Computer Networking > EXAM > CyberArk Sentry Final Exam (All)
Multiple PVWA servers are always all active - ANS-true Within the Vault each password is encrypted by - ANS-It own unique key. In an SMTP integration it is recommended to use the FQDN when speci... fying the SMTP server address(es) - ANS-true The vault supports a number of dual factor authentication methods. - ANS-true During LDAP/S integration you should specify the FQDN of Domain Controller - ANS-true A stand alone Vault server requires DNS services to operate properly - ANS-false The DR module allows an integration with Enterprise Backup software - ANS-false Does CyberArk need service accounts on each server to change passwords? - ANS-No, the CPM uses account information stored in the vault to login and change the account's password using its own credentials. The connect button requires PSM to work - ANS-FALSE Which keys are required to be present in order to start the PrivateArk Server Service? - ANS-Server Key Recovery Public Key A vault administrator wants to change the PSM server ID to comply with a naming standard. What is the process for changing the PSM server ID? - ANS-First, login to the PVWA, browse to administration, system config, options, PSM, Configured PSM servers and select the PSM Server you need to change from the list of servers. In the properties pane, set the value of the ID property to the new Server ID, click Apply and OK. Next, edit the basic_psmi.ini file located on the PSM server in the PSM root directory and update the PSMServerID parameter with the new Server ID, save the file and restarted the "CyberArk PSM" server on PSM server. Multiple PVWA servers provide automatic load balancing. - ANS-false The vault provides tamper-proof audit trail. - ANS-True The following applications are included with PSM and require no additional installation or configuration. - ANS-SQL Plus RDP Putty WinSCP If a transparent user matches two different directory mappings, how does the system determine which user template to use? - ANS-The system will use the template for the mapping listed first. What would be a good use case for a High Availability vault? - ANS-Recovery Time Objectives or Recovery Point Objectives are eat or near zero. Name two ways of viewing the ITAlog - ANS-1. Log into the vault locally and navigate to the Server folder under the PrivateArk install location. 2. Access the System Safe from PrivateArk client. What is the purpose of the PrivateArk Database service? - ANS-Maintains Vault metadata. The vault uses a modified version of the Microsoft Windows firewall. - ANS-true What is the best practice for storing the Master CD? - ANS-Store the CD in a secure location, such as a physical safe. What is the name of the account used to establish the initial RDP session from the end user client machine to the PSM server? - ANS-PSMConnect What is the purpose of the Reconcile process? - ANS-To allow CyberArk to manage unknown or lost credentials. A vault admin received an email notification that a password verification process has failed. From which services was the message sent? - ANS-The CyberArk Event Notification Engine Service on the Vault. By default, the vault secure protocol uses which IP port and protocol? - ANS-TCP/1858 In order to retrieve data from the vault a user MUST use an interface provided by CyberArk. - ANS-TRUE To apply a new license file you must - ANS-Upload the .xml file to the System Safe What would be a good use case for the Replicate module? - ANS-Integration with an Enterprise Backup Solution is required. The vault supports multiple instances of the following components - ANS-PVWA CPM PSM AIM Provider At what point is a transparent user provisioned in the vault? - ANS-The first time the user logs in. What is the purpose of the PrivateArk Server service? - ANS-Makes vault data accessible to components. A SIEM integration allows you to forward ITALOG records to a monitoring solution. - ANS-false Which of the following are secure options for storing the contents of the Operator CD, while still allowing the contents to be accessible upon a planned Vault restart? - ANS-1. Store the CD in a physical safe and mount the CD every time vault maintenance is performed. 2. Copy the contents of the CD to a folder on the vault server and secure it with NTFS permissions 3. Store the server key in a Hardware Security Module. For the hardening process to complete successfully, security products like Antivirus should be installed on the Vault server before running the vault installer. - ANS-FALSE A SIEM integration allows you to forward audit records to a monitoring solution. - ANS-TRUE The Remote Desktop Services role must be property licensed by Microsoft. - ANS-TRUE Prior to version 10.7, what is the correct order of installation for PAS components? - ANS-Vault, CPM, PVWA, PSM HA, DR, Replicate are mutually exclusive and cannot be used in the same environment. - ANS-FALSE What is the purpose of the CyberArk Event Notification Engine service? - ANS-sends email messages from the vault. You are successfully managing passwords in the a.cyberark.com domain; however, when you attempt to manage a password in the b.cyberark.domain, you receive the 'network path not found' error. What should you check first? - ANS-That the CPM can successfully resolve addresses in the b.cyberark.com domain. [Show More]
Last updated: 2 years ago
Preview 1 out of 5 pages
Buy this document to get the full access instantly
Instant Download Access after purchase
Buy NowInstant download
We Accept:
Can't find what you want? Try our AI powered Search
Connected school, study & course
About the document
Uploaded On
Apr 21, 2023
Number of pages
5
Written in
This document has been written for:
Uploaded
Apr 21, 2023
Downloads
0
Views
73
In Scholarfriends, a student can earn by offering help to other student. Students can help other students with materials by upploading their notes and earn money.
We're available through e-mail, Twitter, Facebook, and live chat.
FAQ
Questions? Leave a message!
Copyright © Scholarfriends · High quality services·