What is the primary purpose of One Time Passwords?
Reveal answer details Close answer details
Correct answerA
CyberArk · CAU302
Preview real exam questions, verified answers and available explanations before choosing a study plan.
|
Single choice
What is the primary purpose of One Time Passwords? Reveal answer details Close answer detailsCorrect answerA
Single choice
CyberArk implements license limits by controlling the number and types of users that can be provisioned in the vault. Reveal answer details Close answer detailsCorrect answerA Explanation https://docs.cyberark.com/Product-Doc/OnlineHelp/PAS/Latest/en/Content/PASIMP/Managing-the-CyberArk-License.htm
Single choice
It is possible to restrict the time of day. or day of week that a verify process can occur. Reveal answer details Close answer detailsCorrect answerA
Single choice
Can you forward audit records to your monitoring solution via SIEM integration? Reveal answer details Close answer detailsCorrect answerA
Single choice
When a DR vault server becomes an active vault, it will automatically fail bacK to the original state once the primary vault comes back online. Reveal answer details Close answer detailsCorrect answerB Explanation There is no "Failback" parameter. When a failover happens, the ONLY way to fail back is a manual failback.
Single choice
For the hardening process to complete successfully, security products like Antivirus should be installed on the Vault server before running the vault installer. Reveal answer details Close answer detailsCorrect answerB Explanation No third party tools should be installed on the vault server.
Single choice
An SMTP integration allows you to forward audit records from the vault to the SIEM. Reveal answer details Close answer detailsCorrect answerB
Single choice
Which of the following statements are NOT true when enabling PSM recording for a target Windows server? Choose all that apply Reveal answer details Close answer detailsCorrect answerC
Single choice
In order to retrieve data from the vault a user MUST use an interface provided by CyberArk. Reveal answer details Close answer detailsCorrect answerA
Single choice
It is possible to leverage DNA to provide discovery functions that are not available with auto-detection. Reveal answer details Close answer detailsCorrect answerA Explanation https://docs.cyberark.com/Product-Doc/OnlineHelp/PrivCloud/Latest/en/Content/Privilege%20Cloud/PrivCloud-Assess-network.htm#:~:text=CyberArk%20DNA%20is%20a%20discovery,privileged%20and%20non%2Dprivileged%20accounts.
Single choice
What is the proper way to allow the Vault to resolve host names? Reveal answer details Close answer detailsCorrect answerC
Single choice
What is the maximum number of levels of authorizations you can set up in Dual Control? Reveal answer details Close answer detailsCorrect answerB Explanation Require multi-level password access approval - This advanced setting enforces an access control workflow in which end users require two levels of authorization before they can access privileged accounts. https://docs.cyberark.com/Product-Doc/OnlineHelp/PAS/Latest/en/Content/PASIMP/PVWA-Dual-Control.htm
Single choice
When working with the CyberArk Cluster, the Virtual IP is used by: Reveal answer details Close answer detailsCorrect answerA
Single choice
SAFE Authorizations may be granted to___________________. Reveal answer details Close answer detailsCorrect answerE Explanation https://docs.cyberark.com/Product-Doc/OnlineHelp/PAS/Latest/en/Content/PASIMP/Safes-add-a-safe-member.htm
Multiple choice
Which keys are required to be present in order to start the PrivateArk Server Service? Select all that apply. Reveal answer details Close answer detailsCorrect answersA, B Explanation References:
Single choice
A Logon Account can be specified in the Master Policy Reveal answer details Close answer detailsCorrect answerB Explanation Nowhere in the master policy can you choose a logon account to use. It wouldn't make sense even, as different logon accounts are used for different systems, and master policy applies to all platforms regardless to which system it is used. All available master policy settings can be found here:
Single choice
It is impossible to override Master Policy settings for a Platform. Reveal answer details Close answer detailsCorrect answerB
Single choice
The PSM requires the Remote Desktop Web Access role service. Reveal answer details Close answer detailsCorrect answerB Explanation The RDS that requires PSM is Remote Desktop Session Host. Remote Desktop Gateway, Remote Desktop Web Access, and Remote Desktop Licensing are incorrect.
Single choice
According to the default web options settings, which group grants access to the reports page? Reveal answer details Close answer detailsCorrect answerA Explanation References:
Single choice
tsparm.ini is the main configuration file for the vault. Reveal answer details Close answer detailsCorrect answerB
Single choice
Which user is automatically given all Safe authorizations on all Safes? Reveal answer details Close answer detailsCorrect answerB
Single choice
What is the purpose of the PrivateArk Server service? Reveal answer details Close answer detailsCorrect answerB
Single choice
Can ITALOG records be forwarded to the monitoring solution via Security Information and Event Management (SIEM) integration? Reveal answer details Close answer detailsCorrect answerB
Multiple choice
What are the functions of the Remote Control Agent service? (Choose all that apply.) Reveal answer details Close answer detailsCorrect answersA, B, D
Single choice
The Password upload utility can be used to create safes. Reveal answer details Close answer detailsCorrect answerA Explanation https://docs.cyberark.com/Product-Doc/OnlineHelp/PAS/Latest/en/Content/PASIMP/Password-Upload-Utility.htm
Single choice
What is the primary purpose of Exclusive Accounts? Reveal answer details Close answer detailsCorrect answerC
Single choice
A SIEM integration allows you to forward audit records to a monitoring solution. Reveal answer details Close answer detailsCorrect answerB
Single choice
In Accounts Discovery, you can configure a Windows discovery to scan______________. Reveal answer details Close answer detailsCorrect answerC
Single choice
Which file is used to configure the ENE service? Reveal answer details Close answer detailsCorrect answerC
Single choice
Which credentials does CyberArk use when managing a target account? Reveal answer details Close answer detailsCorrect answerA
Single choice
When working with the CyberArk Cluster, which service is considered Optional (i.e. Reveal answer details Close answer detailsCorrect answerC
Single choice
Which user(s) can access all passwords in the vault? Reveal answer details Close answer detailsCorrect answerD
Single choice
When managing SSH keys, the CPM stores the Public Key ________________. Reveal answer details Close answer detailsCorrect answerB
Single choice
In accordance with best practice. SSH access is denied for root accounts on UNIX/LINUX systems. What is the BEST way to allow CPM to manage root accounts. Reveal answer details Close answer detailsCorrect answerB
Single choice
To support a fault tolerant and high-availability architecture, the Password Vault Web Access (PVWA) servers need to be configured to communicate with the Primary Vault and Satellite Vaults. What file needs to be changed on the PVWA to enable this setup? Reveal answer details Close answer detailsCorrect answerA
Single choice
Users complain they are unsuccessful attempting to authenticate to the PVWA web site. What is the next troubleshooting step you should take? Reveal answer details Close answer detailsCorrect answerC |