[Oct-2023] Study resources for the Valid P-SECAUTH-21 Braindumps! [Q37-Q54]

Share

[Oct-2023] Study resources for the Valid P-SECAUTH-21 Braindumps!

Updated P-SECAUTH-21 Tests Engine pdf - All Free Dumps Guaranteed!

NEW QUESTION # 37
What does the SAP Security Optimization Service provide? Note: There are 2 correct answers to this question.

  • A. Analysis of your operating system, database, and entire SAP system to ensure optimal performance and reliability
  • B. Configuration check of the SAP systems and the SAP middleware components against defined configurations
  • C. Results with recommendations on how to resolve identified vulnerabilities without prioritization
  • D. Analysis of security vulnerabilities within an enterprise's SAP landscape to ensure optimal protection against intrusions

Answer: B,D


NEW QUESTION # 38
You have implemented CUA in your organization and you want to set the field distribution attribute as follows: Maintain a default value in the central system that is automatically distributed to the child systems when you create a user. After distribution, the data is maintained only locally and is no longer distributed if you change it in the central or child system. Which field distribution parameter do you maintain?

  • A. Redistribution
  • B. Local
  • C. Global
  • D. Proposal

Answer: D


NEW QUESTION # 39
The security administrator is troubleshooting authorization errors using transaction SU53.
While running transaction MM50, the user received the following error: "You are not authorized to use transaction MM01 ." The user's position in the organization makes it inappropriate for them to have direct access to transaction MM01 because it creates a Segregation of Duties conflict. How can the security administrator resolve the issue and still provide the user with the needed access to MM50?

  • A. Set the check indicator (for the transaction authorization called by the MM01 transaction) to NO, using transaction SE97 for transaction MM50.
  • B. Remove transaction MM01 as a CALLING transaction from table TCDCOUPLES.
  • C. Set the check indicator value for object S_TCODE in the SU24 data for transaction MM01 to Do Not Check.
  • D. Set the value for instance parameter auth/no_check_in_some_cases to N.

Answer: A

Explanation:
Explanation
This is one of the ways that the security administrator can resolve the issue and still provide the user with the needed access to MM50. Transaction SE97 is a tool that allows you to maintain check indicators for called transactions, which determine whether an authority check for object S_TCODE is performed when a transaction calls another transaction. By setting the check indicator to NO for MM01 when it is called by MM50, the user can run MM50 without being authorized for MM01. References:
https://help.sap.com/doc/saphelp_nw70ehp3/7.03/en-US/c8/e8d53d35fb11d182b90000e829fbfe/content.htm?no_


NEW QUESTION # 40
You are evaluating the "Cross-client object change" option using transact on SCC4 for your Unit Test Client in the development environment. Which setting do you recommend?

  • A. No changes to cross-client customizing objects
  • B. Changes to repository and cross-client customizing allowed
  • C. No changes to repository and cross-client customizing objects
  • D. No changes to repository objects

Answer: C


NEW QUESTION # 41
Based on your company guidelines you have set the password expiration to 60 days.
Unfortunately, there is an RFC user on your SAP system who must not have a password change for 1 80 days. Which option would you recommend to accomplish such a request?

  • A. Create a security policy via SECPOL and assign it to the RFC users
  • B. Create an enhancement spot or user exit
  • C. Define the RFC user as a reference user
  • D. Change the profile parameter login/password_expiration_time to 1 80

Answer: A

Explanation:
Explanation
This is one of the options that you would recommend to accomplish such a request of having an RFC user with a password expiration of 180 days instead of 60 days based on your company guidelines. SECPOL is a transaction that allows you to create and maintain security policies for password settings, such as minimum length, expiration time, or lockout threshold. You can assign different security policies to different users or user groups based on their roles or requirements. References:
https://help.sap.com/doc/saphelp_nw73ehp1/7.31.19/en-US/c8/e8d53d35fb11d182b90000e829fbfe/content.htm?


NEW QUESTION # 42
You are reviewing the authorizations for Core Data Services (CDS) views. How are classic authorizations integrated with CDS authorizations?

