Get Perfect Results with Premium P-SECAUTH-21 Dumps Updated 80 Questions [Q32-Q54]

Share

Get Perfect Results with Premium P-SECAUTH-21 Dumps Updated 80 Questions

Free P-SECAUTH-21 Exam Study Guide for the NEW Dumps Test Engine

NEW QUESTION # 32
In your system, you have a program which calls transaction A. Users with access to this program can still execute transaction A without explicit authorizations given to this transaction.
How do you prevent the access of users to the transaction A from within the program?

  • A. Ensure that transact on A is NOT assigned into the same program authorization group
  • B. Make sure you do NOT assign transact on A to the authorization object S_TCODE in the role that you assign to the unauthorized users.
  • C. Maintain SE93 with authorization objects for transact on A.
  • D. Maintain the check indicator in table TCDCOUPLES

Answer: C


NEW QUESTION # 33
What authorization object is checked when a user selects an A BAP Web Dynpro application to execute?

  • A. S_START
  • B. S_PROGRAM
  • C. S_SERVICE
  • D. S_TCODE

Answer: A


NEW QUESTION # 34
You want to allow some of your colleagues to use the SAP GUI for Java to connect directly to your SAP back-end system from a public internet connection without having to set up a VPN connection first. Which of the following SAP solutions is suited for this purpose?

  • A. SAP Web Dispatcher
  • B. SAP router
  • C. SAP Cloud Connector
  • D. SAP NetWeaver Gateway

Answer: C


NEW QUESTION # 35
How can you describe the hierarchical relationships between technical entities in the Cloud Foundry?

  • A. A subscription is a PaaS tenant.
  • B. A SaaS tenant acts as one Cloud Foundry Organization.
  • C. A global account can have one or many subaccounts
  • D. A SaaS tenant acts as one provider account.

Answer: C


NEW QUESTION # 36
What are main characteristics of the Logon ticket throughout an SSO logon procedure? Note: There are 2 correct answers to this question

  • A. The Logon ticket is always set to client 000
  • B. The Logon ticket is not domain restricted
  • C. The Logon ticket session is held in the working memory
  • D. The Logon ticket is sued for user-to-system communication

Answer: B,D


NEW QUESTION # 37
You want to configure SNC in a newly-installed AS ABAP based SAP system. Besides running SNCWIZARD, what else do you need to perform for this scenario? Note: There are 2 correct answers to this question.

  • A. Manage the PSE
  • B. Enable the encrypted HTTP service
  • C. Set the parameters using sapgenpse
  • D. Restart the SAP system

Answer: A,D

Explanation:
Explanation
These are some of the things that you need to perform for this scenario of configuring SNC in a newly-installed AS ABAP based SAP system. SNC (Secure Network Communication) is a feature that enables secure and encrypted communication between SAP systems and components using certificates and keys. PSE (Personal Security Environment) is a file that contains certificates and keys for SNC communication. You need to restart the SAP system after running SNCWIZARD, which is a transaction that guides you through the steps of configuring SNC for your SAP system. You also need to manage the PSE using sapgenpse, which is a tool that allows you to create, import, export, or delete certificates and keys in the PSE. References:
https://help.sap.com/doc/saphelp_nw73ehp1/7.31.19/en-US/c8/e8d53d35fb11d182b90000e829fbfe/content.htm?


NEW QUESTION # 38
You have implemented CUA in your organization and you only want to compare the company address data between the central system and child systems to perform the synchronization activities. Which transact on do you use for comparing the company address between these systems?

  • A. SCUG
  • B. SCUM
  • C. SCUC
  • D. SUCOMP

Answer: D


NEW QUESTION # 39
The SAP HANA database has its parameters configured with its default values. How can the SAP_INTERNAL_HA NA_SUPPORT catalog role be used?

  • A. The role can be granted to multiple users at a time
  • B. The role can be granted only with system privileges
  • C. The role can be granted to another role (nested)
  • D. The role can be granted to the SYSTEM user

Answer: D


NEW QUESTION # 40
You want to create an SAP Fiori app for multiple users and multiple back-end systems. To support this, you create different roles for the different back-end systems in the SAP Fiori front-end system (central hub). What transaction do you have to use to map a back-end system to one of those roles?

