Exam CAU302 All QuestionsBrowse all questions from this exam
Question 111

The ACME Company has been a CyberArk customer for many years. ACME Management has asked you to perform a `Health Check" review of the CyberArk deployment. During your analysis you discover that the PSM Component server is fully functional. The RDP SSL certificate is self-signed and the CyberArk

Privileged Session Management Service is running under the Local Service. SSL 3.0 is enabled in the Registry.

    Correct Answer: C

    The PSM Component Server has been installed correctly but the hardening procedures have not been followed. PSM hardening guidelines typically involve securing configurations like SSL settings, and in this case, the use of a self-signed RDP SSL certificate and enabled SSL 3.0 in the registry indicates that best practices for hardening have not been applied. These hardening procedures need to be applied manually to the existing configuration to ensure compliance with CyberArk's security guidelines.

Discussion
43aa45aOption: C

https://docs.cyberark.com/pam-self-hosted/13.0/en/Content/PAS%20INST/PSM_hardening_stage.htm?tocpath=Installation%7CInstall%20PAM%20-%20Self-Hosted%7CInstall%20PSM%7CPSM%20troubleshooting%7C_____2 Harden the TLS settings If you need to troubleshoot the automatic hardening or perform any of the tasks manually, see PSM Hardening Tasks. https://docs.cyberark.com/pam-self-hosted/13.0/en/Content/PAS%20INST/Install_PSM_harden.htm

crazymonkeyOption: C

The correct is C