
[Sep 22, 2022] P_SECAUTH_21 PDF Dumps is essential on your P_SECAUTH_21 Exam Questions Certain Success!
P_SECAUTH_21 PDF Questions - Perfect Prospect To Go With P_SECAUTH_21 Practice Exam
SAP P_SECAUTH_21 Exam Syllabus Topics:
| Topic | Details |
|---|---|
| Topic 1 |
|
| Topic 2 |
|
| Topic 3 |
|
| Topic 4 |
|
NEW QUESTION 45
What is required when you configure the PFCG role for an end-user on the front-end server? Note: There are 2 correct answers to this question.
- A. The Fiori Launchpad designer assignment
- B. The S_RFC authorization object for the OData access
- C. The group assignment to display it in the Fiori Launchpad
- D. The catalog assignment for the start authorization
Answer: C,D
NEW QUESTION 46
How can you protect a table containing sensitive data using the authorization object S_TABU_DIS?
- A. Authorization table groups containing tables with sensitive data must be defined in table TDDAT and these must be omitted for all employees who do not need access to these tables
- B. The field DICBERCLS of the authorization object must enumerate all table names of the tables containing sensitive data.
- C. The tables containing sensitive data must be named using the authorization object S_TA BU_NAM for all responsible administrator employees. The fields DICBERCLS of the object S_TABU_DIS can
- D. The tables containing sensitive data must be associated with table groups in table TBRG.
Answer: A
Explanation:
then be filled with *.
NEW QUESTION 47
You verified the password of the TMSADM user in your SAP landscape to be SAP defaulted. You want to reset this password by using program TMS_UPDATE_PWD_OF_TMSADM. What steps would you take to reset this password?
Note: There are 2 correct answers to this question
- A. Assign "SAP_ALL" to TMSADM in all systems/clients including 000
- B. Deactivate the SNC opt on
- C. Lock TMSADM in all the system/clients including 000
- D. Run this program in the Domain Controller (client 000)
Answer: C,D
NEW QUESTION 48
Which communication methods does the SAP Fiori Launchpad use to retrieve business data? Note: There are 3 correct answers to this question.
- A. Secure Network Communication (SNC)
- B. Data
- C. Trusted RFC
- D. Info Access (InA)
- E. HTIP(S)
Answer: A,C,D
NEW QUESTION 49
You are using the SAP Web Dispatcher for load-balancing purposes. Which actions are performed by the SAP Web Dispatcher in this scenario? Note: There are 2 correct answers to this question.
- A. Uses SAP logon groups to determine which requests are directed to which server
- B. Decrypts the HTTPS request and then selects the server
- C. Authenticates the user's credentials
- D. Checks current state of the message server
Answer: A,D
NEW QUESTION 50
What is the SAP Best Practice to delete a security SAP role in SAP landscape?
- A. Delete the SAP role in all clients using Profile Generator
- B. Delete the SAP role in all clients in all systems using Profile Generator
- C. Transport the SAP role and delete the role using Profile Generator
- D. Delete the SAP role using Profile Generator, and then put it in the transport
Answer: C
NEW QUESTION 51
Which features does the SAP Router support? Note: There are 2 correct answers to this question.
- A. Balancing the load to ensure an even distribution across the back-end servers
- B. Password-protecting connections from unauthorized access from outside the network
- C. Controlling and logging network connections to SAP systems
- D. Terminating, forwarding and (re)encrypting requests, depending on the SSL configuration
Answer: B,C
NEW QUESTION 52
The SAP HANA database is installed with multi database container (MDC) mode with multiple tenant databases configured. What are the required activities to enable access between tenants? Note: There are 2 correct answers to this question.
- A. Configure smart data access (SDA) between the relevant HANA tenants
- B. Decrease the level of isolation mode on all MDC tenants
- C. Set whitelist of cross-tenant database communication channel
- D. Create user mapping between local and remote tenant databases
Answer: C,D
NEW QUESTION 53
Your customer runs a 3-tier environment You are asked to set up controls around monitoring the sensitive objects (such as programs, user-exits, function modules) in a development system before they are transported to the quality assurance system.
Which table would you maintain to monitor such sensitive objects before executing an import?
- A. TMSMCONF
- B. TMSBUFFER
- C. TMSTCRI
- D. TMSCDES
Answer: C
NEW QUESTION 54
Insufficient authorization checks might allow A BAP programs to access the PSE files. Which authorization objects should we check to protect the PSEs? Note: There are 2 correct answers to this question.
- A. S_DEVELOP
- B. S_DATASET
- C. S_ADMI_FCD
- D. S_RZL_ADM
Answer: B,D
NEW QUESTION 55
You want to create an SAP Fiori app for multiple users and multiple back-end systems. To support this, you create different roles for the different back-end systems in the SAP Fiori front-end system (central hub). What transaction do you have to use to map a back-end system to one of those roles?
- A. PFCG
- B. /IWFND/MAINT_SERVICE
- C. /UI2/GW_SYS_ALIAS
- D. SM59
Answer: A
NEW QUESTION 56
You want to use Configuration Validation functionality in SAP Solution Manager to check the consistency of settings across your SAP environment. What serves as the reference basis for Configuration Validation? Note: There are 2 correct answers to this question.
