050-696 · Question #29
The LMorgan user object resides in the LGA . DA container in an eDirectory tree named .DA-TREE . . The MWaters and the MFinn users also reside in the LGA container. LMorgan is a member of the…
The correct answer is A. The Sales group. C. The LGA container. In eDirectory, security equivalence is automatically granted through explicit group membership and implicit inheritance from container objects in a user's context path.
Question
Options
- AThe Sales group.
- BThe MWaters user.
- CThe LGA container.
- DThe MFinn user.
- EThe DA2 server object.
How the community answered
(43 responses)- A79% (34)
- B2% (1)
- D12% (5)
- E7% (3)
Why each option
In eDirectory, security equivalence is automatically granted through explicit group membership and implicit inheritance from container objects in a user's context path.
LMorgan is an explicit member of the Sales.LGA.DA group; eDirectory automatically makes any user security equivalent to every group they belong to, so LMorgan inherits all trustee assignments granted to the Sales group object.
MWaters is a peer user object in the same container; eDirectory does not create security equivalence between co-located user objects - only group membership and container hierarchy produce that relationship.
eDirectory implicitly makes every user security equivalent to all container objects in their distinguished name hierarchy; because LMorgan's object resides in LGA.DA, LMorgan automatically inherits any rights assigned directly to the LGA container.
MFinn is another user object residing in LGA; sharing a parent container with another user object does not grant security equivalence between those users in eDirectory.
The DA2 server object is a sibling object in LGA.DA, not a group or ancestor container; eDirectory security equivalence does not propagate from server objects to user objects that merely share the same container.
Concept tested: eDirectory implicit security equivalence via groups and containers
Source: https://www.novell.com/documentation/edir88/edir88/data/a2iiidh.html
Topics
Community Discussion
No community discussion yet for this question.