โ† All CAD Flashcard Decks

Vault Management Flashcards

7 cards from real CAD practice questions. Tap to flip, then mark Knew It or Still Learning โ€” missed cards come back until you master them.

Read the first 7 Vault Management flashcards as text
  1. Which CyberArk utility is used to perform initial Vault configuration tasks such as creating the first Vault administrator account?

    Answer: VaultInit utility

    The VaultInit utility (vaultinit.exe) is used during the initial Vault setup to configure core parameters and create the initial Vault administrative account.

  2. In CyberArk, what is the purpose of the 'ENE' (Event Notification Engine)?

    Answer: It sends email or custom notifications based on Vault events

    The Event Notification Engine monitors Vault events and sends configurable notifications (email or custom) to administrators and users based on defined triggers.

  3. A CyberArk Vault has reached its licensed account capacity. What is the immediate impact on the environment?

    Answer: New privileged accounts cannot be onboarded to the Vault

    When the licensed account limit is reached, CyberArk prevents onboarding of additional privileged accounts while existing accounts remain fully functional.

  4. What is the function of the 'dbparam.ini' file in a CyberArk Vault deployment?

    Answer: It contains Vault server configuration parameters

    dbparam.ini is the primary Vault configuration file containing server parameters such as IP addresses, port settings, and operational options.

  5. When configuring CyberArk Vault clustering for high availability, which component manages the automatic failover between primary and secondary Vault nodes?

    Answer: Windows Server Failover Clustering (WSFC)

    CyberArk Vault high availability leverages Windows Server Failover Clustering (WSFC) to detect failures and automatically promote the secondary Vault node.

  6. Which Safe permission allows a user to see a list of passwords stored in a Safe without being able to retrieve the actual password values?

    Answer: List accounts

    The 'List accounts' permission allows users to see account names and metadata within a Safe, but not the actual password content.

  7. In CyberArk Vault auditing, what is the significance of the 'Object ID' field in audit records?

    Answer: It uniquely identifies the specific password object involved in the audited event

    The Object ID in CyberArk audit records is a unique identifier that pinpoints the exact password or file object involved in each audited operation.