
[Sep-2021] Verified CyberArk Exam Dumps with CAU201 Exam Study Guide
Best Quality CyberArk CAU201 Exam Questions ExamBoosts Realistic Practice Exams [2021]
NEW QUESTION 67
You have associated a logon account to one your UNIX cool accounts in the vault. When attempting to
[b]change [/b] the root account's password the CPM will.....
- A. Log in to the system as the logon account, run the su command to log in as root, and then change root's password.
- B. Log in to the system as root, then change root's password
- C. Log in to the system as the logon account, then change roofs password
- D. None of these
Answer: D
NEW QUESTION 68
Platform settings are applied to _________.
- A. The entire vault.
- B. Individual Accounts
- C. Safes
- D. Network Areas
Answer: B
NEW QUESTION 69
Which report provides a list of accounts stored in the vault.
- A. Privileged Accounts Compliance Status
- B. Activity Log
- C. Entitlement Report
- D. Privileged Accounts Inventory
Answer: D
Explanation:
Explanation/Reference: https://techinsight.com.vn/language/en/privileged-account-security-solution-part-2/
NEW QUESTION 70
What is the purpose of the PrivateArk Server service?
- A. Maintains Vault metadata
- B. Makes Vault data accessible to components
- C. Sends email alerts from the Vault
- D. Executes password changes
Answer: B
NEW QUESTION 71
What is the chief benefit of PSM?
- A. 'Privileged session isolation' and 'Privileged session recording'
- B. Privileged session recording
- C. Privileged session isolation
- D. Automatic password management
Answer: B
NEW QUESTION 72
Users can be resulted to using certain CyberArk interfaces (e.g.PVWA or PACLI).
- A. FALS
- B. TRUE
Answer: B
NEW QUESTION 73
The primary purpose of exclusive accounts is to ensure non-repudiation (individual accountability).
- A. TRUE
- B. FALSE
Answer: A
NEW QUESTION 74
When a DR Vault Server becomes an active vault, it will automatically revert back to DR mode once the Primary Vault comes back online.
- A. True, if the AllowFailback setting is set to "yes" in the padr.ini file
- B. True; this is the default behavior
- C. False, the Vault administrator must manually set the DR Vault to DR mode by setting "FailoverMode=no" in the padr.ini file
- D. False, the Vault administrator must manually set the DR Vault to DR mode by setting "FailoverMode=no" in the dbparm.ini file
Answer: C
NEW QUESTION 75
If a user is a member of more than one group that has authorizations on a safe, by default that user is granted____________________.
- A. only those permissions that exist in all groups to which the user belongs.
- B. the vault will not allow this situation to occur.
- C. the cumulative permissions of all the groups to which that user belongs.
- D. only those permissions that exist on the group added to the safe first.
Answer: D
NEW QUESTION 76
In order to connect to a target device through PSM, the account credentials used for the connection must be stored in the vault?
- A. False. Because the user can also enter credentials manually using Secure Connect.
- B. True.
- C. False. Because if credentials are not stored in the vault, the PSM will prompt for credentials.
- D. False. Because if credentials are not stored in the vault, the PSM will log into the target device as PSMConnect.
Answer: A
NEW QUESTION 77
When a group is granted the 'Authorize Account Requests' permission on a safe Dual Control requests must be approved by
- A. That access cannot be granted to groups
- B. Any one person from that group
- C. Every person from that group
- D. The number of persons specified by the Master Policy
Answer: D
NEW QUESTION 78
The vault supports Role Based Access Control.
- A. TRUE
- B. FALSE
Answer: B
Explanation:
Explanation/Reference: https://docs.cyberark.com/Product-Doc/OnlineHelp/PAS/Latest/en/Content/PASIMP/Object-Level- Access-Control.htm
NEW QUESTION 79
It is possible to control the hours of the day during which a user may long into the vault.
- A. TRUE
- B. FALSE
Answer: A
Explanation:
Explanation/Reference: https://isecurenet.net/wp-content/uploads/2016/06/user-sb-cyberark_privileged_threat_analytics-
030916-final-en-web.pdf
NEW QUESTION 80
As long as you are a member of the Vault Admins group you can grant any permission on any safe.
- A. TRUE
- B. FALSE
Answer: B
Explanation:
Being in Vault admins group only give you access to safes which are created during installation (safe created in installation process ) -This is clearly mentioned in documents .
NEW QUESTION 81
CyberArk recommends implementing object level access control on all Safes.
- A. False
- B. True
Answer: A
NEW QUESTION 82
......
Authentic Best resources for CAU201: https://www.examboosts.com/CyberArk/CAU201-practice-exam-dumps.html
CAU201 Test Engine Practice Exam: https://drive.google.com/open?id=1AQsEIksmkIjcDdwDViNIf-ujVPLBE4ej