Latest CyberArk CAU201 Free Certification Exam Material with 179 Q&As
UPDATED CAU201 Exam Questions Certification Test Engine to PDF
NEW QUESTION # 31
In the screenshot displayed, you just configured the usage in CyberArk and want to update its password.
What is the least intrusive way to accomplish this?
- A. Use the "reconcile" button on the parent account's details page.
- B. Use the "sync" button on the usage's details page.
- C. Use the "change" button on the parent account's details page.
- D. Use the "change" button on the usage's details page.
Answer: C
NEW QUESTION # 32
When Dual Control is enabled a user must first submit a request in the Password Vault Web Access (PVWA) and receive approval before being able to launch a secure connection via PSM for Windows (previously known as RDP Proxy).
- A. True
- B. False, a user can submit the request after the connection has already been initiated via the PSM for Windows
Answer: B
NEW QUESTION # 33
Which of the following options is not set in the Master Policy?
- A. The use of "One-Time-Passwords"
- B. Enabling and Disabling of the Connection Through the PSM
- C. Password Complexity
- D. Password Expiration Time
Answer: C
NEW QUESTION # 34
In order to connect to a target device through PSM, the account credentials used for the connection must be
stored in the vault?
- A. False. Because if credentials are not stored in the vault, the PSM will log into the target device as
PSMConnect. - B. False. Because if credentials are not stored in the vault, the PSM will prompt for credentials.
- C. True.
- D. False. Because the user can also enter credentials manually using Secure Connect.
Answer: D
NEW QUESTION # 35
When creating an onboarding rule, it will be executed upon .
- A. Both "All accounts in the pending accounts list" and "Any future accounts discovered by a discovery process"
- B. Any future accounts discovered by a discovery process
- C. All accounts in the pending accounts list
Answer: B
NEW QUESTION # 36
Which one the following reports is NOT generated by using the PVWA?
- A. Sales List
- B. Convince Status
- C. Accounts Inventory
- D. Application Inventory
Answer: B
NEW QUESTION # 37
Can the 'Connect' button be used to initiate an SSH connection, as root, to a Unix system when SSH access for root is denied?
- A. No, it is not possible.
- B. Yes, when using the connect button, CyberArk uses the PMTerminal.exe process which bypasses the root SSH restriction.
- C. Yes, if a logon account is associated with the root account.
- D. Yes, only if a logon account is associated with the root account and the user connects through the PSM- SSH connection component.
Answer: D
Explanation:
Explanation/Reference: https://www.reddit.com/r/CyberARk/comments/7zx8w5/ssh_connection/
NEW QUESTION # 38
A Logon Account can be specified in the Master Policy.
- A. FALSE
- B. TRUE
Answer: B
NEW QUESTION # 39
What is the purpose of the HeadStartlnterval setting m a platform?
- A. It determines how far in advance audit data is collected tor reports
- B. It instructs the CPM to initiate the password change process X number of days before expiration.
- C. It alerts users of upcoming password changesxnumber of days before expiration.
- D. It instructs the AIM Provider to 'skip the cache' during the defined time period
Answer: D
NEW QUESTION # 40
A user requested access to view a password secured by dual-control and is unsure who to contact to expedite the approval process. The Vault Admin has been asked to look at the account and identify who can approve their request.
What is the correct location to identify users or groups who can approve?
- A. PVWA> Administration > Platform Configuration > Edit Platform > UI & Workflow > Dual Control> Approvers
- B. PVWA> Account List > Edit > Show Advanced Settings > Dual Control > Direct Managers
- C. PrivateArk > Admin Tools > Users and Groups > Auditors (Group Membership)
- D. PVWA> Policies > Access Control (Safes) > Safe Members > Workflow > Authorize Password Requests
Answer: D
NEW QUESTION # 41
By default, members of which built-in groups will be able to view and configure Automatic Remediation and Session Analysis and Response in the PVWA?
