Free PAM-CDE-RECERT Exam Study Guide for the NEW [Dec-2023] Dumps Test Engine
PAM-CDE-RECERT PDF Dumps Extremely Quick Way Of Preparation
NEW QUESTION # 41
Your organization has a requirement to allow users to "check out passwords" and connect to targets with the same account through the PSM.
What needs to be configured in the Master policy to ensure this will happen?
- A. Enforce check-in/check-out exclusive access = active; Record and save session activity = inactive
- B. Enforce check-in/check-out exclusive access = inactive; Require privileged session monitoring and isolation = inactive
- C. Enforce check-in/check-out exclusive access = active; Require privileged session monitoring and isolation = active
- D. Enforce check-in/check-out exclusive access = inactive; Record and save session activity = active
Answer: C
NEW QUESTION # 42
DRAG DROP
In version 10.7 the correct order of installation for components changed. Make the necessary corrections to the list below to show the new installation order.
Answer:
Explanation:
NEW QUESTION # 43
Which parameters can be used to harden the Credential Files (CredFiles) while using CreateCredFile Utility? (Choose three.)
- A. Vault IP Address
- B. Host IP Address
- C. Time Frame
- D. Operating System Username
- E. Operating System Type (Linux/Windows/HP-UX)
- F. Client Hostname
Answer: B,D,F
NEW QUESTION # 44
You have associated a logon account to one your UNIX cool accounts in the vault. When attempting to [b]change [/b] the root account's password the CPM will.....
- A. None of these
- B. Log in to the system as the logon account, run the su command to log in as root, and then change root's password.
- C. Log in to the system as root, then change root's password
- D. Log in to the system as the logon account, then change roofs password
Answer: B
NEW QUESTION # 45
Which of the following statements are NOT true when enabling PSM recording for a target Windows server? (Choose all that apply)
- A. The PSM software must be instated on the target server
- B. RDP must be enabled on the target server
- C. PSM must be enabled in the Master Policy (either directly, or through exception)
- D. PSMConnect must be added as a local user on the target server
Answer: A,C
NEW QUESTION # 46
When onboarding multiple accounts from the Pending Accounts list, which associated setting must be the same across the selected accounts?
- A. CPM
- B. Platform
- C. Connection Component
- D. Vault
Answer: B
NEW QUESTION # 47
Which utilities could a Vault administrator use to change debugging levels on the Vault without having to restart the Vault? (Choose two.)
- A. PrivateArk Server Central Administration
- B. Edit DBParm.ini in a text editor
- C. PAR Agent
- D. Setup.exe
Answer: A,C
NEW QUESTION # 48
HA, DR, Replicate are mutually exclusive and cannot be used in the same environment.
- A. True
- B. False
Answer: B
NEW QUESTION # 49
As long as you are a member of the Vault Admins group, you can grant any permission on any safe that you have access to.
- A. TRUE
- B. FALSE
Answer: B
Explanation:
Being in Vault admins group only give you access to safes which are created during installation (safe created in installation process ) -This is clearly mentioned in documents .
NEW QUESTION # 50
Which file is used to open up a non-standard firewall port to the Vault?
- A. PARagent.ini
- B. dbparm.ini
- C. Vault.ini
- D. passparm.ini
Answer: B
NEW QUESTION # 51
In addition to disabling Windows services or features not needed for PVWA operations, which tasks does PVWA Hardening.ps1 perform when run?
- A. Performs IIS hardening: Configures all group policy settings
- B. Performs IIS hardening: Renames the local Administrator Account
- C. Performs IIS hardening: Imports the CyberArk INF configuration
- D. Configures Windows Firewall: Removes all installation files.
Answer: A
NEW QUESTION # 52
When managing SSH keys, the Central Policy Manager (CPM) stores the private key __________.
- A. nowhere because the private key can always be generated from the public key
- B. in the Vault
- C. in the Vault and on the target server
- D. on the target server
Answer: B
NEW QUESTION # 53
Which component must be installed on the Vault if Distributed Vaults is used with PSM?
- A. Remote Control Client
- B. Disaster Recovery
- C. Distributed Vault Server
- D. RabbitMQ
Answer: D
NEW QUESTION # 54
The Privileged Access Management solution provides an out-of-the-box target platform to manage SSH keys, called UNIX Via SSH Keys.
How are these keys managed?
- A. CyberArk stores both Private and Public keys and can update target systems with either key.
- B. CyberArk stores Private keys in the Vault and updates Public keys on target systems.
- C. CyberArk stores Public keys in the Vault and updates Private keys on target systems.
- D. CyberArk does not store Public or Private keys and instead uses a reconcile account to create keys on demand.
Answer: B
NEW QUESTION # 55
Where does the Vault administrator configure in Password Vault Web Access (PVWA) the Fully Qualified Domain Name (FQDN) of the domain controller during LDAP/S integration?
- A. PVWA > Administration > Options > LDAP Integration
- B. PVWA > Administration > LDAP Integration
- C. PVWA > LDAP Integration
- D. PVWA > Platform Management > LDAP Integration
Answer: B
NEW QUESTION # 56
You are creating a new Rest API user that utilizes CyberArk Authentication.
What is a correct process to provision this user?
- A. PVWA > User Provisioning > LDAP Integration > Add Mapping
- B. Private Ark Client > Tools > Administrative Tools > Users and Groups > New > User
- C. PVWA > User Provisioning > Users and Groups > New > User
- D. Private Ark Client > Tools > Administrative Tools > Directory Mapping > Add
Answer: B
NEW QUESTION # 57
A user has successfully conducted a short PSM session and logged off. However, the user cannot access the Monitoring tab to view the recordings.
What is the issue?
- A. The user must login as PSMAdminConnect
- B. The user is not a member of the PVWAMonitor group
- C. The user is not a member of the Auditors group
- D. The PSM service is not running
Answer: C
NEW QUESTION # 58
Which file is used to configure the ENE service?
- A. PARagent.ini
- B. dbparm.ini
- C. ENEConfig.ini
- D. ENE.ini
Answer: D
NEW QUESTION # 59
......
Enhance your career with PAM-CDE-RECERT PDF Dumps - True CyberArk Exam Questions: https://www.troytecdumps.com/PAM-CDE-RECERT-troytec-exam-dumps.html
Download PAM-CDE-RECERT Dumps (2023) - Free PDF Exam Demo: https://drive.google.com/open?id=141fGYglikmRFRtqkTcPfyi9Tf3fTedf2