  • A. /IWFND/MAINT_SERVICE
  • B. PFCG
  • C. SEGW
  • D. /UI2/GW_SYS_ALIAS

Answer: D

Explanation:
Explanation
This is one of the transactions that you have to use to map a back-end system to one of those roles for creating an SAP Fiori app for multiple users and multiple back-end systems in an SAP Fiori front-end system (central hub). /UI2/GW_SYS_ALIAS is a transaction that allows you to create and maintain gateway system aliases for OData services in an SAP Fiori front-end system (central hub), which is a system that handles OData requests and responses between the user's browser and the back-end systems. A gateway system alias is a name that represents a connection to a specific back-end system or service. You can assign different gateway system aliases to different roles in the SAP Fiori front-end system to map them to different back-end systems or services. References:
https://help.sap.com/viewer/a7b390faab1140c087b8926571e942b7/7.5.9/en-US/5c3d6d0f6c461014a1d99bc8a4f


NEW QUESTION # 41
You are evaluating the "Cross-client object change" option using transaction SCC4 for your Unit Test Client in the development environment. Which setting do you recommend?

  • A. Changes to repository and cross-client customizing allowed
  • B. No changes to repository objects
  • C. No changes to repository and cross-client customizing objects
  • D. No changes to cross-client customizing objects

Answer: A

Explanation:
Explanation
This is the recommended setting for the "Cross-client object change" option using transaction SCC4 for your Unit Test Client in the development environment. This setting allows you to make changes to repository objects (such as programs, function modules, classes, etc.) and cross-client customizing objects (such as number ranges, message classes, etc.) in your Unit Test Client without affecting other clients in the same system. References:
https://help.sap.com/doc/saphelp_nw70ehp3/7.03/en-US/c8/e8d53d35fb11d182b90000e829fbfe/content.htm?no_
https://help.sap.com/doc/saphelp_nw70ehp3/7.03/en-US/c8/e8d53d35fb11d182b90000e829fbfe/content.htm?no_


NEW QUESTION # 42
A user has the authorization to execute SP01. What can this user access with authorization object S_ SPO_ ACT when the 'Value for Authorization Check' field is set to "_USER.

  • A. All spool requests for users in the same user group
  • B. User's own spool requests
  • C. All spool requests for a specific user in the client
  • D. All spool requests for all users in the client

Answer: D


NEW QUESTION # 43
What are characteristics only valid for the MDC high isolation mode?

  • A. Every tenant has its own set of database users belonging to the same sapsys group
  • B. Every tenant has its own set of database users
  • C. All internal database communication is secured using SNC
  • D. Every tenant has its own set of OS users

Answer: D


NEW QUESTION # 44
Which communication methods does the SAP Fiori Launchpad use to retrieve business data? Note: There are 3 correct answers to this question.

  • A. Info Access (InA)
  • B. HTIP(S)
  • C. Trusted RFC
  • D. Data
  • E. Secure Network Communication (SNC)

Answer: A,C,E


NEW QUESTION # 45
Which authorization object controls access to the trusting system between the managed system and SAP Solution Manager?

  • A. S_RFCACL
  • B. S_RFC
  • C. S_SERVICE
  • D. S_ ICM

Answer: A


NEW QUESTION # 46
You have Reason Codes already defined. Which is the correct sequence of steps to configure a Firefighter ID in Emergency Access Management?

  • A. Maintain an Owner for a Firefighter ID
    Maintain a Firefighter ID for Controllers and Firefighters
    Maintain Access Control Owner
  • B. Maintain an Owner for a Firefighter ID
    Maintain a Firefighter ID for Controllers and Firefighters
    Maintain Access Control Owner
  • C. Maintain a Firefighter ID for Controllers and Firefighters
    Maintain an Owner for a Firefighter ID
    Maintain Access Control Owner
  • D. Maintain an Owner for a Firefighter ID
    Maintain a Firefighter ID for Controllers and Firefighters
    Maintain Access Control Owner

Answer: D


NEW QUESTION # 47
Your company is running SAP S/4HANA on premise, with the requirement to run the SAP Fiori Launchpad in the SAP Cloud Platform. What would be the recommended scenario for user authentication for internet browser access to the SAP Fiori Launchpad?

  • A. X.509 Client Certificates
  • B. SAML2 and OData Provisioning
  • C. SAP Logon Tickets
  • D. Principal Propagation

Answer: A


NEW QUESTION # 48
You are running a 3-tier SAP system landscape. Each time you are accessing STMS_IMPORT on any of these systems, you are prompted for a TMSADM password. How can you stop this prompt from appearing?

  • A. Change the TMSA DM user's password directly in the TMS RFC destination in transact on SM59.
  • B. Run the report TMS_ UPDATE_PWD_OF_TMSADM on the domain controller.
  • C. Run the report RSUSR405 on the domain controller.
  • D. Reset the TMSADM user's password on the system you are trying to access STMS_ IMPORT.

Answer: B


NEW QUESTION # 49
Who can revoke a runtime role from a user in the SAP HANA tenant database? Note: There are 2 correct answers to this question.

