[Sep-2021] Verified CyberArk Exam Dumps with CAU201 Exam Study Guide [Q67-Q82]

Share

[Sep-2021] Verified CyberArk Exam Dumps with CAU201 Exam Study Guide

Best Quality CyberArk CAU201 Exam Questions ExamBoosts Realistic Practice Exams [2021]

NEW QUESTION 67
You have associated a logon account to one your UNIX cool accounts in the vault. When attempting to
[b]change [/b] the root account's password the CPM will.....

  • A. Log in to the system as the logon account, run the su command to log in as root, and then change root's password.
  • B. Log in to the system as root, then change root's password
  • C. Log in to the system as the logon account, then change roofs password
  • D. None of these

Answer: D

 

NEW QUESTION 68
Platform settings are applied to _________.

  • A. The entire vault.
  • B. Individual Accounts
  • C. Safes
  • D. Network Areas

Answer: B

 

NEW QUESTION 69
Which report provides a list of accounts stored in the vault.

  • A. Privileged Accounts Compliance Status
  • B. Activity Log
  • C. Entitlement Report
  • D. Privileged Accounts Inventory

Answer: D

Explanation:
Explanation/Reference: https://techinsight.com.vn/language/en/privileged-account-security-solution-part-2/

 

NEW QUESTION 70
What is the purpose of the PrivateArk Server service?

  • A. Maintains Vault metadata
  • B. Makes Vault data accessible to components
  • C. Sends email alerts from the Vault
  • D. Executes password changes

Answer: B

 

NEW QUESTION 71
What is the chief benefit of PSM?

  • A. 'Privileged session isolation' and 'Privileged session recording'
  • B. Privileged session recording
  • C. Privileged session isolation
  • D. Automatic password management

Answer: B

 

NEW QUESTION 72
Users can be resulted to using certain CyberArk interfaces (e.g.PVWA or PACLI).

  • A. FALS
  • B. TRUE

Answer: B

 

NEW QUESTION 73
The primary purpose of exclusive accounts is to ensure non-repudiation (individual accountability).

  • A. TRUE
  • B. FALSE

Answer: A

 

NEW QUESTION 74
When a DR Vault Server becomes an active vault, it will automatically revert back to DR mode once the Primary Vault comes back online.

  • A. True, if the AllowFailback setting is set to "yes" in the padr.ini file
  • B. True; this is the default behavior
  • C. False, the Vault administrator must manually set the DR Vault to DR mode by setting "FailoverMode=no" in the padr.ini file
  • D. False, the Vault administrator must manually set the DR Vault to DR mode by setting "FailoverMode=no" in the dbparm.ini file

Answer: C

 

NEW QUESTION 75
If a user is a member of more than one group that has authorizations on a safe, by default that user is granted____________________.

  • A. only those permissions that exist in all groups to which the user belongs.
  • B. the vault will not allow this situation to occur.
  • C. the cumulative permissions of all the groups to which that user belongs.
  • D. only those permissions that exist on the group added to the safe first.

Answer: D

 

NEW QUESTION 76
In order to connect to a target device through PSM, the account credentials used for the connection must be stored in the vault?

  • A. False. Because the user can also enter credentials manually using Secure Connect.
  • B. True.
  • C. False. Because if credentials are not stored in the vault, the PSM will prompt for credentials.
  • D. False. Because if credentials are not stored in the vault, the PSM will log into the target device as PSMConnect.

Answer: A

 

NEW QUESTION 77
When a group is granted the 'Authorize Account Requests' permission on a safe Dual Control requests must be approved by

  • A. That access cannot be granted to groups
  • B. Any one person from that group
  • C. Every person from that group
  • D. The number of persons specified by the Master Policy

Answer: D

 

NEW QUESTION 78
The vault supports Role Based Access Control.

  • A. TRUE
  • B. FALSE

Answer: B

Explanation:
Explanation/Reference: https://docs.cyberark.com/Product-Doc/OnlineHelp/PAS/Latest/en/Content/PASIMP/Object-Level- Access-Control.htm

 

NEW QUESTION 79
It is possible to control the hours of the day during which a user may long into the vault.

  • A. TRUE
  • B. FALSE

Answer: A

Explanation:
Explanation/Reference: https://isecurenet.net/wp-content/uploads/2016/06/user-sb-cyberark_privileged_threat_analytics-
030916-final-en-web.pdf

 

NEW QUESTION 80
As long as you are a member of the Vault Admins group you can grant any permission on any safe.

  • A. TRUE
  • B. FALSE

Answer: B

Explanation:
Being in Vault admins group only give you access to safes which are created during installation (safe created in installation process ) -This is clearly mentioned in documents .

 

NEW QUESTION 81
CyberArk recommends implementing object level access control on all Safes.

  • A. False
  • B. True

Answer: A

 

NEW QUESTION 82
......

Authentic Best resources for CAU201: https://www.examboosts.com/CyberArk/CAU201-practice-exam-dumps.html

CAU201 Test Engine Practice Exam: https://drive.google.com/open?id=1AQsEIksmkIjcDdwDViNIf-ujVPLBE4ej