Pass the CyberArk Defender PAM-DEF Questions and answers with CertsForce

Viewing page 3 out of 8 pages
Viewing questions 21-30 out of questions
Questions # 21:

All of your Unix root passwords are stored in the safe UnixRoot. Dual control is enabled for some of the accounts in that safe. The members of the AD group UnixAdmins need to be able to use the show, copy, and connect buttons on those passwords at any time without confirmation. The members of the AD group Operations Staff need to be able to use the show, copy and connect buttons on those passwords on an emergency basis, but only with the approval of a member of Operations Managers never need to be able to use the show, copy or connect buttons themselves.

Which safe permission do you need to grant Operations Staff? Check all that apply.

Options:

A.

Use Accounts


B.

Retrieve Accounts


C.

Authorize Password Requests


D.

Access Safe without Authorization


Expert Solution
Questions # 22:

What is the correct process to install a custom platform from the CyberArk Marketplace?

Options:

A.

Locate the custom platform in the Marketplace and click Import.


B.

Download the platform from the Marketplace and import it using the PVWA.


C.

Contact CyberArk Support for guidance on how to import the platform.


D.

Duplicate an existing platform and align the setting to match the platform from the Marketplace.


Expert Solution
Questions # 23:

A newly created platform allows users to access a Linux endpoint. When users click to connect, nothing happens.

Which piece of the platform is missing?

Options:

A.

PSM-SSH Connection Component


B.

UnixPrompts.ini


C.

UnixProcess.ini


D.

PSM-RDP Connection Component


Expert Solution
Questions # 24:

A logon account can be specified in the platform settings.

Options:

A.

True


B.

False


Expert Solution
Questions # 25:

You have been asked to turn off the time access restrictions for a safe.

Where is this setting found?

Options:

A.

PrivateArk Client


B.

RestAPI


C.

PVWA


D.

Vault


Expert Solution
Questions # 26:

As long as you are a member of the Vault Admins group you can grant any permission on any safe.

Options:

A.

TRUE


B.

FALSE


Expert Solution
Questions # 27:

You want to generate a license capacity report.

Which tool accomplishes this?

Options:

A.

Password Vault Web Access


B.

PrivateArk Client


C.

DiagnoseDB Report


D.

RestAPI


Expert Solution
Questions # 28:

You are configuring CyberArk to use HTML5 gateways exclusively for PSM connections.

In the PVWA, where do you set DefaultConnectionMethod to HTML5?

Options:

A.

Options > Privileged Session Management UI


B.

Options > Privileged Session Management


C.

Options > Privileged Session Management Defaults


D.

Options > Privileged Session Management Interface


Expert Solution
Questions # 29:

During a High Availability node switch you notice an error and the Cluster Vault Manager Utility fails back to the original node.

Which log files should you check to investigate the cause of the issue? (Choose three.)

Options:

A.

CyberArk Webconsole.log


B.

VaultDB.log


C.

PM_Error.log


D.

ITALog.log


E.

ClusterVault.console.log


F.

logiccontainer.log


Expert Solution
Questions # 30:

For a safe with Object Level Access enabled you can turn off Object Level Access Control when it no longer needed on the safe.

Options:

A.

TRUE


B.

FALSE


Expert Solution
Viewing page 3 out of 8 pages
Viewing questions 21-30 out of questions