[Mar-2022] Latest CyberArk CAU201 exam dumps and online Test Engine [Q19-Q39]

Share

[Mar-2022] Latest CyberArk CAU201 exam dumps and online Test Engine

CyberArk CAU201: Selling CyberArk Defender Products and Solutions

NEW QUESTION 19
Users can be restricted through certain CyberArk interfaces (e.g. PVWA or PACLI).

  • A. TRUE
  • B. FALSE

Answer: A

 

NEW QUESTION 20
All of your Unix root passwords are stored in the safe UnixRoot. Dual control is enabled for some of the accounts in that safe. The members of the AD group UnixAdmins need to be able to use the show, copy, and connect buttons on those passwords at any time without confirmation. The members of the AD group Operations Staff need to be able to use the show, copy and connect buttons on those passwords on an emergency basis, but only with the approval of a member of Operations Managers never need to be able to use the show, copy or connect buttons themselves.
Which safe permission do you need to grant Operations Staff? Check all that apply.

  • A. Use Accounts
  • B. Authorize Password Requests
  • C. Retrieve Accounts
  • D. Access Safe without Authorization

Answer: A,B,C

 

NEW QUESTION 21
One can create exceptions to the Master Policy based on ____________________.

  • A. Platforms
  • B. Accounts
  • C. Safes
  • D. Policies

Answer: B

Explanation:
Explanation/Reference: https://docs.cyberark.com/Product-Doc/OnlineHelp/PAS/Latest/en/Content/PASIMP/The-Master- Policy.htm

 

NEW QUESTION 22
A new HTML5 Gateway has been deployed in your organization.
Where do you configure the PSM to use the HTML5 Gateway?

  • A. Administration > Options > Privileged Session Management > Configured PSM Servers > Connection Details
  • B. Administration > Options > Privileged Session Management > Configured PSM Servers > Add PSM Gateway
  • C. Administration > Options > Privileged Session Management > Add Configured PSM Gateway Servers
  • D. Administration > Options > Privileged Session Management > Configured PSM Servers > Connection Details > Add PSM Gateway

Answer: D

Explanation:
Reference:
%7CConfiguration%7C_____10

 

NEW QUESTION 23
Which of the following Privileged Session Management solutions provide a detailed audit log of session
activities?

  • A. PSM for SSH (previously known as PSM SSH Proxy)
  • B. All of the above
  • C. PSM (i.e., launching connections by clicking on the "Connect" button in the PVWA)
  • D. PSM for Windows (previously known as RDP Proxy)

Answer: C

 

NEW QUESTION 24
In accordance with best practice, SSH access is denied for root accounts on UNIXLINUX system.
What is the BEST way to allow CPM to manage root accounts?

  • A. Create a privileged account on the target server. Allow this account the ability to SSH directly from the CPM machine. Configure this account of the target server's root account.
  • B. Configure the Unix system to allow SSH logins.
  • C. Create a non-privileged account on the target server. Allow this account the ability to SSH directly from the CPM machine. Configure this account as the Logon account of the target server's root account.
  • D. Configure the CPM to allow SSH logins.

Answer: C

Explanation:
Explanation/Reference:

 

NEW QUESTION 25
Which user(s) can access all passwords in the Vault?

  • A. Master
  • B. Administrator
  • C. Any member of auditors
  • D. Any member of Vault administrators

Answer: A

 

NEW QUESTION 26
If a user is a member of more than one group that has authorizations on a safe, by default that user is granted________.

  • A. the vault will not allow this situation to occur.
  • B. only those permissions that exist on the group added to the safe first.
  • C. the cumulative permissions of all groups to which that user belongs.
  • D. only those permissions that exist in all groups to which the user belongs.

Answer: B

 

NEW QUESTION 27
When on-boarding account using Accounts Feed, Which of the following is true?

  • A. You must specify an existing Safe where are account will be stored whenitis on boarded to the Vault
  • B. You can specify the name of a new Platform that will be created and associated with the account
  • C. Any account that is on boarded can beautomaticallyreconciled regardless ofthe platformit isassociated with.
  • D. You can specify the name of a new sale that will be created where the account will be stored when it is on-boarded to the Vault.

