
[Oct-2023] Feel SAP P_SECAUTH_21 Dumps PDF Will likely be The best Option
P_SECAUTH_21 exam torrent SAP study guide
NEW QUESTION # 37
Which SAP tool provides functions to support Data Destruction, Business Rules Maintenance, and Processing of Audit Areas?
- A. SAP Data Controller Rule Framework
- B. SAP Information Retrieval Framework
- C. SAP Information Lifecycle Management
- D. SAP Business Rule Framework Plus
Answer: A
NEW QUESTION # 38
What authorization object is checked when a user selects an ABAP Web Dynpro application to run?
- A. S_START
- B. S_SERVICE
- C. S_PROGRAM
- D. S_TCODE
Answer: B
Explanation:
Explanation
The authorization object S_SERVICE is checked when a user selects an ABAP Web Dynpro application to run. This authorization object controls the access to Web services and Web Dynpro applications based on the service name and type. References:
https://help.sap.com/doc/saphelp_nw70ehp3/7.03/en-US/c8/e8d53d35fb11d182b90000e829fbfe/content.htm?no_
https://help.sap.com/doc/saphelp_nw70ehp3/7.03/en-US/c8/e8d53d35fb11d182b90000e829fbfe/content.htm?no_
NEW QUESTION # 39
Which tasks would you perform to allow increased security for the SAP Web Dispatcher WebAdministration interface? Note: There are 2 correct answers to this question.
- A. Use a separate port for the administration interface
- B. Use subparameter ALLOWPUB = TRUE of the profile parameter icm/server_port_<xx>
- C. Use access restrictions with the icm/HTTP/auth_<xx> profile parameter
- D. Use Secure Socket Layer (SSL) for encrypted access
Answer: C,D
Explanation:
Explanation
These are some of the tasks that you would perform to allow increased security for the SAP Web Dispatcher WebAdministration interface, which is a web-based tool for configuring and monitoring the SAP Web Dispatcher instance. You can use access restrictions with the icm/HTTP/auth_<xx> profile parameter, which allows you to define rules for allowing or denying access based on IP addresses, host names, or URLs. You can also use Secure Socket Layer (SSL) for encrypted access, which protects the communication between your browser and the WebAdministration interface using certificates and keys. References:
https://help.sap.com/doc/saphelp_nw70ehp3/7.03/en-US/c8/e8d53d35fb11d182b90000e829fbfe/content.htm?no_
NEW QUESTION # 40
You want to allow your trainee colleagues to use the SAP GUI to connect directly to your SAP S/4HANA (on-premise) demo system form a public internet connection Which of the following SAP solutions is suited for this purpose?
- A. SAP NetWeaver Gateway
- B. SAP Web Dispatcher
- C. SAP Cloud Connector
- D. SAP Prouter
Answer: C
NEW QUESTION # 41
How do you handle user "SAP 'in AS ABAP? Note: There are 3 correct answers to this question.
- A. Set profile parameter login/no_automatic_user_sapstar to 0
- B. Set profile parameter login/no_automatic_user_sapstar to 1
- C. Lock and expire the user in all clients except 000
- D. Lock and expire the user in all clients
- E. Remove all authorizations from the user
Answer: B,D,E
NEW QUESTION # 42
Which features does the SAP Router support? Note: There are 2 correct answers to this question.
- A. Controlling and logging network connections to SAP systems
- B. Password-protecting connections from unauthorized access from outside the network
- C. Balancing the load to ensure an even distribution across the back-end servers
- D. Terminating, forwarding and (re)encrypting requests, depending on the SSL configuration
Answer: A,B
NEW QUESTION # 43
Where can you store Security Audit Log events? Note: There are 2 correct answers to this question.
- A. In the Linux system log
- B. In the kernel trace
- C. In the file system of the application servers
- D. In the database table RSAU_BUF_DATA
Answer: C,D
Explanation:
Explanation
These are some of the places where you can store Security Audit Log events in an SAP system. Security Audit Log is a tool that records security-relevant events in SAP systems, such as failed logon attempts, changes to user master records, or RFC calls. Security Audit Log events can be stored in the file system of the application servers, which are servers that run SAP applications and processes. The file name and path can be configured using RZ10 transaction or profile parameters. Security Audit Log events can also be stored in the database table RSAU_BUF_DATA, which is a table that contains buffered audit log records for each application server instance. The buffering mechanism can be configured using RZ11 transaction or profile parameters.
References:
https://help.sap.com/doc/saphelp_nw73ehp1/7.31.19/en-US/c8/e8d53d35fb11d182b90000e829fbfe/content.htm?
NEW QUESTION # 44
Which authorization object controls access to the trusting system between the managed system and SAP Solution Manager?
