CyberArk PAM-CDE-RECERT CyberArk CDE Recertification Online Training
CyberArk PAM-CDE-RECERT Online Training
The questions for PAM-CDE-RECERT were last updated at Feb 20,2025.
- Exam Code: PAM-CDE-RECERT
- Exam Name: CyberArk CDE Recertification
- Certification Provider: CyberArk
- Latest update: Feb 20,2025
CyberArk user Neil is trying to connect to the Target Linux server 192.168.1.64 using a domain account ACME/linuxuser01 on Domain Acme.corp using PSM for SSH server 192.168.65.145.
What is the correct syntax?
- A . Ssh neil@linuxuser01: [email protected]@192.168.1.45
- B . Ssh neil@linuxuser01#[email protected]@192.168.1.45
- C . Ssh neil@[email protected]@192.168.65.145
- D . Ssh neil@[email protected]@[email protected]
According to the DEFAULT Web Options settings, which group grants access to the REPORTS page?
- A . PVWAUsers
- B . Vault Admins
- C . Auditors
- D . PVWAMonitor
To manage automated onboarding rules, a CyberArk user must be a member of which group?
- A . Vault Admins
- B . CPM User
- C . Auditors
- D . Administrators
A
Explanation:
Reference: https://docs.cyberark.com/Product-Doc/OnlineHelp/PAS/11.2/en/Content/PASIMP/automatic_onboarding_rules.htm#:~:text=To%20manage%20onboarding%20rules%2C%20users,to%20the%20Vault%20admins%20 group
What is the name of the Platform parameters that controls how long a password will stay valid when One Time Passwords are enabled via the Master Policy?
- A . Min Validity Period
- B . Interval
- C . Immediate Interval
- D . Timeout
A
Explanation:
Min Validity Period -The number of minutes to wait from the last retrieval of the password until it is replaced. This gives the user a minimum period to be able to use the password before it is replaced. Use -1 to ignore this property. This parameter is also used to release exclusive accounts automatically Interval C“The number of minutes that the Central Policy Manager waits between running periodic searches for the platform. Note: It is recommended to leave the default value of 1440. If a change/verify policy has been configured, the Central Policy Manager will automatically align the periodic searches with the start of the defined timeframes.”
When a DR Vault Server becomes an active vault, it will automatically fail back to the original state once the Primary Vault comes back online.
- A . True; this is the default behavior
- B . False; this is not possible
- C . True, if the AllowFailback setting is set to “yes” in the padr.ini file
- D . True, if the AllowFailback setting is set to “yes” in the dbparm.ini file
Which usage can be added as a service account platform?
- A . Kerberos Tokens
- B . IIS Application Pools
- C . PowerShell Libraries
- D . Loosely Connected Devices
D
Explanation:
Reference: https://docs.cyberark.com/Product-Doc/OnlineHelp/PAS/11.3/en/Content/PASIMP/LooselyConnectedDevices.htm
Which built-in report from the reports page in PVWA displays the number of days until a password is due to expire?
- A . Privileged Accounts Inventory
- B . Privileged Accounts Compliance Status
- C . Activity Log
- D . Privileged Accounts CPM Status
B
Explanation:
Reference: https://docs.cyberark.com/Product-Doc/OnlineHelp/PAS/Latest/en/Content/PASIMP/ReportsInPVWA.htm?TocPath=End%20U ser%7CReports%20and%20Audits%7C_____1
Which keys are required to be present in order to start the PrivateArk Server service?
- A . Recovery public key
- B . Recovery private key
- C . Server key
- D . Safe key
Which tools are used during a CPM renaming process?
- A . APIKeyManager Utility
- B . CreateCredFile Utility
- C . CPMinDomain_Hardening.ps1
- D . PMTerminal.exe
- E . Data Execution Prevention
Which of the following components can be used to create a tape backup of the Vault?
- A . Disaster Recovery
- B . Distributed Vaults
- C . Replicate
- D . High Availability