
Exam Passing Guarantee Nov 07, 2022 P-SECAUTH-21 Exam with Accurate Quastions!
Test Engine to Practice Test for P-SECAUTH-21 Valid and Updated Dumps
NEW QUESTION 26
How does the SAP SSO wizard (transaction SNCWIZARD) simplify the SNC configuration process?
- A. It exports an SNC SAPCRYPTOLIB certificate and imports it into the partner system
- B. It sets the profile parameters for SAP SNC and SPNego in the default profile
- C. It installs the CA certificate response
- D. It creates the SNC_LIB environment variable
Answer: B
NEW QUESTION 27
For which purpose do you use instance Secure Storage File System (SSFS) in an SAP HANA system? Note: There are 2 correct answers to this question.
- A. To protect the X.509 public key infrastructure certificates
- B. To protect the password of the root key backup
- C. To store root keys for data volume encryption
- D. To store the secure single sign-on configuration
Answer: B,C
NEW QUESTION 28
A security consultant has activated a trace via ST01 and is analyzing the authorization error with Return Code 12. What does the Return Code 12 signify?
- A. "No authorizations but does have authorization object in their buffer"
- B. "No authorizations and does NOT have authorization object in their buffer"
- C. "Objects not contained in User Buffer"
- D. "Too many parameters for authorization checks"
Answer: B
NEW QUESTION 29
Where can we store the Security Audit Log events? Note: There are 2 correct answers to this question.
- A. In the SAP Solution Manager system
- B. In the database table RSAU_BUF_DATA
- C. In the file system of the application servers
- D. In a central fi e system
Answer: A,C
NEW QUESTION 30
A system user created a User1 and a schema on the HANA database with some dat a. User2 is developing modelling views and requires access to objects in User1's schema. What needs to be done?
- A. System user should grant User2 with SELECT privilege to User 1schema
- B. User2 needs to be granted with the same roles like User1
- C. User1 should grant _SYS_REPO with SELECT WITH GRANT privilege
- D. ROLE ADMIN needs to be granted to User2
Answer: A
NEW QUESTION 31
Which authorizations should you restrict when you create a developer role in an AS ABAP production system? Note: There are 2 correct answers to this question.
- A. The ability to execute queries through authorization object S_OUERY
- B. The ability to execute class methods through authorization object S_PROGRAM
- C. The ability to use the ABAP Debugger through authorization object S_DEVELOP
- D. The ability to execute function modules through authorization object S_DEVELOP
Answer: C,D
NEW QUESTION 32
What benefits does the SAP Cloud Connector have compared to a 3rd partyreverse proxy solution, when connecting your SAP Cloud Platform with your SAP backend systems? Note: There are 2 correct answers to this question.
- A. It supports multiple application protocols, such as HTTP and RFC
- B. It establishes an SSL VPN tunnel to SAP Cloud Platform
- C. It allows for remote invocation by the SAP Cloud Platform only
- D. It can cache SAP proprietary OData packets to improve the response times
Answer: A,B
NEW QUESTION 33
You have implemented CUA in your organization and you want to set the field distribution attribute as follows: Maintain a default value in the central system that is automatically distributed to the child systems when you create a user. After distribution, the data is maintained only locally and is no longer distributed if you change it in the central or child system. Which field distribution parameter do you maintain?
- A. Proposal
- B. Global
- C. Local
- D. Redistribution
Answer: A
NEW QUESTION 34
Based on your company guidelines you have set the password expiration to 60 days. Unfortunately, there is an RFC user on your SAP system which must not have a password change for 180 days. Which option would you recommend to accomplish such a request?
- A. Create a security policy via SECPOL and assign it to tile RFC users
- B. Change profile parameter login/password_expiration_time to 180
- C. Create enhancement spot I user-exit
- D. Create additional authorizations for RFC users and assign it to them
Answer: A
NEW QUESTION 35
You want to launch classic SAP GUI transactions directly from the SAP Fiori Launchpad. Which of the following scenarios do you choose?
- A. Chrome, SAP Enterprise Portal, SAP GUI for Java
- B. Internet Explorer, SAP Business Client, SAP GUI for Windows
- C. Chrome, SAP Cloud Platform, SAP GUI for Java
- D. Internet Explorer, ABAP front-end server, SAP GUI for Windows
Answer: D
NEW QUESTION 36
Your company is running SAP S/4HANA on premise, with the requirement to run the SAP Fiori Launchpad in the SAP Cloud Platform. What would be the recommended scenario for user authentication for internet browser access to the SAP Fiori Launchpad?
- A. X.509 Client Certificates
- B. SAP Logon Tickets
- C. SAML2 and OData Provisioning
- D. Principal Propagation
Answer: A
NEW QUESTION 37
The SSO authentication using X.509 client certificates is configured. Users complain that they can't log in to the back-end system. The trace file shows the following error message: "HTTP request [2/5/9] Reject untrusted forwarded certificate". What is missing in the configuration? Note: There are 2 correct answers to this question.