  • A. By defining access conditions in an access rule for the CDS view
  • B. By assigning the CDS view to the authorization profile in PFCG
  • C. By defining the CDS view in the authorization object in SU21
  • D. By using the statement AUTHORITY-CHECK in the access control of the CDS view

Answer: A


NEW QUESTION # 43
Which features does SAProuter provide? Note: There are 2 correct answers to this question.

  • A. Password-protected connections
  • B. Filtered and logged network connections
  • C. Load-balanced RFC connections
  • D. HTTP conversion into HTTPS connections

Answer: A,B

Explanation:
Explanation
SAProuter is a software application that acts as an intermediate station between SAP systems and external networks. It provides features such as filtered and logged network connections based on access control lists, password-protected connections using Secure Network Communication (SNC), and encrypted connections using Secure Socket Layer (SSL). References:
https://help.sap.com/doc/saphelp_nw70ehp3/7.03/en-US/c8/e8d53d35fb11d182b90000e829fbfe/content.htm?no_
https://help.sap.com/doc/saphelp_nw70ehp3/7.03/en-US/c8/e8d53d35fb11d182b90000e829fbfe/content.htm?no_


NEW QUESTION # 44
In addition to the authorization /UI2/LAUNCHPAD, which other authorizations are required to assign to an SAP Fiori Launchpad user? Note: There are 2 correct answers to this question.

  • A. /UI2JPAGE_BUILDER_CUST
  • B. /U12/INTEROP
  • C. /U12JPAGE_BUILDER_PERS
  • D. /UI2/FLC

Answer: B,C


NEW QUESTION # 45
You have delimited a single role that is part of a composite role, and a user comparison for the composite role has been performed. You notice that the comparation did NOT.... profile assignments for that single role. What program would you run to resolve this situation?

  • A. PRGN_MERGE_PREVIEW
  • B. PRGN_DELETE_ACTIVITY_GROUPS
  • C. PRGN_COMPARE_ROLE_MENU
  • D. PRGN_COMPRESS_TIMES

Answer: D


NEW QUESTION # 46
You want to create an SAP Fiori app for multiple users and multiple back-end systems. To support this, you create different roles for the different back-end systems in the SAP Fiori front-end system (central hub). What transaction do you have to use to map a back-end system to one of those roles?

  • A. /UI2/GW_SYS_ALIAS
  • B. SEGW
  • C. /IWFND/MAINT_SERVICE
  • D. PFCG

Answer: A

Explanation:
Explanation
This is one of the transactions that you have to use to map a back-end system to one of those roles for creating an SAP Fiori app for multiple users and multiple back-end systems in an SAP Fiori front-end system (central hub). /UI2/GW_SYS_ALIAS is a transaction that allows you to create and maintain gateway system aliases for OData services in an SAP Fiori front-end system (central hub), which is a system that handles OData requests and responses between the user's browser and the back-end systems. A gateway system alias is a name that represents a connection to a specific back-end system or service. You can assign different gateway system aliases to different roles in the SAP Fiori front-end system to map them to different back-end systems or services. References:
https://help.sap.com/viewer/a7b390faab1140c087b8926571e942b7/7.5.9/en-US/5c3d6d0f6c461014a1d99bc8a4f


NEW QUESTION # 47
You want to use Configuration Validation functionality in SAP Solution Manager to check the consistency of settings across your SAP environment. What serves as the reference basis for Configuration Validation? Note: There are 2 correct answers to this question.

  • A. A virtual set of manually maintained configuration itsems
  • B. A result list of configuration items from SAP Early Watch Alert (EWA)
  • C. A list of recommended settings attached to a specific SAP Note
  • D. A target system in your system landscape

Answer: A,D


NEW QUESTION # 48
Which tasks would you perform to allow increased security for the SAP Web Dispatcher Web Administration interface? Note: There are 2 correct answers to this question.

  • A. Use subparameter ALLOWPUB = FALSE of the profile parameter icm/server_port_<xx>
  • B. Use a separate port for the content
  • C. Use access restrictions with the icm/HTTP/auth_<xx> profile parameter
  • D. Use Secure Socket Layer (SSL) for password encrypt on

Answer: A,B


NEW QUESTION # 49
Where can we store the Security Audit Log events? Note: There are 2 correct answers to this question.