Answer: C

 

NEW QUESTION 28
Arrange the steps to restore a Vault using PARestore for a Backup in the correct sequence.

Answer:

Explanation:

 

NEW QUESTION 29
A user is receiving the error message "ITATS006E Station is suspended for User jsmith" when attempting to sign into the Password Vault Web Access (PVWA). Which utility would a Vault administrator use to correct this problem?

  • A. PrivateArk
  • B. PVWA
  • C. cavaultmanager.exe
  • D. createcredfile.exe

Answer: A

 

NEW QUESTION 30
A Vault Administrator team member can log in to CyberArk, but for some reason, is not given Vault Admin rights.
Where can you check to verify that the Vault Admins directory mapping points to the correct AD group?

  • A. PVWA > User Provisioning > LDAP Integration > Mapping Criteria
  • B. PVWA > Administration > LDAP Integration > Mappings
  • C. PVWA > User Provisioning > LDAP Integration > Map Name
  • D. PVWA > Administration > LDAP Integration > AD Groups

Answer: B

 

NEW QUESTION 31
You have associated a logon account to one your UNIX cool accounts in the vault. When attempting to [b]change [/b] the root account's password the CPM will.....

  • A. None of these
  • B. Log in to the system as the logon account, then change roofs password
  • C. Log in to the system as the logon account, run the su command to log in as root, and then change root's password.
  • D. Log in to the system as root, then change root's password

Answer: C

 

NEW QUESTION 32
A new domain controller has been added to your domain. You need to ensure the CyberArk infrastructure can use the new domain controller for authentication.
Which locations must you update?

  • A. on the Vault server in Windows\System32\Etc\Hosts and on the PVWA server in Windows\System32\Etc\Hosts
  • B. on the Vault server in the certificate store and on the PVWA server in the certificate store
  • C. on the Vault server in Windows\System32\Etc\Hosts and in the PVWA Application under Administration > LDAP Integration > Directories > Hosts
  • D. in the Private Ark client under Tools > Administrative Tools > Directory Mapping

Answer: D

Explanation:
Reference:
%20user%20management%20using%20LDAP%7C_____2

 

NEW QUESTION 33
Match the connection component to the corresponding OS/Function.

Answer:

Explanation:

 

NEW QUESTION 34
By default, members of which built-in groups will be able to view and configure Automatic Remediation and Session Analysis and Response in the PVWA?

  • A. Auditors
  • B. Security Admins
  • C. Vault Admins
  • D. Security Operators

Answer: B

Explanation:
Explanation/Reference: https://docs.cyberark.com/Product-Doc/OnlineHelp/PAS/Latest/en/Content/PTA/Security- Configuration.htm

 

NEW QUESTION 35
It is possible to leverage DNA to provide discovery functions that are not available with auto-detection.

  • A. FALS
  • B. TRUE

Answer: B

 

NEW QUESTION 36
What is the purpose of the PrivateArk Server service?

  • A. Executes password changes
  • B. Makes Vault data accessible to components
  • C. Maintains Vault metadata
  • D. Sends email alerts from the Vault

Answer: B

 

NEW QUESTION 37
It is possible to restrict the time of day, or day of week that a [b]verify[/b] process can occur

  • A. TRUE
  • B. FALSE

Answer: A

Explanation:
Explanation
Password verification can be restricted to specific days. This means that the CPM will only verify passwords on the days of the week specified in the VFExecutionDays parameter. The days of the week are represented by the first 3 letters of the name of the day. Sunday is represented by Sun, Monday by Mon, etc.

 

NEW QUESTION 38
Time of day or day of week restrictions on when password verifications can occur configured in
____________________.

  • A. The Account Details
  • B. The Safe settings
  • C. The Platform settings
  • D. The Master Policy

Answer: C

Explanation:
Explanation/Reference: https://docs.cyberark.com/Product-Doc/OnlineHelp/PAS/Latest/en/Content/PASIMP/Verifying- Passwords.htm

 

NEW QUESTION 39
......

New 2022 CAU201 Test Tutorial (Updated 179 Questions): https://www.pass4sures.top/CyberArk-Defender/CAU201-testking-braindumps.html