Black Friday Special 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: clap70

CAU302 CyberArk Defender + Sentry Questions and Answers

Questions 4

Customers who have the 'Access Safe without confirmation' safe permission on a safe where accounts are configured for Dual control, still need to request approval to use the account.

Options:

A.

TRUE

B.

FALSE

Buy Now
Questions 5

The vault provides a tamper-proof audit trail.

Options:

A.

TRUE

B.

FALSE

Buy Now
Questions 6

The vault supports a number of dual factor authentication methods.

Options:

A.

TRUE

B.

FALSE

Buy Now
Questions 7

What is the primary purpose of Exclusive Accounts?

Options:

A.

Reduced risk of credential theft

B.

More frequent password changes

C.

Non-repudiation (individual accountability)

D.

To force a ‘collusion to commit’ fraud ensuring no single actor may use a password without authorization

Buy Now
Questions 8

When managing SSH keys, the CPM stores the Public Key ________________.

Options:

A.

In the Vault

B.

On the target server

C.

A & B

D.

Nowhere because the public key can always be generated from the private key

Buy Now
Questions 9

A SIEM integration is a powerful way to correlate Privileged Account Usage with Privileged Account Activity.

Options:

A.

TRUE

B.

FALSE

Buy Now
Questions 10

tsparm.ini is the main configuration file for the vault.

Options:

A.

TRUE

B.

FALSE

Buy Now
Questions 11

How does the Vault administrator apply a new license file?

Options:

A.

Upload the license.xml file to the system Safe and restart the PrivateArk Server service.

B.

Upload the license.xml file to the system Safe.

C.

Upload the license.xml file to the Vault Internal Safe and restart the PrivateArk Server service.

D.

Upload the license.xml file to the Vault Internal Safe.

Buy Now
Questions 12

Multiple PVWA servers are always all active

Options:

A.

TRUE

B.

FALSE

Buy Now
Questions 13

The vault does not support Subnet Based Access Control.

Options:

A.

TRUE

B.

FALSE

Buy Now
Questions 14

Which is the correct order of installation for PAS components?

Options:

A.

Vault. CPM. PVWA. PSM

B.

CPM, Vault. PSM. PVWA

C.

Vault, CPM. PSM, PVWA

D.

PVWA, Vault, CPM. PSM

Buy Now
Questions 15

CyberArk implements license limits by controlling the number and types of users that can be provisioned in the vault.

Options:

A.

TRUE

B.

FALSE

Buy Now
Questions 16

Which of the following are prerequisites for installing PVWA Check all that Apply

Options:

A.

Web Services Role

B.

NET 4.5.1 Framework Feature

C.

Remote Desktop Services Role

D.

Windows BitLocker

Buy Now
Questions 17

Vault admins must manually add the auditors group to newly created safes so auditors will have sufficient access to run reports.D18912E1457D5D1DDCBD40AB3BF70D5D

Options:

A.

TRUE

B.

FALSE

Buy Now
Questions 18

Multiple PVWA servers provide automatic load balancing.

Options:

A.

TRUE

B.

FALSE

Buy Now
Questions 19

In Accounts Discovery, you can configure a Windows discovery to scan______________.

Options:

A.

as many OUs as you wish

B.

up to three OUs.

C.

only one OU.

D.

a number of OUs determined by the OUstoScan setting under the Accounts Feed section in the Administration tab

Buy Now
Questions 20

The vault supports Subnet Based Access Control.

Options:

A.

TRUE

B.

FALSE

Buy Now
Questions 21

The PSM requires the Remote Desktop Web Access role service.

Options:

A.

True

B.

False

Buy Now
Questions 22

A user has successfully conducted a short PSM session and logged off. However, the user cannot access the Monitoring tab to view the recordings. What is the issue?

Options:

A.

The user must login as PSMAdminConnect.

B.

The PSM service is not running.

C.

The user is not a member of the PVWAMonitor group.

D.

The user is not a member of the Auditors group.

Buy Now
Questions 23

PSM captures a record of each command that was issues in SQL Plus.

Options:

A.

TRUE

B.

FALSE

Buy Now
Questions 24

Which IP port and Protocol are used by the CyberArk Secure Proprietary Protocol?

Options:

A.

TCP/1858

B.

TCP/636

C.

UDP/1812

D.

TCP/22

Buy Now
Questions 25

Which one of the following reports is NOT generated by using the Password Vault Web Access (PVWA)?

Options:

A.

Accounts Inventory

B.

Application Inventory

C.

Active/Non-Active Users

D.

Compliance Status

Buy Now
Questions 26

Which of the following options is not set in the Master Policy?

Options:

A.

Password Expiration Date

B.

Dual Control

C.

Password Complexity

D.

Require Access Reason

Buy Now
Questions 27

What is the purpose of the password Change process?

Options:

A.

To test that CyberArk is storing accurate credentials for accounts

B.

To change the password of an account according to organizationally defined password rules

C.

To allow CyberArk to manage unknown or lost credentials

D.

To generate a new complex password

Buy Now
Questions 28

What is the primary purpose of One Time Passwords?

Options:

A.

Reduced risk of credential theft

B.

More frequent password changes

C.

Non-repudiation (individual accountability)

D.

To force a ‘collusion to commit’ fraud ensuring no single actor may use a password without authorization

Buy Now
Questions 29

Which combination of safe member permissions will allow End Users to log in to a remote machine

transparently but NOT show or copy the password?

Options:

A.

Use Accounts, Retrieve Accounts, List Accounts

B.

Use Accounts, List Accounts

C.

Use Accounts

D.

List Accounts, Retrieve Accounts

Buy Now
Questions 30

PSM for SSH (previously known as “PSM SSH Proxy”) supports connections to the following target systems:

Options:

A.

Windows

B.

UNIX

C.

Oracle

D.

All of the above

Buy Now
Questions 31

Where does the Vault administrator configure in Password Vault Web Access (PVWA) the Fully Qualified Domain Name (FQDN) of the target email server during Simple Mail Transfer Protocol (SMTP) integration?

Options:

A.

PVWA > Platform Management > Notification Settings

B.

PVWA > Options > Notification Settings

C.

PVWA > Administration > Notification Settings

D.

PVWA > LDAP Integration > Notification Settings

Buy Now
Questions 32

Which of the Following can be configured in the Master Policy? Choose all that apply

Options:

A.

Dual Control

B.

One Time Passwords

C.

Exclusive Passwords

D.

Password Reconciliation

E.

Ticketing Integration

F.

Required Properties

G.

Custom Connection Components

Buy Now
Questions 33

Which one of the built-in Vault users is not automatically added to the safe when it is first created in PVWA?

Options:

A.

Master

B.

Administrator

C.

Auditor

D.

Operator

Buy Now
Questions 34

A Logon Account can be specified in the platform settings

Options:

A.

TRUE

B.

FALSE

Buy Now
Questions 35

Which Master Policy?

Options:

A.

Password Expiration Time

B.

Enabling and Disabling of the Connection Through the PSM

C.

Password Complexity

D.

The use of "One-Time-Passwords"

Buy Now
Exam Code: CAU302
Exam Name: CyberArk Defender + Sentry
Last Update: Nov 23, 2024
Questions: 237
CAU302 pdf

CAU302 PDF

$25.5  $84.99
CAU302 Engine

CAU302 Testing Engine

$30  $99.99
CAU302 PDF + Engine

CAU302 PDF + Testing Engine

$40.5  $134.99