CyberArk CAU302 CyberArk Defender + Sentry Online Training
CyberArk CAU302 Online Training
The questions for CAU302 were last updated at Nov 22,2024.
- Exam Code: CAU302
- Exam Name: CyberArk Defender + Sentry
- Certification Provider: CyberArk
- Latest update: Nov 22,2024
What is the purpose of the CyberArk Event Notification Engine service.
- A . It sends email messages from the CPM
- B . It sends email messages from the Vault.
- C . It processes audit report messages
- D . It makes vault data available to components.
Any user can monitor live sessions in real time when users initiate RDP connection via Secure Connect through PSM?
- A . TRUE
- B . FALSE
A safe was recently created by a user who is a member of the LDAP Vault Administrators group.
Which of the following users does not have access to the newly created safe by default?
- A . Master
- B . Administrator
- C . Auditor
- D . Backup
Which file is used to configure the ENE service?
- A . ENE.ini
- B . ENEConfig.ini
- C . dbparm.ini
- D . paragent.ini
All of your Unix root passwords are stored in the safe UnixRoot. Dual control is enabled for some of the accounts in that safe The members of the AD group UnixAdmms need to be able to use the show, copy, and connect buttons on those passwords at any time without confirmation The members of the AD group OperationsStaff need to be able to use the show, copy and connect buttons on those passwords on an emergency basis, but only with the approval of a member of OperationsManagers The members of OperationsManagers never need to be able to use the show, copy or connect buttons themselves.
Which safe permissions do you need to grant to UnixAdmins? Check all that apply
- A . Use Accounts
- B . Retrieve Accounts
- C . List Accounts
- D . Authorize Password Requests
- E . Access Safe without Authorization
When managing SSH keys, the CPM stores the Public Key ________________.
- A . In the Vault
- B . On the target server
- C . A & B
- D . Nowhere because the public key can always be generated from the private key
The ACME Company has been a CyberArk customer for many years. ACME Management has asked you to perform a “Health Check" review of the CyberArk deployment. During your analysis you discover that the PSM Component server is fully functional. The RDP SSL certificate is self-signed and the CyberArk Privileged Session Management Service is running under the Local Service. SSL 3.0 is enabled in the Registry.
- A . The PSM Component Server is configured as defined in PAS Installation Guide.
- B . The PSM Component Server has been installed correctly but PSM Hardening procedures have not been followed and must be rebuilt.
- C . The PSM Component Server has been installed correctly but PSM Hardening procedures have not been followed. Hardening procedures must be applied manually to the existing configuration.
- D . The PSM Component Server has been installed correctly but PVWA Hardening procedures have not been followed. Hardening procedures can be applied via the Installation Automation script or manually to the existing configuration.
All of your Unix root passwords are stored in the safe UnixRoot. Dual control is enabled for some of the accounts in that safe. The members of the AD group UnixAdmins need to be able to use the show, copy, and connect buttons on those passwords at any time without confirmation. The members of the AD group OperationsStaff need to be able to use the show, copy and connect buttons on those passwords on an emergency basis, but only with the approval of a member of OperationsManagers. The members of OperationsManagers never need to be able to use the show, copy or connect buttons themselves.
Which safe permissions do you need to grant to OperationsManagers? (Choose all that apply.)
- A . Use Accounts
- B . Retrieve Accounts
- C . List Accounts
- D . Authorize Password Requests
- E . Access Safe without Authorization