- A. Security Operators
- B. Vault Admins
- C. Security Admins
- D. Auditors
Answer: C
Explanation:
Explanation/Reference: https://docs.cyberark.com/Product-Doc/OnlineHelp/PAS/Latest/en/Content/PTA/Security- Configuration.htm
NEW QUESTION # 42
In order to connect to a target device through PSM, the account credentials used for the connection must be stored in the vault?
- A. False. Because if credentials are not stored in the vault, the PSM will log into the target device as PSMConnect.
- B. False. Because if credentials are not stored in the vault, the PSM will prompt for credentials.
- C. True.
- D. False. Because the user can also enter credentials manually using Secure Connect.
Answer: D
Explanation:
Explanation/Reference:
NEW QUESTION # 43
As long as you are a member of the Vault Admins group, you can grant any permission on any safe that you have access to.
- A. FALS
- B. TRUE
Answer: B
NEW QUESTION # 44
Which of the following logs contains information about errors related to PTA?
- A. ITAlog.log
- B. pm_error.log
- C. WebApplication.log
- D. diamond.log
Answer: D
NEW QUESTION # 45
In a default CyberArk installation, which group must a user be a member of to view the "reports" page in PVWA?
- A. PVWAMonitor
- B. Operators
- C. PVWAReports
- D. ReportUsers
Answer: A
NEW QUESTION # 46
Users who have the 'Access Safe without confirmation' safe permission on a safe where accounts are configured for Dual control, still need to request approval to use the account.
- A. FALSE
- B. TRUE
Answer: B
NEW QUESTION # 47
Which certificate type do you need to configure the vault for LDAP over SSL?
- A. a CA signed Certificate for the PVWA server
- B. the CA Certificate that signed the certificate used by the External Directory
- C. a self-signed Certificate for the Vault
- D. a CA signed Certificate for the Vault server
Answer: B
NEW QUESTION # 48
PSM captures a record of each command that was executed in Unix.
- A. FALSE
- B. TRIE
Answer: B
NEW QUESTION # 49
What is the purpose of the Immediate Interval setting in a CPM policy?
- A. To Control the maximum amount of time the CPM will wait for a password change to complete.
- B. To control how often the CPM looks for System Initiated CPM work.
- C. To control how often the CPM looks for User Initiated CPM work.
- D. To control how often the CPM rests between password changes.
Answer: C
Explanation:
When the Master Policy enforces check-in/check-out exclusive access, passwords are changed when the user clicks the Release button and releases the account. This is based on the ImmediateInterval parameter in the applied platform. If the user forgets to release the account, it is automatically released and changed by the CPM after a predetermined number of minutes, defined in the MinValidityPeriod parameter specified in the platform
NEW QUESTION # 50
Due to network activity, ACME Corp's PrivateArk Server became active on the OR Vault while the Primary Vault was also running normally. All the components continued to point to the Primary Vault.
Which steps should you perform to restore DR replication to normal?
- A. Shutdown PrivateArk Server on DR Vault > Start replication on DR vault
- B. Shutdown PrivateArk Server on DR Vault > Replicate data from DR Vault to Primary Vault > Shutdown PrivateArk Server on DR Vault > Start replication on DR vault
- C. Replicate data from DR Vault to Primary Vault > Shutdown PrivateArk Server on DR Vault > Start replication on DR vault
- D. Shutdown PrivateArk Server on Primary Vault > Replicate data from DR Vault to Primary Vault > Shutdown PrivateArk Server on DR Vault > Start replication on DR vault
Answer: C
NEW QUESTION # 51
What is the purpose of the Interval setting in a CPM policy?
- A. To control how often the CPM looks for System Initiated CPM work.
- B. To control the maximum amount of time the CPM will wait for a password change to complete.
- C. To control how often the CPM looks for User Initiated CPM work.
- D. To control how long the CPM rests between password changes.
Answer: A
NEW QUESTION # 52
......
Get The Important Preparation Guide With CAU201 Dumps: https://braindumpsschool.vce4plus.com/CyberArk/CAU201-valid-vce-dumps.html