[2023年05月] 問題集簡単概要CAU201試験問題JPNTest [Q70-Q91]

Share

[2023年05月] 問題集簡単概要CAU201試験問題JPNTest

CAU201トレーニング認証最新版をゲットCyberArk Defender


サイバーアークディフェンダー認定は、サイバーセキュリティ業界で非常に高く評価されています。これは、特権アクセス管理とサイバー防御における専門知識を証明する貴重な資格です。この認定は世界的に認められ、サイバーセキュリティの分野でキャリアを進めたいセキュリティ専門家に最適です。


CyberArk Defender認定は、セキュリティプロフェッショナル、システム管理者、ITマネージャー、およびサイバーセキュリティに情熱を持つ人々に最適です。認定試験は、CyberArkの技術に関する知識、アーキテクチャ、インストール、構成、およびメンテナンスを検証するよう設計されています。さらに、試験はアクセス制御、ポリシー管理、リスク管理などのトピックをカバーしています。CyberArk Defender認定は業界全体で広く認知されており、サイバーセキュリティスキルを向上させたい専門家に新しいキャリアの機会を提供できます。

 

質問 # 70
A user requested access to view a password secured by dual-control and is unsure who to contact to expedite the approval process. The Vault Admin has been asked to look at the account and identify who can approve their request.
What is the correct location to identify users or groups who can approve?

  • A. PrivateArk > Admin Tools > Users and Groups > Auditors (Group Membership)
  • B. PVWA> Policies > Access Control (Safes) > Safe Members > Workflow > Authorize Password Requests
  • C. PVWA> Administration > Platform Configuration > Edit Platform > UI & Workflow > Dual Control> Approvers
  • D. PVWA> Account List > Edit > Show Advanced Settings > Dual Control > Direct Managers

正解:B


質問 # 71
Ad-Hoc Access (formerly Secure Connect) provides the following features. Choose all that apply.

  • A. Session Recording.
  • B. PSM connections from a terminal without the need to login to the PVWA.
  • C. Real-time live session monitoring.
  • D. PSM connections to target devices that are not managed by CyberArk.

正解:A、C、D


質問 # 72
What is the name of the Platform parameter that controls how long a password will stay valid when One Time Passwords are enabled via the Master Policy?

  • A. MinValidityPeriod
  • B. Interval
  • C. Timeout
  • D. ImmediateInterval

正解:C


質問 # 73
When on-boarding account using Accounts Feed, Which of the following is true?

  • A. Any account that is on boarded can beautomaticallyreconciled regardless ofthe platformit isassociated with.
  • B. You can specify the name of a new Platform that will be created and associated with the account
  • C. You can specify the name of a new sale that will be created where the account will be stored when it is on-boarded to the Vault.
  • D. You must specify an existing Safe where are account will be stored whenitis on boarded to the Vault

正解:A


質問 # 74
In accordance with best practice, SSH access is denied for root accounts on UNIX/LINUX system. What is the BEST way to allow CPM to manage root accounts.

  • A. Create a non-privileged account on the target server.Allow this account the ability to SSHdirectly from the CPM machine.Configure this account as the Logon account of the target server's root account.
  • B. Configure the Unix system to allow SSH logins.
  • C. Configure the CPM to allow SSH logins.
  • D. Create a privileged account on the target server. Allow this account the ability to SSH directly from the CPM machine. Configure this account as the Reconcile account of the target server's root account.

正解:C


質問 # 75
Assuming a safe has been configured to be accessible during certain hours of the day, a Vault Admin may still access that safe outside of those hours.

  • A. FALSE
  • B. TRUE

正解:A

解説:
Explanation/Reference: https://www.freshers360.com/wp-content/uploads/2019/05/Privileged-Account-Security- Implementation-Guide.pdf


質問 # 76
Select the best practice for storing the Master CD.

