[2023年最新] 最高のCAU201試験問題集を使って実際の試験問題と解答を解こう [Q77-Q102]

Share

[2023年最新] 最高のCAU201試験問題集を使って- 実際の試験問題と解答を解こう

テストエンジンを練習してCAU201テスト問題

質問 # 77
PSM for Windows (previously known as "RDP Proxy") supports connections to the following target systems

  • A. Oracle
  • B. All of the above
  • C. Windows
  • D. UNIX

正解:C

解説:
Explanation/Reference: https://knowhow.tajco-group.com/knowledge-base/using-a-standard-rdp-client-application/


質問 # 78
Which CyberArk utility allows you to create lists of Master Policy Settings, owners and safes for output to text files or MSSQL databases?

  • A. Export Vault Information
  • B. Export Vault Data
  • C. PrivateArk Client
  • D. Privileged Threat Analytics

正解:B


質問 # 79
Which onboarding method would you use to integrate CyberArk with your accounts provisioning process?

  • A. Accounts Discovery
  • B. Auto Detection
  • C. PTA Rules
  • D. Onboarding RestAPI functions

正解:B


質問 # 80
Which type of automatic remediation can be performed by the PTA in case of a suspected credential theft security event?

  • A. Password reconciliation
  • B. Session suspension
  • C. Session termination
  • D. Password change

正解:D


質問 # 81
A user is receiving the error message "ITATS006E Station is suspended for User jsmith" when attempting to sign into the Password Vault Web Access (PVWA). Which utility would a Vault administrator use to correct this problem?

  • A. PrivateArk
  • B. PVWA
  • C. createcredfile.exe
  • D. cavaultmanager.exe

正解:A


質問 # 82
The Vault administrator can change the Vault license by uploading the new license to the system Safe.

  • A. False
  • B. True

正解:B


質問 # 83
PSM captures a record of each command that was executed in Unix.

  • A. TRIE
  • B. FALSE

正解:A


質問 # 84
What is the maximum number of levels of authorizations you can set up in Dual Control?

  • A. 0
  • B. 1
  • C. 2
  • D. 3

正解:D


質問 # 85
Which of the following statements are NOT true when enabling PSM recording for a target Windows server?
(Choose all that apply)

  • A. PSMConnect must be added as a local user on the target server
  • B. RDP must be enabled on the target server
  • C. The PSM software must be instated on the target server
  • D. PSM must be enabled in the Master Policy (either directly, or through exception)

正解:C、D


質問 # 86
A user with administrative privileges to the vault can only grant other users privileges that he himself has.

  • A. TRUE
  • B. FALSE

正解:B


質問 # 87
Which user(s) can access all passwords in the Vault?

  • A. Administrator
  • B. Any member of auditors
  • C. Master
  • D. Any member of Vault administrators

正解:C


質問 # 88
The password upload utility must run from the CPM server

  • A. TRUE
  • B. FALSE

正解:B


質問 # 89
Which PTA sensors are required to detect suspected credential theft?

  • A. Logs, Network Sensor, EPM
  • B. Logs, PSM Logs, CPM Logs
  • C. Logs, Vault Logs
  • D. Logs, Network Sensor, Vault Logs

正解:C


質問 # 90
When running a "Privileged Accounts Inventory" Report through the Reports page in PVWA on a specific safe, which permission/s are required on that safe to show complete account inventory information?

  • A. Manage Safe Owners
  • B. List Accounts, Access Safe without confirmation
  • C. List Accounts, View Safe Members
  • D. Manage Safe, View Audit

正解:C


質問 # 91
Platform settings are applied to______________.

  • A. Individual Accounts
  • B. The entire vault.
  • C. Safes
  • D. Network Areas

正解:C

解説:
Explanation/Reference: https://www.reddit.com/r/CyberARk/comments/avxnxz/safes_and_platform_association/


質問 # 92
What is the primary purpose of Dual Control?

  • A. To force a 'collusion to commit' fraud ensuring no single actor may use a password without authorization.
  • B. Reduced risk of credential theft
  • C. Non-repudiation (individual accountability)
  • D. More frequent password changes

正解:A

解説:
Explanation/Reference: https://docs.cyberark.com/Product-Doc/OnlineHelp/PAS/Latest/en/Content/PASIMP/Dual- Control.htm


質問 # 93
For an account attached to a platform that requires Dual Control based on a Master Policy exception, how would you configure a group of users to access a password without approval.

