[Q58-Q78] Pass Your CAU201 Exam Easily With 100% Exam Passing Guarantee [2022]

Share

Pass Your CAU201 Exam Easily With 100% Exam Passing Guarantee [2022]

CAU201 Dumps are Available for Instant Access from DumpStillValid


Understanding functional and technical aspects of CyberArk Ongoing Maintenance

The following will be discussed in the CAU-201 exam dumps:

  • Create or Upvote an ER
  • Open a support case with appropriate description and severity
  • Backup Vault Data with PAReplicate
  • Ensure each component is operational
  • Restore DR to normal operation after a failover
  • Resync a credential file by running createcredfile manually on the command line
  • Identify and locate component configuration files

The benefit in Obtaining the CAU201 Exam Certification

The Defender Certification shows off skills and improves career for:

  • IT professional who are working with the CyberArk PAS Solution on a regular basis
  • IT Personnel whoever can afford 1st level aid for the products
  • IT Personnel whoever can make primary configuration settings to the system
  • Whoever is able to open a support ticket with CyberArk 2nd level assistance

 

NEW QUESTION 58
Within the Vault each password is encrypted by:

  • A. its own unique key
  • B. the recovery private key
  • C. the recovery public key
  • D. the server key

Answer: A

 

NEW QUESTION 59
Which report could show all accounts that are past their expiration dates?

  • A. Activity log
  • B. Privileged Account Compliance Status report
  • C. Application Inventory report
  • D. Privileged Account Inventory report

Answer: B

 

NEW QUESTION 60
As long as you are a member of the Vault Admins group you can grant any permission on any safe.

  • A. FALSE
  • B. TRUE

Answer: A

Explanation:
Explanation
Being in Vault admins group only give you access to safes which are created during installation (safe created in installation process ) -This is clearly mentioned in documents .

 

NEW QUESTION 61
Match each permission to where it can be found.

Answer:

Explanation:

 

NEW QUESTION 62
Target account platforms can be restricted to accounts that are stored in specific Safes using the AllowedSafes
property.

  • A. FALSE
  • B. TRUE

Answer: A

 

NEW QUESTION 63
Users are unable to launch Web Type Connection components from the PSM server. Your manager asked you to open the case with CyberArk Support.
Which logs will help the CyberArk Support Team debug the issue? (Choose three.)

  • A. <Session_ID>.Component.log
  • B. PSMDebug.log
  • C. PMconsole.log
  • D. PSMTrace.log
  • E. PSMConsole.log
  • F. ITAlog.log

Answer: B,D,F

 

NEW QUESTION 64
The Password upload utility can be used to create safes.

  • A. TRUE
  • B. FALSE

Answer: A

Explanation:
Explanation/Reference:
https://docs.cyberark.com/Product-Doc/OnlineHelp/PAS/Latest/en/Content/PASIMP/Password-Upload- Utility.htm

 

NEW QUESTION 65
Accounts Discovery allows secure connections to domain controllers.

  • A. FALSE
  • B. TRUE

Answer: A

 

NEW QUESTION 66
In accordance with best practice, SSH access is denied for root accounts on UNIXLINUX system.
What is the BEST way to allow CPM to manage root accounts?

  • A. Create a privileged account on the target server. Allow this account the ability to SSH directly from the CPM machine. Configure this account of the target server's root account.
  • B. Configure the Unix system to allow SSH logins.
  • C. Create a non-privileged account on the target server. Allow this account the ability to SSH directly from the CPM machine. Configure this account as the Logon account of the target server's root account.
  • D. Configure the CPM to allow SSH logins.

Answer: C

Explanation:
Explanation/Reference:

 

NEW QUESTION 67
What is the purpose of the password change process?

  • A. To test that CyberArk is storing accurate credentials for accounts
  • B. To allow CyberArk to manage unknown or lost credentials
  • C. To generate a new complex password
  • D. To change the password of an account according to organizationally defined password rules

Answer: D

 

NEW QUESTION 68
Which of the following options is not set in the Master Policy?

  • A. Password Complexity
  • B. The use of "One-Time-Passwords"
  • C. Enabling and Disabling of the Connection Through the PSM
  • D. Password Expiration Time

Answer: A

 

NEW QUESTION 69
When managing SSH keys, the CPM stores the Public Key

  • A. In the Vault
  • B. A & B
  • C. On the target server
  • D. Nowhere because the public key can always be generated from the private key.

Answer: C

Explanation:
Explanation/Reference: https://docs.cyberark.com/Product-Doc/OnlineHelp/PAS/Latest/en/Content/SSHKM/Managing%
20SSH%20Keys.htm

 

NEW QUESTION 70
It is possible to restrict the time of day, or day of week that a reconcile process can occur.

  • A. FALSE
  • B. TRUE

Answer: A

 

NEW QUESTION 71
What is the primary purpose of One Time Passwords?

  • A. Non-repudiation (individual accountability)
  • B. To force a 'collusion to commit' fraud ensuring no single actor may use a password without authorization.
  • C. Reduced risk of credential theft
  • D. More frequent password changes

Answer: C

Explanation:
Explanation/Reference:

 

NEW QUESTION 72
It is possible to control the hours of the day during which a user may long into the vault.

  • A. TRUE
  • B. FALSE

Answer: A

Explanation:
Explanation/Reference: https://isecurenet.net/wp-content/uploads/2016/06/user-sb-cyberark_privileged_threat_analytics-
030916-final-en-web.pdf

 

NEW QUESTION 73
What is the purpose of the PrivateArk Database service?

  • A. Executes password changes
  • B. Communicates with components
  • C. Maintains Vault metadata
  • D. Sends email alerts from the Vault

Answer: C

 

NEW QUESTION 74
In order to connect to a target device through PSM, the account credentials used for the connection must be stored in the vault?

  • A. False. Because if credentials are not stored in the vault, the PSM will log into the target device as PSMConnect.
  • B. True.
  • C. False. Because the user can also enter credentials manually using Secure Connect.
  • D. False. Because if credentials are not stored in the vault, the PSM will prompt for credentials.

Answer: C

Explanation:
Explanation/Reference:

 

NEW QUESTION 75
Assuming a safe has been configured to be accessible during certain hours of the day, a Vault Admin may still access that safe outside of those hours.

  • A. FALSE
  • B. TRUE

Answer: A

Explanation:
Explanation/Reference: https://www.freshers360.com/wp-content/uploads/2019/05/Privileged-Account-Security- Implementation-Guide.pdf

 

NEW QUESTION 76
In the screenshot displayed, you just configured the usage in CyberArk and want to update its password.
What is the least intrusive way to accomplish this?

  • A. Use the "reconcile" button on the parent account's details page.
  • B. Use the "sync" button on the usage's details page.
  • C. Use the "change" button on the parent account's details page.
  • D. Use the "change" button on the usage's details page.

Answer: C

 

NEW QUESTION 77
In order to connect to a target device through PSM, the account credentials used for the connection must be stored in the vault?

  • A. False. Because if credentials are not stored in the vault, the PSM will log into the target device as PSM Connect.
  • B. True.
  • C. False. Because if credentials are not stored in the vault, the PSM will prompt for credentials.
  • D. False. Because the user can also enter credentials manually using Secure Connect.

Answer: C

 

NEW QUESTION 78
......

Study resources for the Valid CAU201 Braindumps: https://www.dumpstillvalid.com/CAU201-prep4sure-review.html