  • A. Anyone with "ROLE ADMIN"
  • B. The granting user
  • C. The owner of the HDI container
  • D. The DBACOCKPIT user

Answer: A,B

Explanation:
Explanation
These are some of the users who can revoke a runtime role from a user in the SAP HANA tenant database. A runtime role is a role that is granted dynamically to a user when they connect to a database using an application or service, such as XSODATA or XSJS. A runtime role can be revoked by the user who granted it, or by anyone who has the "ROLE ADMIN" system privilege, which allows them to create, grant, and revoke roles in the database. References:
https://help.sap.com/viewer/6b94445c94ae495c83a19646e7c3fd56/2.0.05/en-US/fafcbcf9d9101014b3d9a08ce33


NEW QUESTION # 50
Based on your company guidelines you have set the password expiration to 60 days.
Unfortunately, there is an RFC user on your SAP system who must not have a password change for 1 80 days. Which option would you recommend to accomplish such a request?

  • A. Define the RFC user as a reference user
  • B. Change the profile parameter login/password_expiration_time to 1 80
  • C. Create a security policy via SECPOL and assign it to the RFC users
  • D. Create an enhancement spot or user exit

Answer: C

Explanation:
Explanation
This is one of the options that you would recommend to accomplish such a request of having an RFC user with a password expiration of 180 days instead of 60 days based on your company guidelines. SECPOL is a transaction that allows you to create and maintain security policies for password settings, such as minimum length, expiration time, or lockout threshold. You can assign different security policies to different users or user groups based on their roles or requirements. References:
https://help.sap.com/doc/saphelp_nw73ehp1/7.31.19/en-US/c8/e8d53d35fb11d182b90000e829fbfe/content.htm?


NEW QUESTION # 51
You want to allow your trainee colleagues to use the SAP GUI to connect directly to your SAP S/4HANA (on-premise) demo system from a public internet connection. Which of the following SAP solutions is suited for this purpose?

  • A. SAProuter
  • B. SAP Web Dispatcher
  • C. SAP Cloud Connector
  • D. SAP NetWeaver Gateway

Answer: A

Explanation:
Explanation
This is one of the SAP solutions that is suited for this purpose of allowing your trainee colleagues to use the SAP GUI to connect directly to your SAP S/4HANA (on-premise) demo system from a public internet connection. SAProuter is a program that acts as an application-level gateway between SAP systems and networks using TCP/IP protocol. SAProuter can be used to establish secure and encrypted connections between SAP systems and external networks using SNC (Secure Network Communication) certificates and keys. SAProuter can also be used to control access to SAP systems based on various criteria, such as source IP address, destination IP address, service name, or port number. References:
https://help.sap.com/doc/saphelp_nw73ehp1/7.31.19/en-US/c8/e8d53d35fb11d182b90000e829fbfe/content.htm?


NEW QUESTION # 52
You verified the password of the TMSADM user in your SAP landscape to be SAP defaulted. You want to reset this password by using program TMS_UPDATE_PWD_OF_TMSADM. What steps would you take to reset this password?
Note: There are 2 correct answers to this question

  • A. Lock TMSADM in all the system/clients including 000
  • B. Assign "SAP_ALL" to TMSADM in all systems/clients including 000
  • C. Run this program in the Domain Controller (client 000)
  • D. Deactivate the SNC opt on

Answer: A,C


NEW QUESTION # 53
You verified the password of the TMSADM user in your SAP landscape to be SAP defaulted.
You want to reset this password by using the program
TMS_UPDATE_PWD_OF_TMSADM.What steps would you take to reset this password? Note:
There are 2 correct answers to this question.

  • A. Run the program in all systems/clients including 000
  • B. Execute command TP LOCKSYS <SID> pf=<DOMAIN_CONTROLLER_PROFILE>
  • C. Run the program in the Domain Controller (client 000)
  • D. Deactivate the SNC option

Answer: B,C

Explanation:
Explanation
These are some of the steps that you would take to reset the password of the TMSADM user in your SAP landscape by using the program TMS_UPDATE_PWD_OF_TMSADM. The TMSADM user is a special user that is used for Transport Management System (TMS) communication and administration. You would run the program in the Domain Controller (client 000), which is the system that controls the transport domain and configuration. You would also execute the command TP LOCKSYS <SID> pf=<DOMAIN_CONTROLLER_PROFILE>, which locks all systems in the transport domain except the Domain Controller, to prevent any inconsistencies or errors during the password reset process. References:
https://help.sap.com/doc/saphelp_nw73ehp1/7.31.19/en-US/48/9e2e3f6f8e41e8a283aaf2ad2c64c4/content.htm?n


NEW QUESTION # 54
......

P-SECAUTH-21 PDF Dumps Extremely Quick Way Of Preparation: https://realpdf.pass4suresvce.com/P-SECAUTH-21-pass4sure-vce-dumps.html