nerdexam
Novell

050-696 · Question #116

Click the Exhibit button to begin. Given the explicit rights assignments and the IRFs shown, what rights does the DHarris user object have to the DNelson user object?

The correct answer is D. Browse, Rename. Effective eDirectory rights are determined by applying the IRF to inherited rights and then adding any explicit trustee assignments made directly at that object.

Novell eDirectory Management

Question

Click the Exhibit button to begin. Given the explicit rights assignments and the IRFs shown, what rights does the DHarris user object have to the DNelson user object?

Exhibit

050-696 question #116 exhibit

Options

  • ABrowse
  • BRename
  • CSupervisor
  • DBrowse, Rename
  • EBrowse, Create, Rename
  • FBrowse, Create, Delete, Rename, Inheritable
  • GSupervisor, Browse, Create, Delete, Rename, Inheritable

How the community answered

(47 responses)
  • A
    9% (4)
  • C
    2% (1)
  • D
    83% (39)
  • E
    2% (1)
  • G
    4% (2)

Why each option

Effective eDirectory rights are determined by applying the IRF to inherited rights and then adding any explicit trustee assignments made directly at that object.

ABrowse

Browse alone is incomplete because the Rename right also survives the IRF or is explicitly assigned, making this answer too restrictive.

BRename

Rename alone omits Browse, which is the baseline right required to see and navigate to objects in the eDirectory tree.

CSupervisor

Supervisor right is not present in either the inherited rights that pass through the IRF or the explicit trustee assignments shown for DHarris.

DBrowse, RenameCorrect

An Inherited Rights Filter limits which rights flow down the tree, but an explicit trustee assignment at a given object level grants rights directly regardless of the IRF. After applying the IRF to filtered inherited rights and combining them with the explicit assignments shown in the exhibit, DHarris ends up with Browse and Rename as the effective rights on the DNelson object.

EBrowse, Create, Rename

Create is not supported by the effective rights calculation - it does not survive the IRF and is not present in the explicit assignment for DHarris.

FBrowse, Create, Delete, Rename, Inheritable

This set adds Create, Delete, and Inheritable rights that are blocked by the IRF and are not part of any explicit assignment made to DHarris.

GSupervisor, Browse, Create, Delete, Rename, Inheritable

Supervisor combined with all other rights is not produced by the exhibit's IRF and explicit assignment values for this user.

Concept tested: eDirectory IRF and effective rights calculation

Source: https://www.novell.com/documentation/edir88/edir88/data/a2iiike.html

Topics

#effective rights#IRF#object rights#eDirectory

Community Discussion

No community discussion yet for this question.

Full 050-696 Practice