CyberArk SECRET-SEN Exam Practice Questions (P. 3)
- Full Access (60 questions)
- Six months of Premium Access
- Access to one million comments
- Seamless ChatGPT Integration
- Ability to download PDF files
- Anki Flashcard files for revision
- No Captcha & No AdSense
- Advanced Exam Configuration
Question #11
A customer requires high availability in its AWS cloud infrastructure.
What is the minimally viable Conjur deployment architecture to achieve this?
What is the minimally viable Conjur deployment architecture to achieve this?
- Aone Follower in each AZ, load balancer for the region
- Btwo Followers in each region, load balanced for the region
- Ctwo Followers in each AZ, load balanced for the region
- Dtwo Followers in each region, load balanced across all regions
Correct Answer:
C
C
send
light_mode
delete
Question #12
While installing the first CP in an environment, errors that occurred when the environment was created are displayed; however, the installation procedure continued and finished successfully.
What should you do?
What should you do?
- AContinue configuring the application to use the CP. No further action is needed since the successful installation makes the error message benign.
- BReview the lag file ‘CreateEnv.log’ and investigate any error messages it contains.
- CRun setup.exe again and select ‘Recreate Vault Environment’. Provide the details of a user with more privileges when prompted by the installer.
- DReview the PVWA lags to determine which REST API call used during the installation failed.
Correct Answer:
B
B
send
light_mode
delete
Question #13
What is the correct process to upgrade the CCP Web Service?
- ARun “sudo yum update aimprv” from the CLI.
- BDouble-click the Credential Provider installer executable and select upgrade.
- CDouble-click the AimWebService.msi and select upgrade.
- DUninstall and reinstall the CCP Web Service.
Correct Answer:
D
D
send
light_mode
delete
Question #14
In a 3-node auto-failover cluster, the Leader has been brought down for patching that lasts longer than the configured TTL. A Standby has been promoted.
Which steps are required to repair the cluster when the old Leader is brought back online?
Which steps are required to repair the cluster when the old Leader is brought back online?
- AOn the new Leader, generate a Standby seed for the old Leader node and add it to the cluster member list.
Rebuild the old Leader as a new Standby and then re-enroll the node to the cluster. - BGenerate a Standby seed for the newly promoted Leader.
Stop and remove the container on the new Leader, then rebuild it as a new Standby.
Re-enroll the Standby to the cluster and re-base replication of the 3rd Standby back to the old Leader. - CGenerate standby seeds for the newly-promoted Leader and the 3rd Standby
Stop and remove the containers and then rebuild them as new Standbys.
On both new Standbys, re-enroll the node to the cluster. - DOn the new Leader, generate a Standby seed for the old Leader node and re-upload the auto-failover policy in “replace” mode.
Rebuild the old Leader as a new Standby, then re-enroll the node to the cluster.
Correct Answer:
A
A
send
light_mode
delete
Question #15
When using the Seed Fetcher to deploy Kubernetes Followers, an error occurs in the Seed Fetcher container. You check the logs and discover that although the Seed Fetcher was able to authenticate, it shows a 500 error in the log and does not successfully retrieve a seed file. What is the cause?
- AThe certificate based on the Follower DNS name is not present on the Leader.
- BThe host you configured does not have access to see the certificates.
- CThe synchronizer service crashed and needs to be restarted.
- DThe Leader does not have the authenticator webservice enabled.
Correct Answer:
A
A
send
light_mode
delete
All Pages