  • A. In the SAP Solution Manager system
  • B. In a central fi e system
  • C. In the database table RSAU_BUF_DATA
  • D. In the file system of the application servers

Answer: A,D


NEW QUESTION # 50
The security administrator is troubleshooting authorization errors using transaction SU53.
While running transaction MM50, the user received the following error: "You are not authorized to use transaction MM01 ." The users position in the organization makes it inappropriate for them to have direct access to transaction MM01 because it creates a Segregation of Duties conflict. What would cause the system to run an authority check using object S_TCODE for transaction MM01 while running transaction MM50?

  • A. The instance parameter auth/no_check_in_some_cases has been set to Y.
  • B. The developer who wrote the program for transaction MM50 issues the ABAP command CALL TRANSACTION for transaction MM01 .
  • C. MM01 was maintained as the CALLING transaction in table TCDCOUPLES with field OKFLAG value X.
  • D. The proposal value for the object S_TCODE in the SU24 data for transaction MM50 was incorrectly set to YES.

Answer: B

Explanation:
Explanation
This would cause the system to run an authority check using object S_TCODE for transaction MM01 while running transaction MM50. The CALL TRANSACTION command is used to start another transaction from within a program. If the user does not have the authorization to execute the called transaction, an error message is displayed and the authority check fails. References:
https://help.sap.com/doc/abapdocu_751_index_htm/7.51/en-US/abenlogon_check_guidl.htm


NEW QUESTION # 51
What are the characteristics of the Audit Information System (AIS)? Note: There are 2 correct answers to this question.

  • A. The roles are built from nodes in the Implementation Guide (IMG).
  • B. It can be launched directly using transaction SECR.
  • C. The report selection variables are configured during setup.
  • D. It offers two types of audit reports: system and business.

Answer: A,D

Explanation:
Explanation
The Audit Information System (AIS) is a tool that supports internal and external audits by providing access to relevant data and reports from various SAP systems and modules. It offers two types of audit reports: system reports that focus on technical aspects, such as security, performance, and configuration; and business reports that focus on functional aspects, such as financial accounting, controlling, and materials management. The roles for accessing AIS are built from nodes in the Implementation Guide (IMG), where you can also customize the report selection variables and parameters. References:
https://help.sap.com/doc/saphelp_nw70ehp3/7.03/en-US/c8/e8d53d35fb11d182b90000e829fbfe/content.htm?no_
https://help.sap.com/doc/saphelp_nw70ehp3/7.03/en-US/c8/e8d53d35fb11d182b90000e829fbfe/content.htm?no_


NEW QUESTION # 52
Which features does the SAP Router support? Note: There are 2 correct answers to this question.

  • A. Balancing the load to ensure an even distribution across the back-end servers
  • B. Password-protecting connections from unauthorized access from outside the network
  • C. Controlling and logging network connections to SAP systems
  • D. Terminating, forwarding and (re)encrypting requests, depending on the SSL configuration

Answer: B,C


NEW QUESTION # 53
You want to configure SNC with X.509 certificates using Common CryptoLib as the cryptographic library in a new installed AS ABAP system. Besides running SNCWIZARD, what do you need to set up for this scenario? Note: There are 2 correct answers to this question.

  • A. Maintain the relevant CCL/SNC/' profile parameters
  • B. Set the environment variable CCL_ PROFILE to SECUDIR
  • C. Set the environment variable CCL_ PROFILE to the default profile file path
  • D. Set the CCL SNC parameters using sapgenpse

Answer: A,C


NEW QUESTION # 54
......

P-SECAUTH-21 Dumps Updated Practice Test and 80 unique questions: https://www.actualtestsit.com/SAP/P-SECAUTH-21-exam-prep-dumps.html

Latest SAP Certified Technology Professional P-SECAUTH-21 Actual Free Exam Questions: https://drive.google.com/open?id=1BtjLbL4bEBJfbXlzoCYEkFQlxUAV-wvA