A B2C Commerce Developer has just finished implementing a new promotion code form on checkout. During review, an Architect notes that the form it not using CSRF validation correctly.

Which two options are best practice recommendations for dealing with CSRF validation? Choose 2 answers
A. Only use GET methods over HTTPS.
B. Ensure the CSRF protection is validated on form submission.
C. Only use POST methods over HTTPS.
D. Automatically renew the CSRF Token if expired.
正解:B,C
質問 2:
A company that is a shoe-producer is doing Salesforce B2C Commerce implementation. In their Enterprise Resource Warning (ERP) system, the products are marked as being one of three types: boots, sandals, and sneakers. The business requirements based on the type are:
* The messaging on Product Detail page is different
* Customers are able to filler their Product Search Results
The customer's operations team asks about the format in which to send this value in the catalog.
Which data type should the Architect specify for this attribute In the Data Mapping document?
A. A custom attribute of type string containing comma separated values.
B. A custom attribute of type enum-of-string (multiselect able value).
C. A custom attribute type set-of-string containing multiple values.
D. A custom attribute of type enum-of-string (single selectable value)
正解:D
質問 3:
An Architect is configuring a data replication schedule.
Which task(s) can be removed In order to reduce replication times?
A. Static content
B. Storefront URLs
C. Campaign
D. Search Indexes
正解:D
質問 4:
The client provided these business requirements:
* The B2C Commerce platform will integrate with the client's Order Management System (OMS).
* The OMS supports Integration us-no legacy RPC style SOAP services.
* The OMS is hosted on client s infrastructure.
What is the right cartridge folder to place the WSDL provided for the OMS service?
A. /cartridge/services
B. /cartridge/webreferences
C. /cartridge
D. /cartridge/webreferences2
正解:B
質問 5:
The Client is planning to switch to a new Payment Service Provider (PSP). They have approached an Architect to understand the time and effort to Integrate the new PSP The PSP offers a LINK cartridge compatible with SiteGenesis Pipelines, but the Client's website is build on Controllers.
Which two options should the Architect take into consideration before starting analysis? Choose 2 answers
A. Estimate the effort and risk to convert the LINK cartridge from pipelines to controllers.
B. Look for a different PSP that supports controllers and would not require conversion efforts.
C. Produce a proof of concept converting the most essential pipelines into controllers and integrate the cartridge.
D. Reach out to the PSP development team and ask if a new cartridge version that supports controllers is under development
正解:A,C
質問 6:
A new project for a Client will involve a few different Integrations to their middleware system resulting in four different web services. All will use the same credentials to the middleware. Each will have the same timeout, but will require a separate log file prefix.
How should the Architect set this up with the Service framework using a minimal set of configuration?
A. Four Service Configurations. Four Service Profiles, One Service Credential
B. Four Service Configurations. One Service Profile, One Service Credential.
C. Four Service Configurations. Four Service Profiles, Four Service Credentials
D. One Service Configuration, Four Service Profiles, One Service Credential.
正解:B
麻田** -
私はフィリピン出身です。試験に合格するにはARC-300試験ガイドで十分です。試験に出てくる問題はほぼこの問題集にも出てました。