  • A. Copy the contents of the CD to a Hardware Security Module (HSM) and discard the CD
  • B. Store the CD in a secure location, such as a physical safe, and copy the contents of the CD to a folder secured with NTFS permissions on the Vault
  • C. Store the CD in a secure location, such as a physical safe
  • D. Copy the files to the Vault server and discard the CD

正解:B


質問 # 77
In your organization the "click to connect" button is not active by default.
How can this feature be activated?

  • A. Policies > Master Policy > Session Management > Require privileged session monitoring and isolation > Add Exception
  • B. Policies > Master Policy > Allow EPV transparent connections > Active
  • C. Policies > Master Policy > Allow EPV transparent connections > Inactive
  • D. Policies > Master Policy > Password Management

正解:B


質問 # 78
Target account platforms canbe restricted to accounts that are stored m specific Safes using the AllowedSafes property.

  • A. FALSE
  • B. TRUE

正解:B


質問 # 79
The Vault administrator can change the Vault license by uploading the new license to the system Safe.

  • A. False
  • B. True

正解:B


質問 # 80
Which Automatic Remediation is configurable for a PTA detection of a "Suspected Credential Theft"?

  • A. Disable Account
  • B. Add to Pending
  • C. Reconcile Credentials
  • D. Rotate Credentials

正解:C


質問 # 81
Which of the following PTA detections are included in the Core PAS offering?

  • A. Golden Ticket
  • B. Unmanaged Privileged Access
  • C. Suspected Credential Theft
  • D. Over-Pass-The Hash

正解:B


質問 # 82
Platform settings are applied to______________.

  • A. Safes
  • B. The entire vault.
  • C. Individual Accounts
  • D. Network Areas

正解:A

解説:
Explanation
Explanation/Reference: https://www.reddit.com/r/CyberARk/comments/avxnxz/safes_and_platform_association/


質問 # 83
Which utilities could you use to change debugging levels on the vault without having to restart the vault.
Select all that apply.

  • A. Setup.exe
  • B. PrivateArk Server Central Administration
  • C. PAR Agent
  • D. Edit DBParm.ini in a text editor.

正解:C


質問 # 84
Match each permission to where it can be found.

正解:

解説:


質問 # 85
A Reconcile Account can be specified in the Master Policy.

  • A. FALS
  • B. TRUE

正解:B


質問 # 86
What is the purpose of the Interval setting in a CPM policy?

  • A. To control how long the CPM rests between password changes.
  • B. To control how often the CPM looks for System Initiated CPM work.
  • C. To control the maximum amount of time the CPM will wait for a password change to complete.
  • D. To control how often the CPM looks for User Initiated CPM work.

正解:B


質問 # 87
PTA can automatically suspend sessions if suspicious activities are detected in a privileged session, but only if the session is made via the CyberArk PSM.

  • A. False, the PTA can suspend sessions whether the session is made via the PSM or not
  • B. True

正解:A


質問 # 88
Time of day or day of week restrictions on when password verifications can occur configured in ____________________.

  • A. The Master Policy
  • B. The Account Details
  • C. The Platform settings
  • D. The Safe settings

正解:C


質問 # 89
You have associated a logon account to one your UNIX cool accounts in the vault. When attempting to [b]change [/b] the root account's password the CPM will.....

  • A. Log in to the system as the logon account, then change roofs password
  • B. Log in to the system as the logon account, run the su command to log in as root, and then change root's password.
  • C. Log in to the system as root, then change root's password
  • D. None of these

正解:B


質問 # 90
When onboarding multiple accounts from the Pending Accounts list, which associated setting must be the same across the selected accounts?

  • A. Vault
  • B. Platform
  • C. CPM
  • D. Connection Component

正解:B


質問 # 91
......

認証トレーニングCAU201試験問題集テストエンジン:https://www.jpntest.com/shiken/CAU201-mondaishu

弊社を連絡する

我々は12時間以内ですべてのお問い合わせを答えます。

オンラインサポート時間:( UTC+9 ) 9:00-24:00
月曜日から土曜日まで

サポート:現在連絡