CAU302 Exam QuestionsBrowse all questions from this exam

CAU302 Exam - Question 111


The ACME Company has been a CyberArk customer for many years. ACME Management has asked you to perform a `Health Check" review of the CyberArk deployment. During your analysis you discover that the PSM Component server is fully functional. The RDP SSL certificate is self-signed and the CyberArk

Privileged Session Management Service is running under the Local Service. SSL 3.0 is enabled in the Registry.

Show Answer
Correct Answer: AC

The PSM Component Server has been installed correctly but the hardening procedures have not been followed. PSM hardening guidelines typically involve securing configurations like SSL settings, and in this case, the use of a self-signed RDP SSL certificate and enabled SSL 3.0 in the registry indicates that best practices for hardening have not been applied. These hardening procedures need to be applied manually to the existing configuration to ensure compliance with CyberArk's security guidelines.

Discussion

2 comments
Sign in to comment
crazymonkeyOption: C
Mar 11, 2022

The correct is C

43aa45aOption: C
May 21, 2024

https://docs.cyberark.com/pam-self-hosted/13.0/en/Content/PAS%20INST/PSM_hardening_stage.htm?tocpath=Installation%7CInstall%20PAM%20-%20Self-Hosted%7CInstall%20PSM%7CPSM%20troubleshooting%7C_____2 Harden the TLS settings If you need to troubleshoot the automatic hardening or perform any of the tasks manually, see PSM Hardening Tasks. https://docs.cyberark.com/pam-self-hosted/13.0/en/Content/PAS%20INST/Install_PSM_harden.htm