CyberArk CAU201 Exam (page: 7)
CyberArk Defender
Updated on: 25-Dec-2025

Viewing Page 7 of 37

What is the maximum number of levels of authorizations you can set up in Dual Control?

  1. 1
  2. 2
  3. 3
  4. 4

Answer(s): B



As long as you are a member of the Vault Admins group you can grant any permission on any safe.

  1. TRUE
  2. FALSE

Answer(s): B



In accordance with best practice, SSH access is denied for root accounts on UNIXLINUX system. What is the BEST way to allow CPM to manage root accounts?

  1. Create a privileged account on the target server. Allow this account the ability to SSH directly from the CPM machine. Configure this account of the target server’s root account.
  2. Create a non-privileged account on the target server. Allow this account the ability to SSH directly from the CPM machine. Configure this account as the Logon account of the target server’s root account.
  3. Configure the Unix system to allow SSH logins.
  4. Configure the CPM to allow SSH logins.

Answer(s): B



Which of the following statements are NOT true when enabling PSM recording for a target Windows server? (Choose all that apply.)

  1. The PSM software must be installed on the target server.
  2. PSM must be enabled in the Master Policy (either directly, or through exception).
  3. PSMConnect must be added as a local user on the target server.
  4. RDP must be enabled on the target server.

Answer(s): C



The Password upload utility can be used to create safes.

  1. TRUE
  2. FALSE

Answer(s): A


Reference:

https://docs.cyberark.com/Product-Doc/OnlineHelp/PAS/Latest/en/Content/PASIMP/Password-Upload-Utility.htm



Viewing Page 7 of 37



Share your comments for CyberArk CAU201 exam with other users:

Steve 8/17/2023 2:19:00 PM

question #18s answer should be a, not d. this should be corrected. it should be minvalidityperiod
CANADA