
Verified CAU201 Dumps Q&As - CAU201 Test Engine with Correct Answers
Pass Your CAU201 Dumps as PDF Updated on 2021 With 179 Questions
NEW QUESTION 73
What is the primary purpose of Dual Control?
- A. Reduced risk of credential theft
- B. Non-repudiation (individual accountability)
- C. To force a 'collusion to commit' fraud ensuring no single actor may use a password without authorization.
- D. More frequent password changes
Answer: C
NEW QUESTION 74
Which of the following files must be created or configured in order to run Password Upload Utility? Select all that apply.
- A. Vault.ini
- B. PACli.ini
- C. A comma delimited upload file
- D. conf.ini
Answer: D
Explanation:
Explanation/Reference: https://www.reddit.com/r/CyberARk/comments/84gfsb/password_upload_utility_error/
NEW QUESTION 75
As long as you are a member of the Vault Admins group you can grant any permission on any safe.
- A. FALSE
- B. TRUE
Answer: A
NEW QUESTION 76
Time of day or day of week restrictions on when password verifications can occur configured in ____________________.
- A. The Platform settings
- B. The Master Policy
- C. The Safe settings
- D. The Account Details
Answer: A
NEW QUESTION 77
SAFE Authorizations may be granted to____________.
Select all that apply.
- A. Vault Group
- B. LDAP Groups
- C. LDAP Users
- D. Vault Users
Answer: B
NEW QUESTION 78
It is possible to leverage DNA to provide discovery functions that are not available with auto-detection.
- A. FALSE
- B. TRUE
Answer: B
NEW QUESTION 79
Which onboarding method would you use to integrate CyberArk with your accounts provisioning process?
- A. PTA Rules
- B. Accounts Discovery
- C. Auto Detection
- D. Onboarding RestAPI functions
Answer: C
NEW QUESTION 80
Which utilities could you use to change debugging levels on the vault without having to restart the vault.
Select all that apply.
- A. PrivateArk Server Central Administration
- B. PAR Agent
- C. Setup.exe
- D. Edit DBParm.ini in a text editor.
Answer: A,B
Explanation:
Explanation
PAR-Private Ark Remote Control Agent allows you to perform several Vault admin tasks (without restarting the Vault) and view machine statistics.
NEW QUESTION 81
According to the DEFAULT Web Options settings, which group grants access to the REPORTS page?
- A. PVWAUsers
- B. Vault Admins
- C. PVWAMonitor
- D. Auditors
Answer: C
Explanation:
Explanation/Reference: https://docs.cyberark.com/Product-Doc/OnlineHelp/PAS/Latest/en/Content/PASIMP/ ReportsInPVWA.htm
NEW QUESTION 82
For a safe with Object Level Access enabled you can turn off Object Level Access Control when it no longer needed on the safe.
- A. FALSE
- B. TRUE
Answer: A
Explanation:
Explanation/Reference: https://docs.cyberark.com/Product-Doc/OnlineHelp/PAS/Latest/en/Content/PASIMP/Object-Level- Access-Control.htm
NEW QUESTION 83
For an account attached to a platform that requires Dual Control based on a Master Policy exception, how
would you configure a group of users to access a password without approval.
- A. Create an exception to the Master Policy to exclude the group from the workflow process.
- B. Edit the master policy rule and modify the advanced 'Access safe without approval' rule to include the
group. - C. On the safe in which the account is stored grant the group the 'Access safe without confirmation'
authorization. - D. On the safe in which the account is stored grant the group the 'Access safe without audit' authorization.
Answer: A
Explanation:
Explanation/Reference: https://www.reddit.com/r/CyberARk/comments/6270zr/dual_control_on_specific_accounts/
NEW QUESTION 84
Which of the following statements are NOT true when enabling PSM recording for a target Windows server?
Choose all that apply.
- A. The PSM software must be installed on the target server.
- B. PSMConnect must be added as a local user on the target server.
- C. PSM must be enabled in the Master Policy (either directly, or through exception).
- D. RDP must be enabled on the target server.
Answer: B
NEW QUESTION 85
What is the purpose of the Interval setting in a CPM policy?
- A. To control the maximum amount of time the CPM will wait for a password change to complete.
- B. To control how long the CPM rests between password changes.
- C. To control how often the CPM looks for System Initiated CPM work.
- D. To control how often the CPM looks for User Initiated CPM work.
Answer: C
NEW QUESTION 86
Which of the following PTA detections are included in the Core PAS offering?
- A. Suspected Credential Theft
- B. Over-Pass-The Hash
- C. Unmanaged Privileged Access
- D. Golden Ticket
Answer: C
Explanation:
Explanation/Reference: https://docs.cyberark.com/Product-Doc/OnlineHelp/PAS/Latest/en/Content/PTA/What-Does-PTA- Detect.htm
NEW QUESTION 87
What is the purpose of the PrivateArk Database service?
- A. Sends email alerts from the Vault
- B. Maintains Vault metadata
- C. Executes password changes
- D. Communicates with components
Answer: B
NEW QUESTION 88
What is the chief benefit of PSM?
- A. Automatic password management
- B. Privileged session recording
- C. Privileged session isolation
- D. 'Privileged session isolation' and 'Privileged session recording'
Answer: B
NEW QUESTION 89
As long as you are a member of the Vault Admins group you can grant any permission on any safe.
- A. FALSE
- B. TRUE
Answer: A
Explanation:
Being in Vault admins group only give you access to safes which are created during installation (safe created in installation process ) -This is clearly mentioned in documents .
NEW QUESTION 90
Which one of the following reports is NOT generated by using the PVWA?
- A. Application Inventory
- B. Safes List
- C. Compliance Status
- D. Account Inventory
Answer: B
Explanation:
Explanation/Reference:
Reference: https://techinsight.com.vn/language/en/privileged-account-security-solution-part-2/
NEW QUESTION 91
All of your Unix root passwords are stored in the safe UnixRoot. Dual control is enabled for some of the accounts in that safe. The members of the AD group UnixAdmins need to be able to use the show, copy, and connect buttons on those passwords at any time without confirmation. The members of the AD group Operations Staff need to be able to use the show, copy and connect buttons on those passwords on an emergency basis, but only with the approval of a member of Operations Managers never need to be able to use the show, copy or connect buttons themselves.
Which safe permission do you need to grant Operations Staff? Check all that apply.
- A. Access Safe without Authorization
- B. Authorize Password Requests
- C. Use Accounts
- D. Retrieve Accounts
Answer: B
NEW QUESTION 92
The System safe allows access to the Vault configuration files.
- A. FALSE
- B. TRUE
Answer: A
Explanation:
Explanation/Reference:
NEW QUESTION 93
The Password upload utility can be used to create safes.
- A. FALSE
- B. TRUE
Answer: B
Explanation:
Explanation/Reference:
https://docs.cyberark.com/Product-Doc/OnlineHelp/PAS/Latest/en/Content/PASIMP/Password-Upload- Utility.htm
NEW QUESTION 94
......
For more info visit:
CyberArk CAU201 Exam Reference
Pass CyberArk CAU201 Exam Info and Free Practice Test: https://www.pass4sures.top/CyberArk-Defender/CAU201-testking-braindumps.html