CyberArk CAU302 CyberArk Defender + Sentry Online Training
CyberArk CAU302 Online Training
The questions for CAU302 were last updated at Nov 19,2024.
- Exam Code: CAU302
- Exam Name: CyberArk Defender + Sentry
- Certification Provider: CyberArk
- Latest update: Nov 19,2024
To support a fault tolerant and high-availability architecture, the Password Vault Web Access (PVWA) servers need to be configured to communicate with the Primary Vault and Satellite Vaults.
What file needs to be changed on the PVWA to enable this setup?
- A . Vault.ini
- B . dbparm.ini
- C . pvwa.ini
- D . Satellite.ini
Vault admins must manually add the auditors group to newly created safes so auditors will have sufficient access to run reports.
- A . TRUE
- B . FALSE
When a group is granted the ‘Authorize Account Requests’ permission on a safe Dual Control requests must be approved by:
- A . Any one person from that group
- B . Every person from that group
- C . The number of persons specified by the Master Policy
- D . That access cannot be granted to groups
When creating an onboarding rule, it will be executed upon.
- A . All accounts in the pending accounts list.
- B . Any future accounts discovered by a discovery process.
- C . All accounts in the pending accounts list and any future accounts discovered by a discovery process.
You are successfully managing passwords in the alpha.cyberark com domain; however when you attempt to manage a password in the beta.cyberark.com domain, you receive the ‘network path not found* error.
What should you check first?
- A . That the username and password are correct.
- B . That the CPM can successfully resolve addresses in the beta cyberark com domain
- C . That the end user has the correct permissions on the safe
- D . That an appropriate trust relationship exists between alphaxyberark.com and beta.cyberark.com
Which service should NOT be running on the DR Vault when the primary production Vault is up?
- A . PrivateArk Database
- B . PrivateArk Server
- C . CyberArk Vault Disaster Recovery Service
- D . CyberArk Logical Container
Which of the following statements are NOT true when enabling PSM recording for a target Windows server? Choose all that apply
- A . The PSM software must be installed on the target server
- B . PSM must be enabled in the Master Policy {either directly, or through exception).
- C . PSMConnect must be added as a local user on the target server
- D . RDP must be enabled on the target server
What is the primary purpose of Exclusive Accounts?
- A . Reduced risk of credential theft
- B . More frequent password changes
- C . Non-repudiation (individual accountability)
- D . To force a ‘collusion to commit’ fraud ensuring no single actor may use a password without authorization
Which of the following are prerequisites for installing PVWA Check all that Apply
- A . Web Services Role
- B . NET 4.5.1 Framework Feature
- C . Remote Desktop Services Role
- D . Windows BitLocker