  • A. Create an exception to the Master Policy to exclude the group from the workflow process.
  • B. On the safe in which the account is stored grant the group the 'Access safe without confirmation' authorization.
  • C. Edit the master policy rule and modify the advanced 'Access safe without approval' rule to include the group.
  • D. On the safe in which the account is stored grant the group the 'Access safe without audit' authorization.

正解:A

解説:
Explanation/Reference: https://www.reddit.com/r/CyberARk/comments/6270zr/dual_control_on_specific_accounts/


質問 # 94
Due to network activity, ACME Corp's PrivateArk Server became active on the OR Vault while the Primary Vault was also running normally. All the components continued to point to the Primary Vault.
Which steps should you perform to restore DR replication to normal?

  • A. Shutdown PrivateArk Server on DR Vault > Replicate data from DR Vault to Primary Vault > Shutdown PrivateArk Server on DR Vault > Start replication on DR vault
  • B. Shutdown PrivateArk Server on Primary Vault > Replicate data from DR Vault to Primary Vault > Shutdown PrivateArk Server on DR Vault > Start replication on DR vault
  • C. Replicate data from DR Vault to Primary Vault > Shutdown PrivateArk Server on DR Vault > Start replication on DR vault
  • D. Shutdown PrivateArk Server on DR Vault > Start replication on DR vault

正解:C


質問 # 95
For an account attached to a platform that requires Dual Control based on a Master Policy exception, how would you configure a group of users to access a password without approval.

  • A. Edith the master policy rule and modify the advanced' Access safe without approval' rule to include the group.
  • B. On the safe in which the account is stored grant the group the' Access safe without audit' authorization.
  • C. Create an exception to the Master Policy to exclude the group from the workflow process.
  • D. On the safe in which the account is stored grant the group the' Access safe without confirmation' authorization.

正解:D


質問 # 96
Which Automatic Remediation is configurable for a PTA detection of a "Suspected Credential Theft"?

  • A. Add to Pending
  • B. Disable Account
  • C. Rotate Credentials
  • D. Reconcile Credentials

正解:D


質問 # 97
Ad-Hoc Access (formerly Secure Connect) provides the following features. Choose all that apply.

  • A. Session Recording.
  • B. PSM connections to target devices that are not managed by CyberArk.
  • C. Real-time live session monitoring.
  • D. PSM connections from a terminal without the need to login to the PVWA.

正解:A、B、C


質問 # 98
As long as you are a member of the Vault Admins group you can grant any permission on any safe.

  • A. TRUE
  • B. FALSE

正解:B

解説:
Explanation
Being in Vault admins group only give you access to safes which are created during installation (safe created in installation process ) -This is clearly mentioned in documents .


質問 # 99
Ifa password is changed manually on a server, bypassing the CPM, how would you configure theaccount so that the CPM could resume management automatically?

  • A. Configure the Provider to change the password to match the Vault's Password
  • B. Associate a logonaccount and configure the platform to reconcile automatically
  • C. Run the correct auto detection process to rediscover the password
  • D. Associate a reconcile account and configure the platform to reconcile automatically

正解:D


質問 # 100
The primary purpose of exclusive accounts is to ensure non-repudiation (individual accountability).

  • A. TRUE
  • B. FALSE

正解:A


質問 # 101
Which certificate type do you need to configure the vault for LDAP over SSL?

  • A. the CA Certificate that signed the certificate used by the External Directory
  • B. a CA signed Certificate for the PVWA server
  • C. a CA signed Certificate for the Vault server
  • D. a self-signed Certificate for the Vault

正解:A


質問 # 102
......


CyberArk CAU201試験は、組織内の特権アカウントのセキュリティを管理する責任があるITプロフェッショナル向けに設計された認定試験です。CyberArkは、特権アクセスを管理するためのセキュリティソリューションの主要なプロバイダーであり、CAU201試験では、候補者のソリューションの実装と管理に関する知識と技能がテストされます。

 

CAU201実際の問題アンサーPDFには100%カバー率リアルな試験問題:https://www.passtest.jp/CyberArk/CAU201-shiken.html

CAU201リアルな試験問題テストエンジン問題集トレーニング179問題:https://drive.google.com/open?id=1cmSivVnei270OrXrqq9O_9laCyAnEHqK