Get New 2023 Valid Practice CyberArk Defender CAU201 Q&A - Testing Engine [Q36-Q51]

Share

Get New 2023 Valid Practice CyberArk Defender CAU201 Q&A - Testing Engine

CAU201 Dumps PDF - 100% Passing Guarantee

NEW QUESTION # 36
Which of these accounts onboarding methods is considered proactive?

  • A. Detecting accounts with PTA
  • B. A DNA scan
  • C. Accounts Discovery
  • D. A Rest API integration with account provisioning software

Answer: A


NEW QUESTION # 37
Users are unable to launch Web Type Connection components from the PSM server. Your manager asked you to open the case with CyberArk Support.
Which logs will help the CyberArk Support Team debug the issue? (Choose three.)

  • A. <Session_ID>.Component.log
  • B. PSMDebug.log
  • C. PMconsole.log
  • D. PSMTrace.log
  • E. ITAlog.log
  • F. PSMConsole.log

Answer: B,D,E


NEW QUESTION # 38
Which command configures email alerts within PTA if settings need to be changed post install?

  • A. /opt/PTA/utility/emailConfig.sh
  • B. /opt/PTA/emailConfiguration.sh
  • C. /opt/tomcat/utility/emailConfiguration.sh
  • D. /opt/tomcat/utility/emailSetup.sh

Answer: C


NEW QUESTION # 39
You are creating a Dual Control workflow for a team's safe.
Which safe permissions must you grant to the Approvers group?

  • A. Retrieve accounts, Authorize account request
  • B. List accounts, Unlock accounts
  • C. Retrieve accounts, Access Safe without confirmation
  • D. List accounts, Authorize account request

Answer: A


NEW QUESTION # 40
What is the primary purpose of Dual Control?

  • A. More frequent password changes
  • B. Non-repudiation (individual accountability)
  • C. Reduced risk of credential theft
  • D. To force a 'collusion to commit' fraud ensuring no single actor may use a password without authorization.

Answer: D


NEW QUESTION # 41
What is the purpose of the password change process?

  • A. To allow CyberArk to manage unknown or lost credentials
  • B. To change the password of an account according to organizationally defined password rules
  • C. To generate a new complex password
  • D. To test that CyberArk is storing accurate credentials for accounts

Answer: B


NEW QUESTION # 42
In accordance with best practice, SSH access is denied for root accounts on UNIXLINUX system.
What is the BEST way to allow CPM to manage root accounts?

  • A. Create a privileged account on the target server. Allow this account the ability to SSH directly from the CPM machine. Configure this account of the target server's root account.
  • B. Configure the CPM to allow SSH logins.
  • C. Create a non-privileged account on the target server. Allow this account the ability to SSH directly from the CPM machine. Configure this account as the Logon account of the target server's root account.
  • D. Configure the Unix system to allow SSH logins.

Answer: C


NEW QUESTION # 43
According to the DEFAULT Web Options settings, which group grants access to the REPORTS page?

  • A. PVWAUsers
  • B. PVWAMonitor
  • C. Auditors
  • D. Vault Admins

Answer: B

Explanation:
Explanation/Reference: https://docs.cyberark.com/Product-Doc/OnlineHelp/PAS/Latest/en/Content/PASIMP/ ReportsInPVWA.htm


NEW QUESTION # 44
It is possible to control the hours of the day during which a user may log into the vault.

  • A. TRUE
  • B. FALSE

Answer: B


NEW QUESTION # 45
For an account attached to a platform that requires Dual Control based on a Master Policy exception, how would you configure a group of users to access a password without approval.

  • A. Edith the master policy rule and modify the advanced' Access safe without approval' rule to include the group.
  • B. On the safe in which the account is stored grant the group the' Access safe without audit' authorization.
  • C. On the safe in which the account is stored grant the group the' Access safe without confirmation' authorization.
  • D. Create an exception to the Master Policy to exclude the group from the workflow process.

Answer: C


NEW QUESTION # 46
Which Master Policy Setting must be active in order to have an account checked-out by one user for a pre-determined amount of time?

  • A. Enforce check-in/check-out exclusive access
  • B. Require dual control password access Approval
  • C. Enforce one-time password access
  • D. Enforce check-in/check-out exclusive access & Enforce one-time password access

Answer: A


NEW QUESTION # 47
Which of the Following can be configured in the Master Poky? Choose all that apply.

  • A. Password Aging Rules
  • B. Password Reconciliation
  • C. One Time Passwords
  • D. Exclusive Passwords
  • E. Custom Connection Components
  • F. Dual Control
  • G. Ticketing Integration
  • H. Required Properties

Answer: A,C,D,F


NEW QUESTION # 48
You need to enable the PSM for all platforms.
Where do you perform this task?

  • A. Platform Management > (Platform) > UI & Workflows
  • B. Administration > Options > Connection Components
  • C. Master Policy > Privileged Access Workflows
  • D. Master Policy > Session Management

Answer: A


NEW QUESTION # 49
PSM for Windows (previously known as "RDP Proxy") supports connections to the following target systems

  • A. Windows
  • B. Oracle
  • C. UNIX
  • D. All of the above

Answer: A

Explanation:
Explanation/Reference: https://knowhow.tajco-group.com/knowledge-base/using-a-standard-rdp-client-application/


NEW QUESTION # 50
Assuming a safe has been configured to be accessible during certain hours of the day, a Vault Admin may still access that safe outside of those hours.

  • A. TRUE
  • B. FALSE

Answer: B


NEW QUESTION # 51
......

CAU201 Braindumps Real Exam Updated on Nov 02, 2023 with 179 Questions: https://freedumps.torrentvalid.com/CAU201-valid-braindumps-torrent.html