Latest Nov 16, 2021 CAU302 Brain Dump: A Study Guide with Tips & Tricks for passing Exam
CAU302 Question Bank: Free PDF Download Recently Updated Questions
Understanding functional and technical aspects of Vault Deployment
The following will be discussed in the CAU-302 practice exams:
- Migrate the Server Key to an HSM
- Prepare a Windows Server for Vault Installation
- Complete a Vault Installation
- Complete a Post-Install Hardening
NEW QUESTION 76
In version 10.7 the correct order of installation for components changed. Make the necessary corrections to the list below to show the new installation order.
Select and Place:
Answer:
Explanation:

NEW QUESTION 77
In the vault each password is encrypted with a unique encryption key.
- A. FALSE
- B. TRUE
Answer: B
NEW QUESTION 78
In Accounts Discovery, you can configure a Windows discovery to scan ___________.
- A. as many OUs as you wish.
- B. up to three OUs.
- C. a number of OUs determined by the OUstoScan setting under the Accounts Feed section in the Administration tab.
- D. only one OU.
Answer: D
NEW QUESTION 79
A user has successfully conducted a short PSM session and logged off. However, the user cannot access the Monitoring tab to view the recordings. What is the issue?
- A. The user is not a member of the PVWAMonitor group.
- B. The user is not a member of the Auditors group.
- C. The PSM service is not running.
- D. The user must login as PSMAdminConnect.
Answer: B
NEW QUESTION 80
Which report shows the accounts that are accessible to each user?
- A. Applications Inventory Report
- B. Entitlement Report
- C. Privileged Accounts Compliance Status Report
- D. Activity Report
Answer: B
NEW QUESTION 81
When a DR Vault Server becomes an active vault, it will automatically fail back to the original state once the Primary Vault comes back online.
- A. True, if the 'AllowFailback' setting is set to yes in the dbparm.ini file.
- B. True, if the 'AllowFailback' setting is set to yes in the PADR.ini file.
- C. False, this is not possible.
- D. True, this is the default behavior.
Answer: B
Explanation:
Explanation/Reference:
NEW QUESTION 82
What is the purpose of the CyberArk Event Notification Engine service.
- A. It processes audit report messages
- B. It makes vault data available to components.
- C. It sends email messages from the CPM
- D. It sends email messages from the Vault.
Answer: D
NEW QUESTION 83
Which user is automatically given all Safe authorizations on all Safes?
- A. Auditor
- B. Operator
- C. Administrator
- D. Master
Answer: B
NEW QUESTION 84
You haveassociated a logon account to one of your UNIX root accounts in the vault When attempting to verify the root account's password the CPM will...
- A. Prompt the end user with a dialog box asking for the login account to use.
- B. Ignore the logon account and attempt to log in as root.
- C. None of these.
- D. Log in first with the logon account, then run the su command to log in as root using the password in the vault
Answer: B
NEW QUESTION 85
Multiple Vault Servers can be load balanced.
- A. False
- B. True
Answer: B
Explanation:
Explanation/Reference: https://docs.cyberark.com/Product-Doc/OnlineHelp/PAS/11.4/en/Content/PAS%20INST/Optional- Installing-Multiple-PSM-Servers.htm
NEW QUESTION 86
Which of the following statements are NOT truewhen enabling PSM recording fora target Windows server?
Choose all that apply
- A. PSM must be enabled in the Master Policy {either directly, or through exception).
- B. PSMConnect must be added as a local user on the target server
- C. The PSM software must be installed on the target server
- D. RDP must be enabled on the target server
Answer: C
NEW QUESTION 87
Which credentials does CyberArk use when managing a target account?
- A. A Domain Administrator account created for this purpose
- B. Those of the service account for the CyberArk Password Manager service
- C. An account assigned by the Master Policy
- D. The credentials of the target account
Answer: B
NEW QUESTION 88
Using the SSH Key Manager it is possible to allow CPM to manage SSH Keys similarly to passwords.
