PVWA Stuff Flashcards

1
Q

Log location

A

C:\Windows\Temp\

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What are the predefined safes from PVWA install?

A

PVWAConfig,

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Policies.xml

A

Contains the ‘UI & Workflow’ settings for all Platforms

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

The PlatformBaseID in the Policies.xml file does what?

A

Ties the platforms listed in the Policies.xml with the platforms contained in the PasswordManagerShared SAFE

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What are the PVWA default users and group?

A

PVWAAppUser - logs into Vault and consumes a PVWA User License
PVWAGWUser - after use login to PVWA, the PVWA users PVWAGWUser (impersinating) with VPN to Vault Server **

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

PVWA is hardenging in how many phases?

A

3 Phases

a) Executing Installation Automation PS script
b) Applying CyberArk provided GPO
c) Then a few Manual Procedures

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

PVWA Manual Hardening Procdures include?

A

Remove\Disable all other Network protocols \ services \ clietns

  • -Only need–
    a) Client for Microsoft Netork
    b) File and Print Sharing for MS Networks
    c) Internet Protocl TCP IP 4
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

PVWA Automation Hardening script does what? *need to know for certification

A
  • Validates and Disbles roles and services
  • Sets file system permisisons
  • Creates Local Users to run CyberArk Services
  • **An updat eto the CyberArk hardending Group Policy Object is required to grant the users the “Logon as a service” right
  • Removes unneded IIS Mime Types
  • Disables SSL and enables TLS 1.2 sets, advanced audit policies and registries
  • Redirects HTTP to HTTPS
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

After PVWA is installed and hardened what Windows Service is present, and what account runs it?

A

CyberArk Scheduled Tasks

Log on as: PVWAReportsUser

How well did you know this?
1
Not at all
2
3
4
5
Perfectly