Spring Sale Limited Time 75% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code = simple75

Pass the CyberArk Sentry CPC-CDE-RECERT Questions and answers with Dumpstech

Exam CPC-CDE-RECERT Premium Access

View all detail and faqs for the CPC-CDE-RECERT exam

Practice at least 50% of the questions to maximize your chances of passing.
Viewing page 2 out of 3 pages
Viewing questions 11-20 out of questions
Questions # 11:

In addition to the Vault Admins and Auditors, what are the default map roles in the Privilege Cloud LDAP Directory mapping function for the Privilege Cloud Standard Services Model? (Choose two.)

Options:

A.

Safe Managers

B.

Safe Owners

C.

Privileged Cloud Users

D.

Users

Questions # 12:

What is the navigation path to add account search properties?

Options:

A.

Go to Administration > Configuration Options > Applications > Search Properties

B.

Go to Administration > Configuration Options > Configurations > Search Properties

C.

Go to Policies > Master Policy

D.

Go to Administration > Configuration Options > Configurations > Accounts UI Preferences > Main > Toolbar actions

Questions # 13:

You want to enforce Multi-Factor Authentication (MFA) for all Privilege Cloud Shared Services users and require them to set up an MFA factor. How should you accomplish this?

Options:

A.

Only allow SAML as the authentication method, enforce MFA on the SAML Identity Provider (IdP), and ensure users set up MFA accordingly on the IdP.

B.

Navigate to the Identity Administration Portal’s Policies section and configure the required authentication policies for CyberArk Identity.

C.

Navigate to the Identity Administration Portal’s Policies section and set the user security policy for Privilege Cloud to an authentication profile that only allows Multiple Authentication Mechanisms.

D.

Navigate to the Identity Administration Portal’s Policies section and configure the authentication policies for CyberArk Identity, adding a new authentication rule that applies with an “identity cookie” as a filter.

Questions # 14:

What is the correct CyberArk user to use when installing the Privilege Cloud Connector software?

Options:

A.

installeruser@

B.

Administrator

C.

_admin

D.

Installer

Questions # 15:

What is recommended when applying GPO (Group Policy Object) hardening for in-domain PSM servers?

Options:

A.

Apply the GPO provided by CyberArk onto the servers after other GPOs.

B.

Apply the GPO hardening to all hosts that end-users will connect to through the PSM.

C.

After installation, remove the PSM servers from the domain to maximize security.

D.

Place the servers which have PSM installed into a dedicated organizational unit (OU).

Questions # 16:

Which actions must be performed when manually hardening a SUSE server with PSM for SSH? (Choose two.)

Options:

A.

Update settings in the sshd_config file on the server.

B.

Add the PSM for SSH gateway user to the passwd file.

C.

Validate that the psmpgwuser.cred file has correct permissions.

D.

Remove all users and groups from the passwd file.

E.

Add the PSM gateway user to the wheel group.

Questions # 17:

When using Connector Management, how do you configure a DR CPM in Privilege Cloud shared services? (Choose two.)

Options:

A.

Stop the CyberArk Password Manager service and set the startup type to Manual.

B.

When prompted for the Vault IP address on the installation windows, leave it blank and proceed.

C.

When prompted to select the CPM mode, select Passive.

D.

When prompted for the Vault administrator credentials on the installation windows, leave it blank and proceed.

E.

Stop the CyberArk Password Manager service and set the startup type to Automatic.

Questions # 18:

You are configuring an integration to provision users based on LDAP directory services for Privilege Cloud Shared Services. Which component must first be installed and configured in the environment to support this?

Options:

A.

CyberArk Identity Connector

B.

Secure Tunnel

C.

Privilege Cloud Connector

D.

Linux Connector Server

Questions # 19:

What is determined by the MaxConcurrentConnections setting within a platform?

Options:

A.

Maximum number of concurrent connections that can be opened between the CPM and the remote machines for the platform

B.

Maximum number of concurrent connections that can be between the PSM and the remote machines for the platform

C.

Maximum number of concurrent connections allowed for a specific account on the platform through the PSM

D.

Maximum number of concurrent connections to the Vault allowed for sending audit activities relating to the platform

Questions # 20:

Your customer recently merged with a smaller organization. The customer's connector has no network connectivity to the smaller organization's infrastructure. You need to map LDAP users from both your customer and the smaller organization. How is this achieved?

Options:

A.

Create the required users in one directory and configure the Identity Connector to read that directory, as there can only be one Identity Connector.

B.

Create mappings for both directories from the original Identity Connector.

C.

Deploy Identity Connectors in the newly acquired infrastructure and create user mappings.

D.

Switch all users to SAML authentication as there can only be one Identity Connector.

Viewing page 2 out of 3 pages
Viewing questions 11-20 out of questions