D

 

質問 60
For which purpose do you use instance Secure Storage File System (SSFS) in an SAP HANA system? Note: There are 2 correct answers to this question.

  • A. To store root keys for data volume encryption
  • B. To store the secure single sign-on configuration
  • C. To protect the password of the root key backup
  • D. To protect the X.509 public key infrastructure certificates

正解: A,C

 

質問 61
Your customer runs a 3-tier environment You are asked to set up controls around monitoring the sensitive objects (such as programs, user-exits, function modules) in a development system before they are transported to the quality assurance system.
Which table would you maintain to monitor such sensitive objects before executing an import?

  • A. TMSBUFFER
  • B. TMSMCONF
  • C. TMSTCRI
  • D. TMSCDES

正解: C

 

質問 62
In your system, you have a program which calls transaction A. Users with access to this program can still execute transaction A without explicit authorizations given to this transaction.
How do you prevent the access of users to the transaction A from within the program?

  • A. Ensure that transact on A is NOT assigned into the same program authorization group
  • B. Maintain SE93 with authorization objects for transact on A.
  • C. Maintain the check indicator in table TCDCOUPLES
  • D. Make sure you do NOT assign transact on A to the authorization object S_TCODE in the role that you assign to the unauthorized users.

正解: B

 

質問 63
Currently, transports into your SAP system are not scanned automatically. To avoid the import of non-secure programs, you have implemented the strategy to set up a virus scanner using a script to automatically scan for the malicious programs. What is the valid fi e format where data files are first converted into and then checked by a virus scanner?

  • A. 0csv
  • B. XML
  • C. Plain text
  • D. SAP compressed

正解: B

 

質問 64
What are the characteristics of assertion tickets? Note: There are 2 correct answers to this question.

  • A. They are transmitted as cookies
  • B. They are used for user-to-system trusted login
  • C. They have an unconfigurable validity of 2 minutes
  • D. They are used for system-to-system communication

正解: C,D

 

質問 65
Based on your company guidelines you have set the password expiration to 60 days. Unfortunately, there is an RFC user on your SAP system which must not have a password change for 180 days. Which option would you recommend to accomplish such a request?

  • A. Create a security policy via SECPOL and assign it to tile RFC users
  • B. Create enhancement spot I user-exit
  • C. Create additional authorizations for RFC users and assign it to them
  • D. Change profile parameter login/password_expiration_time to 180

正解: A

 

質問 66
The SAP HANA database has its parameters configured with its default values. How can the SAP_INTERNAL_HA NA_SUPPORT catalog role be used?

  • A. The role can be granted to another role (nested)
  • B. The role can be granted only with system privileges
  • C. The role can be granted to the SYSTEM user
  • D. The role can be granted to multiple users at a time

正解: C

 

質問 67
How can you protect a table containing sensitive data using the authorization object S_TABU_DIS?

  • A. The tables containing sensitive data must be associated with table groups in table TBRG.
  • B. Authorization table groups containing tables with sensitive data must be defined in table TDDAT and these must be omitted for all employees who do not need access to these tables
  • C. The field DICBERCLS of the authorization object must enumerate all table names of the tables containing sensitive data.
  • D. The tables containing sensitive data must be named using the authorization object S_TA BU_NAM for all responsible administrator employees. The fields DICBERCLS of the object S_TABU_DIS can

正解: B

解説:
then be filled with *.

 

質問 68
Why should you create multiple dispatchers in SAP Identity Management? Note: There are 2 correct answers to this question.

  • A. To accommodate scalability
  • B. To handle password provisioning
  • C. To support fail-over scenarios
  • D. To handle special network access requirements

正解: A,D

 

質問 69
The SSO authentication using X.509 client certificates is configured. Users complain that they can't log in to the back-end system. The trace file shows the following error message: "HTTP request [2/5/9] Reject untrusted forwarded certificate". What is missing in the configuration? Note: There are 2 correct answers to this question.

  • A. On the web-dispatcher, the SAPSSLS.pse must be signed by a trusted certification authority
  • B. On the web-dispatcher, the profile parameter icm/HTTPS/verify_client must be set to 0
  • C. On the back-end, the profile parameter icm/HTTPS/verify client must NOT be set to 0
  • D. The web dispatcher's SAPSSLC.PSE certificate must be added to the trusted reverse proxies list in icm/trusted_reverse_proxy_<xx>

正解: A,C

 

質問 70
Which of the objects do you assign to an SAP Fiori tile to make it visible in the SAP Fiori Launchpad? Note: There are 2 correct answers to this question.

  • A. User
  • B. Group
  • C. Catalog
  • D. Role

正解: B,C

 

質問 71
......


SAP P_SECAUTH_21 認定試験の出題範囲:

トピック出題範囲
トピック 1
  • Describe and implement security in a SAP NetWeaver Application Server and related infrastructure components
  • Authorization Concept for SAP S
  • 4HANA
トピック 2
  • Authorization Concept for SAP Business Suite
  • Security Monitoring and Security Auditing
トピック 3
  • Describe and implement the authorization concept for SAP Business Suite
  • SAP Netweaver Application Server and Infrastructure Security
トピック 4
  • User Administration and Identity Lifecycle Management in SAP
  • Explain authorization, security and scenarios in SAP HANA

 

正真正銘のベスト資料はP_SECAUTH_21オンライン練習試験:https://www.passtest.jp/SAP/P_SECAUTH_21-shiken.html

練習できるP_SECAUTH_21にはPassTest画期的なあなたをCertified Technology Professional - System Security Architect試験合格させます合格率:https://drive.google.com/open?id=1cg3QFJLPhDSE1BtES3NNXNmNdAV-McJU