Labour Day - Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: dpm65

CAU302 CyberArk Defender + Sentry Questions and Answers

Questions 4

During LDAP/S integration you should specify the Fully Qualified Domain Name (FQDN) of the Domain Controller

Options:

A.

TRUE

B.

FALSE

Buy Now
Questions 5

The vault provides a tamper-proof audit trail.

Options:

A.

TRUE

B.

FALSE

Buy Now
Questions 6

The vault does not support Role Based Access Control

Options:

A.

TRUE

B.

FALSE

Buy Now
Questions 7

It is impossible to override Master Policy settings for a Platform

Options:

A.

TRUE

B.

FALSE

Buy Now
Questions 8

Which of the following are prerequisites for installing PVWA Check all that Apply

Options:

A.

Web Services Role

B.

NET 4.5.1 Framework Feature

C.

Remote Desktop Services Role

D.

Windows BitLocker

Buy Now
Questions 9

What is the purpose of the Interval setting in a CPM policy?

Options:

A.

To control how often the CPM looks for System Initiated CPM work

B.

To control how often the CPM looks for User Initiated CPM work.

C.

To control how long the CPM rests between password changes

D.

To control the maximum amount of time the CPM will wait for a password change to complete

Buy Now
Questions 10

Time of day of week restrictions on when password changes can occur are configured in ________________.

Options:

A.

The Master Policy

B.

The Platform settings

C.

The Safe settings

D.

The Account Details

Buy Now
Questions 11

To support a fault tolerant and high-availability architecture, the Password Vault Web Access (PVWA) servers need to be configured to communicate with the Primary Vault and Satellite Vaults. What file needs to be changed on the PVWA to enable this setup?

Options:

A.

Vault.ini

B.

dbparm.ini

C.

pvwa.ini

D.

Satellite.ini

Buy Now
Questions 12

The Vault administrator can change the Vault license by uploading the new license to the system Safe.

Options:

A.

True

B.

False

Buy Now
Questions 13

When the PSM Gateway (also known as the HTML5 Gateway) is implemented, users must have an RDP client, such as MSTSC, installed on their endpoint in order to launch connections via the PSM.

Options:

A.

True

B.

False. When the PSM Gateway is implemented, the user only requires a browser in order launch a connection via the PSM.

Buy Now
Questions 14

In order to grant a permission to a user, and administrator MUST possess that permission.

Options:

A.

True

B.

False

Buy Now
Questions 15

You are successfully managing passwords in the alpha.cyberark com domain; however when you attempt to manage a password in the beta.cyberark.com domain, you receive the 'network path not found* error What should you check first?

Options:

A.

That the username and password are correct.

B.

That the CPM can successfully resolve addresses in the beta cyberark com domain

C.

That the end user has the correct permissions on the safe

D.

That an appropriate trust relationship exists between alphaxyberark.com and beta.cyberark.com

Buy Now
Questions 16

Multiple PVWA servers can be load balanced.

Options:

A.

TRUE

B.

FALSE

Buy Now
Questions 17

According to the default web options settings, which group grants access to the reports page?

Options:

A.

PVWAMonitor

B.

PVWAUsers

C.

Auditors

D.

Vault administrators

Buy Now
Questions 18

Multiple Vault Servers can be load balanced.

Options:

A.

True

B.

False

Buy Now
Questions 19

CyberArk recommends implementing object level access control on all Safes.

Options:

A.

True

B.

False

Buy Now
Questions 20

Which Master Policy Setting(s) must be active in order to have an account checked-out by one user for a predetermined amount of time?

Options:

A.

Require dual control password access Approval

B.

Enforce check-in/check-out exclusive access

C.

Enforce one-time password access

D.

Enforce check-in/check-out exclusive access & Enforce one-time password access

Buy Now
Questions 21

A Logon Account can be specified in the Master Policy

Options:

A.

TRUE

B.

FALSE

Buy Now
Questions 22

The System safe allows access to the Vault configuration files.

Options:

A.

TRUE

B.

