CAU201 Exam Questions
166 real CAU201 exam questions with expert-verified answers and explanations. Page 1 of 4.
- Question #1
Which Cyber Are components or products can be used to discover Windows Services or Scheduled Tasks that use privileged accounts? Select all that apply.
- Question #2
A Reconcile Account can be specified in the Master Policy.
- Question #3
In order to connect to a target device through PSM, the account credentials used for the connection must be stored in the vault?
- Question #4
SAFE Authorizations may be granted to____________. Select all that apply.
- Question #5
Secure Connect provides the following. Choose all that apply.
- Question #6
Ad-Hoc Access (formerly Secure Connect) provides the following features. Choose all that apply.
- Question #7
When a group is granted the 'Authorize Account Requests' permission on a safe Dual Control requests must be approved by
- Question #8
When managing SSH keys, the CPM stored the Private Key
- Question #9
When managing SSH keys, the CPM stores the Public Key
- Question #10
Accounts Discovery allows secure connections to domain controllers.
- Question #11
Which parameter controls how often the CPM looks for Soon-to-be-expired Passwords that need to be changed.
- Question #12
Vault admins must manually add the auditors group to newly created safes so auditors will have sufficient access to run reports.
- Question #13
Which of the following Privileged Session Management solutions provide a detailed audit log of session activities?
- Question #14
What is the primary purpose of Dual Control?
- Question #15
Time of day or day of week restrictions on when password verifications can occur configured in ____________________.
- Question #16
Which parameter controls how often the CPM looks for accounts that need to be changed from recently completed Dual control requests.
- Question #17
According to the DEFAULT Web Options settings, which group grants access to the REPORTS page?
- Question #18
Which Master Policy Setting must be active in order to have an account checked-out by one user for a pre-determined amount of time?
- Question #19
The password upload utility must run from the CPM server
- Question #20
For a safe with Object Level Access enabled you can turn off Object Level Access Control when it no longer needed on the safe.
- Question #21
The vault supports Subnet Based Access Control.
- Question #22
When creating an onboarding rule, it will be executed upon .
- Question #23
How does the Vault administrator apply a new license file?
- Question #24
When Dual Control is enabled a user must first submit a request in the Password Vault Web Access (PVWA) and receive approval before being able to launch a secure connection via PSM...
- Question #25
Which of the following PTA detections require the deployment of a Network Sensor or installing the PTA Agent on the domain controller?
- Question #26
Via Password Vault Web Access (PVWA), a user initiates a PSM connection to the target Linux machine using RemoteApp. When the client's machine makes an RDP connection to the PSM se...
- Question #27
Which report shows the accounts that are accessible to each user?
- Question #28
The Vault administrator can change the Vault license by uploading the new license to the system Safe.
- Question #29
A Vault administrator have associated a logon account to one of their Unix root accounts in the vault. When attempting to verify the root account's password the Central Policy Mana...
- Question #30
Which is the primary purpose of exclusive accounts?
- Question #31
What is the chief benefit of PSM?
- Question #32
A Simple Mail Transfer Protocol (SMTP) integration is critical for monitoring Vault activity and facilitating workflow processes, such as Dual Control.
- Question #33
CyberArk recommends implementing object level access control on all Safes.
- Question #34
Which of the following logs contains information about errors related to PTA?
- Question #35
An auditor initiates a live monitoring session to PSM server to view an ongoing live session. When the auditor's machine makes an RDP connection the PSM server, which user will be...
- Question #36
Which keys are required to be present in order to start the PrivateArk Server service?
- Question #37
Which of the following Privileged Session Management (PSM) solutions support live monitoring of active sessions?
- Question #38
Within the Vault each password is encrypted by:
- Question #39
When a DR Vault Server becomes an active vault, it will automatically revert back to DR mode once the Primary Vault comes back online.
- Question #40
Which user(s) can access all passwords in the Vault?
- Question #41
Which report could show all accounts that are past their expiration dates?
- Question #42
Which values are acceptable in the address field of an Account?
- Question #43
tsparm.ini is the main configuration file for the Vault.
- Question #44
Which combination of Safe member permissions will allow end users to log in to a remote machine transparently but NOT show or copy the password?
- Question #45
A logon account can be specified in the platform settings.
- Question #46
Which type of automatic remediation can be performed by the PTA in case of a suspected credential theft security event?
- Question #47
dbparm.ini is the main configuration file for the Vault.
- Question #48
A user has successfully conducted a short PSM session and logged off. However, the user cannot access the Monitoring tab to view the recordings. What is the issue?
- Question #49
Which of the following components can be used to create a tape backup of the Vault?
- Question #50
Which of the following are secure options for storing the contents of the Operator CD, while still allowing the contents to be accessible upon a planned Vault restart? (Choose thre...