- A. S_ ICM
- B. S_RFCACL
- C. S_SERVICE
- D. S_RFC
Answer: B
NEW QUESTION # 45
Which type of systems can be found in the Identity Provisioning Service landscape? Note:
There are 2 correct answers to this question.
- A. Source
- B. Identity Provider
- C. Proxy
- D. Service Provider
Answer: A,D
Explanation:
Explanation
Source and Service Provider are two types of systems that can be found in the Identity Provisioning Service landscape. A source system is a system that provides user data to be provisioned to other systems, such as an identity provider or an LDAP server. A service provider system is a system that receives user data from a source system, such as an SAP Cloud Platform subaccount or an SAP SuccessFactors instance. References:
https://help.sap.com/viewer/product/SAP_CLOUD_PLATFORM_IDENTITY_PROVISIONING_SERVICE/en-
https://help.sap.com/viewer/product/SAP_CLOUD_PLATFORM_IDENTITY_PROVISIONING_SERVICE/en-
NEW QUESTION # 46
Where does SAP HANA store the values for the default Password Policy parameter? Note: there are 2 correct answers to this question.
- A. global.ini
- B. attributes.ini
- C. indexserver.ini
- D. nameservice.ini
Answer: C,D
NEW QUESTION # 47
Which authorization object is required to support trusted system access by an RFC user following the configuration of a Managed System in SAP Solution Manager?
- A. S_RFCACL
- B. S_RFC_TTAC
- C. S_RFC_TT
- D. S_ACL_HIST
Answer: A
NEW QUESTION # 48
A security consultant has activated a trace via ST01 and is analyzing the authorization error with Return Code 12. What does the Return Code 12 signify?
- A. "Too many parameters for authorization checks"
- B. "Objects not contained in User Buffer"
- C. "No authorizations but does have authorization object in their buffer"
- D. "No authorizations and does NOT have authorization object in their buffer"
Answer: C
NEW QUESTION # 49
How can you register an SAP Gateway service? Note: There are 2 correct answers to this question.
- A. Use transaction SEGW on the back-end server
- B. Use SAP_GAT EWAY_ACTIVATE_ODATA_SERV in transact on STC01 on the front-end server
- C. Use transaction /IWFND/MA INT_SERVICE on the front-end server
- D. Use SAP_GAT EWAY_BASIC_CONFIG in transact on STCO 1 on the frontend server
Answer: A,C
NEW QUESTION # 50
What are characteristic of the SAP_INTERNAL_HANA_SUPPORT catalog role? Note: there are 2 correct answers to this question.
- A. No role can be granted to it
- B. Object privileges can be granted to the role
- C. It has full access to all metadata
- D. System privileges can be granted to the role
Answer: A,D
NEW QUESTION # 51
A user is authorized to run SP01. What can this user access with authorization object S_ SPO_ ACT when the 'Value for Authorization Check' field is set to "__USER__"?
- A. All spool requests for a specific user in the client
- B. All unprotected spool requests for all users in the client
- C. All spool requests for all users in the client
- D. All spool requests for users in the same user group
Answer: A
Explanation:
Explanation
This is one of the things that a user can access with authorization object S_SPO_ACT when the 'Value for Authorization Check' field is set to "USER" and they are authorized to run SP01 transaction. S_SPO_ACT is an authorization object that controls access to spool requests based on various criteria, such as spool request number, output device, or user name. SP01 is a transaction that allows you to display and manage spool requests, which are requests for printing or outputting data from SAP systems. If the 'Value for Authorization Check' field is set to "USER" in S_SPO_ACT authorization object, the user can access all spool requests for their own user name in the client where they are logged on. References:
https://help.sap.com/doc/saphelp_nw73ehp1/7.31.19/en-US/c8/e8d53d35fb11d182b90000e829fbfe/content.htm?
NEW QUESTION # 52
You want to create an SAP Fiori app for multiple users and multiple back-end systems. To support this, you create different roles for the different back-end systems in the SAP Fiori front-end system (central hub). What transactions do you have to use to map a back-end system to one of those roles?
- A. PFCG
- B. /IWFND/MAINT_SERVICE
- C. SEGW
- D. /UI2/GW_SYS_ALIAS
Answer: B
NEW QUESTION # 53
......
Use Valid New P_SECAUTH_21 Test Notes & P_SECAUTH_21 Valid Exam Guide: https://www.newpassleader.com/SAP/P_SECAUTH_21-exam-preparation-materials.html
P_SECAUTH_21 Actual Questions Answers PDF 100% Cover Real Exam Questions: https://drive.google.com/open?id=1buofFuZQP9CLMShN7T_8YjlNLqW_KzMG