- A. On the web-dispatcher, the profile parameter icm/HTTPS/verify_client must be set to 0
- B. The web dispatcher's SAPSSLC.PSE certificate must be added to the trusted reverse proxies list in icm/trusted_reverse_proxy_<xx>
- C. On the back-end, the profile parameter icm/HTTPS/verify client must NOT be set to 0
- D. On the web-dispatcher, the SAPSSLS.pse must be signed by a trusted certification authority
Answer: C,D
NEW QUESTION 38
Why do you use table logging in AS ABAP?
- A. To log changes in customizing tables
- B. To log changes in table technical settings
- C. To log changes in application data
- D. To log changes in master data
Answer: A
NEW QUESTION 39
How is the role concept applied in the authorizations for Core Data Services (CDS) views?
- A. CDS roles are defined in the CDS view and implicitly applied to all users
- B. CDS roles are defined in the WHERE clause when calling a CDS view in Open SOL
- C. CDS roles are defined in the CDS view and assigned to users in the classic role editor
- D. CDS roles are mapped to the CDS view in the access rules
Answer: C
NEW QUESTION 40
You want to configure SNC with X.509 certificates using Common CryptoLib as the cryptographic library in a new installed AS ABAP system. Besides running SNCWIZARD, what do you need to set up for this scenario? Note: There are 2 correct answers to this question.
- A. Maintain the relevant CCL/SNC/' profile parameters
- B. Set the CCL SNC parameters using sapgenpse
- C. Set the environment variable CCL_ PROFILE to the default profile file path
- D. Set the environment variable CCL_ PROFILE to SECUDIR
Answer: A,C
NEW QUESTION 41
What are the key capabilities of Event Analyzer in Enterprise Threat Detection 1.0? Note: There are 2 correct answers to this question.
- A. Synchronization of user contexts from ABAP Systems
- B. Baseline detection
- C. Pseudonymize user identities for data protection
- D. Predictive threat notification
Answer: B,C
NEW QUESTION 42
The SAP HANA database is installed with multi database container (MDC) mode with multiple tenant databases configured. What are the required activities to enable access between tenants? Note: There are 2 correct answers to this question.
- A. Create user mapping between local and remote tenant databases
- B. Configure smart data access (SDA) between the relevant HANA tenants
- C. Set whitelist of cross-tenant database communication channel
- D. Decrease the level of isolation mode on all MDC tenants
Answer: A,C
NEW QUESTION 43
A user has the authorization to execute SP01. What can this user access with authorization object S_ SPO_ ACT when the 'Value for Authorization Check' field is set to "_USER.
- A. All spool requests for all users in the client
- B. User's own spool requests
- C. All spool requests for a specific user in the client
- D. All spool requests for users in the same user group
Answer: A
NEW QUESTION 44
You are running a 3-tier SAP system landscape. Each time you are accessing STMS_IMPORT on any of these systems, you are prompted for a TMSADM password. How can you stop this prompt from appearing?
- A. Run the report RSUSR405 on the domain controller.
- B. Reset the TMSADM user's password on the system you are trying to access STMS_ IMPORT.
- C. Change the TMSA DM user's password directly in the TMS RFC destination in transact on SM59.
- D. Run the report TMS_ UPDATE_PWD_OF_TMSADM on the domain controller.
Answer: D
NEW QUESTION 45
What reference is used to connect multiple Cloud Connectors to one SAP Cloud Platform subaccount?
- A. System Alias
- B. Instance ID
- C. Location ID
- D. Virtual Host
Answer: C
NEW QUESTION 46
What are characteristics only valid for the MDC high isolation mode?
- A. Every tenant has its own set of database users belonging to the same sapsys group
- B. All internal database communication is secured using SNC
- C. Every tenant has its own set of OS users
- D. Every tenant has its own set of database users
Answer: C
NEW QUESTION 47
How do you handle user "SAP 'in AS ABAP? Note: There are 3 correct answers to this question.
- A. Set profile parameter login/no_automatic_user_sapstar to 1
- B. Set profile parameter login/no_automatic_user_sapstar to 0
- C. Lock and expire the user in all clients except 000
- D. Lock and expire the user in all clients
- E. Remove all authorizations from the user
Answer: A,D,E
NEW QUESTION 48
How do you check when and by whom profiles were assigned or deleted?
- A. Check security audit log using transact on SM20
- B. Run report RSUSR100 with appropriate filters
- C. Run report RSUSR008_009_NEW with appropriate filters
- D. Check system trace using transaction ST01
Answer: B
NEW QUESTION 49
How would you control access to the ABAP RFC function modules? Note: There are 2 correct answers to this question.
- A. O Deactivate switchable authorization checks
- B. O Block RFC Callback Whitelists
- C. O Restrict RFC authorizations
- D. O Implement UCON functionality
Answer: A,C
NEW QUESTION 50
......
Exam Questions for P-SECAUTH-21 Updated Versions With Test Engine: https://www.prep4king.com/P-SECAUTH-21-exam-prep-material.html
Pass P-SECAUTH-21 Exam with Updated P-SECAUTH-21 Exam Dumps PDF: https://drive.google.com/open?id=13-yFkYERzdLUIE-p67rnsy20RmCGnWKs

