CyberArk Defender – Endpoint Privilege Manager — Question 113
If Privilege Management is not working on an endpoint, what is the most likely cause that can be verified in the EPM Agent Log Files?
Answer options
- A. Behavior of the elevation prompt for administrators in Admin Approval Mode is set to “Prompt for Consent for non-Windows binaries”.
- B. Agent version is incompatible.
- C. UAC policy Admin Approval for the Built-in Administrator Account is set to “Disabled”.
- D. UAC policy Run all administrators in Admin Approval Mode is set to “Enabled”.
Correct answer: D
Explanation
The correct answer is D because having the UAC policy set to 'Enabled' for all administrators in Admin Approval Mode is necessary for Privilege Management to function properly. Options A and C reference behaviors or settings that do not directly prevent Privilege Management from working, while option B is about compatibility, which is less likely to be the immediate cause compared to UAC settings.