This page was exported from Actual Test Materials [ http://blog.actualtests4sure.com ] Export date:Fri Nov 15 22:41:40 2024 / +0000 GMT ___________________________________________________ Title: [May-2022] P_SECAUTH_21 exam torrent SAP study guide [Q48-Q62] --------------------------------------------------- [May-2022] P_SECAUTH_21 exam torrent SAP study guide Use Valid New P_SECAUTH_21 Test Notes & P_SECAUTH_21 Valid Exam Guide NO.48 What are the requirements of SPNego SSO configuration in an SAP Fiori front-end system? Note: There are 2 correct answers to this question.  The system requires an identity provider as an issuing system to enable single sign-on with SPNego in an internet-facing deployment scenario.  The system’s users in the ABAP system must have the same user names as the database users in SAP HANA  The system should typically be located within the corporate network.  The system requires Microsoft Active Directory infrastructure in place. NO.49 You are consolidating user measurement results and transferring them to SAP. What act on do you take?  Run report RSUSR200  Run report RFAUDI06_BCE  Run report RSLAW_PLUGIN  Run transact on USMM NO.50 Insufficient authorization checks might allow A BAP programs to access the PSE files. Which authorization objects should we check to protect the PSEs? Note: There are 2 correct answers to this question.  S_RZL_ADM  S_DATASET  S_ADMI_FCD  S_DEVELOP NO.51 A system user created a User1 and a schema on the HANA database with some dat a. User2 is developing modelling views and requires access to objects in User1’s schema. What needs to be done?  User1 should grant _SYS_REPO with SELECT WITH GRANT privilege  User2 needs to be granted with the same roles like User1  System user should grant User2 with SELECT privilege to User 1schema  ROLE ADMIN needs to be granted to User2 NO.52 Your company is running SAP S/4HANA on premise, with the requirement to run the SAP Fiori Launchpad in the SAP Cloud Platform. What would be the recommended scenario for user authentication for internet browser access to the SAP Fiori Launchpad?  SAML2 and OData Provisioning  SAP Logon Tickets  Principal Propagation  X.509 Client Certificates NO.53 You have implemented CUA in your organization and you want to set the field distribution attribute as follows: Maintain a default value in the central system that is automatically distributed to the child systems when you create a user. After distribution, the data is maintained only locally and is no longer distributed if you change it in the central or child system. Which field distribution parameter do you maintain?  Redistribution  Local  Global  Proposal NO.54 You want to carry out some preparatory work for executing the SAP Security Optimization Self-service on a customer system. Which of the following steps do you have to execute on the managed systems? Note: There are 2 correct answers to this question.  Install the ST-A/PI plug-in  Configure Secure Network Communications  Configure specific authorizations  Grant operating system access NO.55 You verified the password of the TMSADM user in your SAP landscape to be SAP defaulted. You want to reset this password by using program TMS_UPDATE_PWD_OF_TMSADM. What steps would you take to reset this password?Note: There are 2 correct answers to this question  Run this program in the Domain Controller (client 000)  Lock TMSADM in all the system/clients including 000  Assign “SAP_ALL” to TMSADM in all systems/clients including 000  Deactivate the SNC opt on NO.56 Which authorizations should you restrict when you create a developer role in an AS ABAP production system? Note: There are 2 correct answers to this question.  The ability to execute class methods through authorization object S_PROGRAM  The ability to execute queries through authorization object S_OUERY  The ability to execute function modules through authorization object S_DEVELOP  The ability to use the ABAP Debugger through authorization object S_DEVELOP NO.57 How do you handle user “SAP ‘in AS ABAP? Note: There are 3 correct answers to this question.  Remove all authorizations from the user  Lock and expire the user in all clients  Set profile parameter login/no_automatic_user_sapstar to 0  Set profile parameter login/no_automatic_user_sapstar to 1  Lock and expire the user in all clients except 000 NO.58 How does the SAP SSO wizard (transaction SNCWIZARD) simplify the SNC configuration process?  It installs the CA certificate response  It exports an SNC SAPCRYPTOLIB certificate and imports it into the partner system  It creates the SNC_LIB environment variable  It sets the profile parameters for SAP SNC and SPNego in the default profile NO.59 You have a load balancer in a DMZ network zone (called natl.mydomain.com) in front of 2 SAP NetWeaver AS systems (hostl.mydomain.com, host2.mydomain.com). What is the recommended common name part of the distinguished name on the SSL Server’s PSE?  It should be a combined DNS alias for host 1.mydomain.com and host2.mydomain.com and nat1.mydomain.com  It should be host 1.mydomain.com, host2.mydornain.com individually for each PSE  It should be natl.mydomain.com  It should be *.mydomain.com (wildcard) names NO.60 How can you protect a table containing sensitive data using the authorization object S_TABU_DIS?  The tables containing sensitive data must be associated with table groups in table TBRG.  The field DICBERCLS of the authorization object must enumerate all table names of the tables containing sensitive data.  Authorization table groups containing tables with sensitive data must be defined in table TDDAT and these must be omitted for all employees who do not need access to these tables  The tables containing sensitive data must be named using the authorization object S_TA BU_NAM for all responsible administrator employees. The fields DICBERCLS of the object S_TABU_DIS can then be filled with *.NO.61 Which of the following events will create security alerts in the CCMS Alert Monitor of SAP Solution Manager? Note: There are 2 correct answers to this question.  Manual table changes  Changes to the instance profile  Call of RFC functions  Start of reports NO.62 Your customer runs a 3-tier environment You are asked to set up controls around monitoring the sensitive objects (such as programs, user-exits, function modules) in a development system before they are transported to the quality assurance system.Which table would you maintain to monitor such sensitive objects before executing an import?  TMSCDES  TMSBUFFER  TMSMCONF  TMSTCRI  Loading … P_SECAUTH_21 Exam questions and answers: https://www.actualtests4sure.com/P_SECAUTH_21-test-questions.html --------------------------------------------------- Images: https://blog.actualtests4sure.com/wp-content/plugins/watu/loading.gif https://blog.actualtests4sure.com/wp-content/plugins/watu/loading.gif --------------------------------------------------- --------------------------------------------------- Post date: 2022-05-11 16:58:36 Post date GMT: 2022-05-11 16:58:36 Post modified date: 2022-05-11 16:58:36 Post modified date GMT: 2022-05-11 16:58:36