- A. FALSE
- B. TRUE
Answer: B
NEW QUESTION 89
What is the purpose of EVD?
- A. To extract audit data from the vault.
- B. To extract vault metadata into an open database platform.
- C. To create a backup of the MySQL database.
- D. To allow editing of vault metadata.
Answer: A
Explanation:
Explanation/Reference: https://docs.cyberark.com/Product-Doc/OnlineHelp/PAS/Latest/en/Content/Landing%20Pages/ lpExportVaultDataUtility.htm
NEW QUESTION 90
Which of the following are secure options for storing the contents of the Operator CD, while still allowing the contents to be accessible upon a planned Vault restart? Choose all that apply.
- A. Copy the contents of the CD to the System Safe on the vault.
- B. Copy the contents of the CD to a folder on the vault server and secure it with NTFS permissions.
- C. Store the server key in a Hardware Security Module.
- D. Store the server key in the Provider cache.
- E. Store the CD in a physical safe and mount the CD every time vault maintenance is performed.
Answer: B,C
NEW QUESTION 91
The Vault can only integrate with a single Security Information and Event Management (SIEM) or SYSLOG server.
- A. False
- B. True
Answer: A
Explanation:
Explanation/Reference: https://docs.cyberark.com/Product-Doc/OnlineHelp/PAS/11.3/en/Content/PASIMP/DV-Integrating- with-SIEM-Applications.htm
NEW QUESTION 92
In a Distributed Vaults environment, which of the following components will NOT be communicating with the Satellite Vaults?
- A. AAM Credential Provider (previously known as AIM Credential Provider)
- B. PAReplicate utility
- C. Central Policy Manager
- D. ExportVaultData utility
Answer: C
NEW QUESTION 93
The Vault Internal safe contains all of the configuration for the vault.
- A. FALSE
- B. TRUE
Answer: B
NEW QUESTION 94
Accounts Discovery allows secure connections to domain controllers.
- A. False
- B. True
Answer: A
Explanation:
Explanation/Reference: https://docs.cyberark.com/Product-Doc/OnlineHelp/PrivCloud/Latest/en/Content/Privilege%
20Cloud/privCloud-accounts-discovery.htm
NEW QUESTION 95
The Vault Internal safe contains the configuration for an LDAP integration.
- A. FALSE
- B. TRUE
Answer: A
NEW QUESTION 96
Auto-Detection can be configured to leverage LDAP/S.
- A. FALSE
- B. TRUE
Answer: A
NEW QUESTION 97
......
Who should take the CAU302 exam
The CyberArk Defender + Sentry CAU302 Exam certification is an internationally-recognized validation that identifies persons who earn it as possessing skilled in CyberArk Defender + Sentry Certification. It is intended to certify an examineeâs competence to fill one of the following roles within a Privileged Account Security Program:
- CyberArk Subject Matter Expert. The CyberArk SME designs controls which will be implemented with CyberArk and acts as a liaison to user groups.
- CyberArk Engineer. The CyberArk Engineer installs and manages non-production CyberArk environments, tests new features and creates internal documentation.
If you really intend to grow in your career then must attempt CyberArk CAU302 exam, which is considered as most esteemed exam and opens several gates of opportunities. But passing CAU302 CyberArk Certified Delivery Engineer Certification exam is not easy as it seems to be.
You need to get a reliable and authentic real CAU302 questions for preparation, which will help you to pass Defender + Sentry CAU302 exam with ease. But, this is also a must have updated questions to save you from the tedious task of collecting resources from multiple sources. There is a competition going among sellers, those are selling their Defender + Sentry material by all means, by there is no guarantee if they are offering valid material or not.
How much CAU302 Exam Cost
The price of the CAU302 exam is $200 USD.
New CAU302 Exam Dumps with High Passing Rate: https://www.surepassexams.com/CAU302-exam-bootcamp.html