Spring Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: simple70

Pass the CyberArk Sentry CPC-CDE-RECERT Questions and answers with CertsForce

Viewing page 3 out of 3 pages
Viewing questions 21-30 out of questions
Questions # 21:

What is the purpose of the PSM Health Check hardening?

Options:

A.

Remove IIS settings which can be considered security vulnerabilities.


B.

Validate that the PSM is ready to be placed behind a load balancer.


C.

Confirm that the Windows Services for PSM are running on the server.


D.

Ensure that the AppLocker script does not have any syntax errors.


Expert Solution
Questions # 22:

The Secure Tunnel component of CyberArk Privilege Cloud connects to which services in the CyberArk Privilege Cloud? (Choose two.)

Options:

A.

https://console.privilegecloud.cyberark.cloud


B.

https://connector- .privilegecloud.cyberark.cloud


C.

https://backend-services.privilegecloud.cyberark.cloud


D.

https://telemetry.privilegecloud.cyberark.cloud


E.

https://update.privilegecloud.cyberark.cloud


Expert Solution
Questions # 23:

To disable the PSM default Support for Browser Sessions, which option should be set to 'No* before running Hardening?

Options:

A.

SupportWebApplications


B.

SupportBrowsers


C.

SupportWebBrowsers


D.

SupportHTML5Content


Expert Solution
Questions # 24:

Which statement is correct about using the AllowedSafes platform parameter?

Options:

A.

It allows users to access accounts in specific safes.


B.

It prevents the CPM from scanning all safes, restricting it to scan only safes that match the AllowedSafes configuration.


C.

It allows the CPM to access PSM safes to monitor platform configuration and connection component changes.


D.

It prevents the CPM from processing pending items in the Discovery safes enforcing manual intervention to complete the onboarding process.


Expert Solution
Questions # 25:

Arrange the steps to complete CPM Hardening for out-of-Domain deployment in the correct sequence.

Question # 25


Expert Solution
Questions # 26:

You are deploying a CyberArk Identity Connector to integrate Privilege Cloud Shared Services with an Active Directory environment. Which requirement must be met?

Options:

A.

The Identity Connector Server must be joined to the Active Directory.


B.

The Server must be a member of the root domain of the Active Directory forest.

C The Identity Connector must be installed on a Domain Controller.


C.

The Identity Connector must be installed using Domain Administrator credentials.


Expert Solution
Questions # 27:

In large-scale environments, it is important to enable the CPM to focus its search operations on specific Safes instead of scanning all Safes it sees in the Vault. How is this accomplished?

Options:

A.

Administration Options > CPM Settings


B.

AllowedSafes Parameter on each platform policy


C.

MaxConcurrentConnection parameter on each platform policy


D.

Administration > Options > CPM Scanner.


Expert Solution
Questions # 28:

You want to add an additional maintenance user on the PSM for SSH. How can you accomplish this if InstallCyberArkSSHD is set to Integrated?

Options:

A.

Create a local user and add it to the PSMP_MaintenanceUsers group.


B.

Create a local user called proxymaster and add it to /etc/pam.d/auth-password.


C.

Create a local user and add it to the group configured for the parameter AllowGroups in the /etc/ssh/sshd_config file.


D.

Create a local user called psmpmng and add it to the PSMMaintenance group in /etc/pam.d/auth-password.


Expert Solution
Questions # 29:

How many assertions are supported by Privilege Cloud in a SAML integration?

Options:

A.

1


B.

2


C.

3


D.

Unlimited


Expert Solution
Viewing page 3 out of 3 pages
Viewing questions 21-30 out of questions