- A. A result list of configuration items from SAP Early Watch Alert (EWA)
- B. A target system in your system landscape
- C. A virtual set of manually maintained configuration ems
- D. A list of recommended settings attached to a specific SAP Note
Answer: B,C
NEW QUESTION 57
What are main characteristics of the Logon ticket throughout an SSO logon procedure? Note: There are 2 correct answers to this question.
- A. The Logon ticket is domain restricted
- B. The Logon ticket session is held in the working memory
- C. The Logon ticket is used for user-to-system communication
- D. The Logon ticket has an unconfigurable lifetime validity
Answer: A,C
NEW QUESTION 58
Which data source needs to be integrated into SAP Identity Management via the Virtual Directory Server (VOS)?
- A. AS ABAP
- B. LDAP
- C. SAP HCM
- D. AS Java
Answer: B
NEW QUESTION 59
You are setting up your SAP NetWeaver AS in a SSL client scenario. What are the reasons to choose an "anonymous SSL Client PSE" setup?
Note: There are 2 correct answers to this question.
- A. To support mutual authentication
- B. To use as a container for the list of CAs that the server trusts
- C. To support server-side authentication and data encryption
- D. To have an individual identity when accessing a specific application
Answer: B,C
NEW QUESTION 60
Which authorization object controls access to the trusting system between the managed system and SAP Solution Manager?
- A. S_RFC
- B. S_ ICM
- C. S_SERVICE
- D. S_RFCACL
Answer: D
NEW QUESTION 61
Which basis transaction provides an optimized user interface for evaluating authorization checks only?
- A. STAUTHTRACE
- B. ST01
- C. RSECADMIN
- D. ABAP_TRACE
Answer: A
NEW QUESTION 62
You have configured a Gateway SSO authentication using X.509 client certificates. The configuration of the dual trust relationship between client (browser) and SAP Web Dispatcher as well as the configuration of the SAP Web Dispatcher to accept and forward client certificates were done. Users complain that they can't log in to the back-end system. How can you check the cause?
- A. Run gateway transaction /IWFND/ ERRORJ.OG
- B. Run gateway transaction /IWFND/TRACES
- C. Run back-end transaction SMICM and open the trace file
- D. Run back-end system trace using ST12
Answer: A
NEW QUESTION 63
You want to carry out some preparatory work for executing the SAP Security Optimization Self-service on a customer system. Which of the following steps do you have to execute on the managed systems? Note: There are 2 correct answers to this question.
- A. Grant operating system access
- B. Install the ST-A/PI plug-in
- C. Configure specific authorizations
- D. Configure Secure Network Communications
Answer: B,C
NEW QUESTION 64
How do you handle user "SAP 'in AS ABAP? Note: There are 3 correct answers to this question.
- A. Set profile parameter login/no_automatic_user_sapstar to 1
- B. Remove all authorizations from the user
- C. Lock and expire the user in all clients
- D. Lock and expire the user in all clients except 000
- E. Set profile parameter login/no_automatic_user_sapstar to 0
Answer: A,B,C
NEW QUESTION 65
In your system, you have a program which calls transaction A. Users with access to this program can still execute transaction A without explicit authorizations given to this transaction.
How do you prevent the access of users to the transaction A from within the program?
- A. Make sure you do NOT assign transact on A to the authorization object S_TCODE in the role that you assign to the unauthorized users.
- B. Maintain SE93 with authorization objects for transact on A.
- C. Ensure that transact on A is NOT assigned into the same program authorization group
- D. Maintain the check indicator in table TCDCOUPLES
Answer: B
NEW QUESTION 66
Your company is running SAP S/4HANA on premise, with the requirement to run the SAP Fiori Launchpad in the SAP Cloud Platform. What would be the recommended scenario for user authentication for internet browser access to the SAP Fiori Launchpad?
- A. Principal Propagation
- B. X.509 Client Certificates
- C. SAP Logon Tickets
- D. SAML2 and OData Provisioning
Answer: B
NEW QUESTION 67
Which of the objects do you assign to an SAP Fiori tile to make it visible in the SAP Fiori Launchpad? Note: There are 2 correct answers to this question.
- A. Catalog
- B. User
- C. Role
- D. Group
Answer: A,D
NEW QUESTION 68
......
SAP P_SECAUTH_21 Exam Description:
The "SAP Certified Technology Professional - System Security Architect" certification exam verifies that the candidate possesses the depth of knowledge required in the areas of SAP System Security and Authorization. This certificate proves that the candidate has an advanced understanding within the Technology Consultant profile and is able to apply these skills practically and provide guidance in SAP project implementations in the role of a SAP Security Architect. Furthermore, the holder of this certification is capable to review and evaluate the security level of complex on-premise, cloud and hybrid system architectures.
P_SECAUTH_21 Exam with Accurate Certified Technology Professional - System Security Architect PDF Questions: https://www.testvalid.com/P_SECAUTH_21-exam-collection.html
True SAP Exam Extraordinary Practice For the P_SECAUTH_21 Exam: https://drive.google.com/open?id=1KtLMawJB-Lbgktq_bXF6svl-Et2J5Iyw