FALSE

Buy Now
Questions 23

In order to connect to a target device through PSM, the account credentials used for the connection must be stored in the vault.

Options:

A.

True.

B.

False. Because the user can also enter credentials manually using Ad-Hoc Access.

C.

False. Because if credentials are not stored in the vault, the PSM will log into the target device as PSMConnect.

D.

False. Because if credentials are not stored in the vault, the PSM will prompt for credentials.

Buy Now
Questions 24

Which CyberArk components or products can be used to discover Windows Services or Scheduled Tasks that use privileged accounts'? Select all that apply.

Options:

A.

Discovery and Audit (DNA)

B.

Auto Detection (AD)

C.

Export Vault Data (EVD)

D.

On Demand Privileges Manager (OPM)

E.

Accounts Discovery

Buy Now
Questions 25

What is the purpose of the password Change process?

Options:

A.

To test that CyberArk is storing accurate credentials for accounts

B.

To change the password of an account according to organizationally defined password rules

C.

To allow CyberArk to manage unknown or lost credentials

D.

To generate a new complex password

Buy Now
Questions 26

Which one of the built-in Vault users is not automatically added to the safe when it is first created in PVWA?

Options:

A.

Master

B.

Administrator

C.

Auditor

D.

Operator

Buy Now
Questions 27

One of your users is receiving the error message “ITATS006E Station is suspended for User jsmith” when

attempting to sign in to the pvwa. Which utility would you use to correct this problem?

Options:

A.

createcredfile.exe

B.

cavaultmanager.exe

C.

PrivateArk

D.

PVWA

Buy Now
Questions 28

The PSM Gateway (also known as the HTML5 Gateway) can be installed

Options:

A.

True

B.

False, the PSM Gateway must be installed on a separate Windows machine

Buy Now
Questions 29

An SNMP integration allows you to forward audit records from the vault to the SIEM.

Options:

A.

TRUE

B.

FALSE

Buy Now
Questions 30

What is the purpose of the CyberArk Event Notification Engine service.

Options:

A.

It sends email messages from the CPM

B.

It sends email messages from the Vault.

C.

It processes audit report messages

D.

It makes vault data available to components.

Buy Now
Questions 31

Assuming a safe has been configured to be accessible during certain hours of the day, a Vault Admin may still access that safe outside of those hours.

Options:

A.

TRUE

B.

FALSE

Buy Now
Questions 32

It is possible to leverage DNA to provide discovery functions that are not available with auto-detection.

Options:

A.

TRUE

B.

FALSE

Buy Now
Questions 33

What values are acceptable in the address field on the Accounts Details.

Options:

A.

It must be a fully qualified domain name (FQDN)

B.

It must be an IP address

C.

It must be NetBIOS name

D.

Any name that is resolvable on the CPM server is acceptable

Buy Now
Questions 34

Which service should NOT be running on the DR Vault when the primary production Vault is up?

Options:

A.

PrivateArk Database

B.

PrivateArk Server

C.

CyberArk Vault Disaster Recovery Service

D.

CyberArk Logical Container

Buy Now
Questions 35

If a user is a member of more than one group that has authorizations on a safe, by default that user is granted

__________________.

Options:

A.

the vault will not allow this situation to occur.

B.

only those permissions that exist on the group added to the safe first.

C.

only those permissions that exist in all groups to which the user belongs.

D.

the cumulative permissions of all the groups to which that user belongs

Buy Now
Exam Code: CAU302
Exam Name: CyberArk Defender + Sentry
Last Update: Apr 23, 2024
Questions: 237

PDF + Testing Engine

$56  $159.99

Testing Engine

$42  $119.99
buy now CAU302 testing engine

PDF (Q&A)

$35  $99.99
buy now CAU302 pdf
dumpsmate guaranteed to pass
24/7 Customer Support

DumpsMate's team of experts is always available to respond your queries on exam preparation. Get professional answers on any topic of the certification syllabus. Our experts will thoroughly satisfy you.

Site Secure

mcafee secure

TESTED 25 Apr 2024