nerdexam
Novell

050-696 · Question #98

Click the Exhibit button to begin. When you installed the eDirectory tree, your Admin user object was automatically assigned all entry rights to the tree root. What rights does Admin have to the DA1…

The correct answer is C. Supervisor, Browse, Delete, Rename. Admin's Supervisor right inherited from the tree root flows down to all subordinate objects; however, because the DA1 Server object is a leaf object, Create and Inheritable do not apply.

Novell eDirectory Management

Question

Click the Exhibit button to begin. When you installed the eDirectory tree, your Admin user object was automatically assigned all entry rights to the tree root. What rights does Admin have to the DA1 server object?

Exhibit

050-696 question #98 exhibit

Options

  • ABrowse
  • BSupervisor
  • CSupervisor, Browse, Delete, Rename
  • DBrowse, Create, Delete, Rename
  • EBrowse, Create, Delete, Rename, Inheritable
  • FSupervisor, Browse, Create, Delete, Rename, Inheritable
  • GAdmin has no rights.

How the community answered

(59 responses)
  • A
    3% (2)
  • B
    15% (9)
  • C
    71% (42)
  • D
    2% (1)
  • E
    7% (4)
  • F
    2% (1)

Why each option

Admin's Supervisor right inherited from the tree root flows down to all subordinate objects; however, because the DA1 Server object is a leaf object, Create and Inheritable do not apply.

ABrowse

Browse alone represents only a minimal subset of rights; Admin's inherited Supervisor assignment grants far broader access than a single Browse right.

BSupervisor

Supervisor alone is an incomplete representation; the effective rights also include Browse, Delete, and Rename on a leaf object.

CSupervisor, Browse, Delete, RenameCorrect

Admin holds all entry rights at the tree root, including Supervisor, which inherits down to the DA1 Server object granting Supervisor, Browse, Delete, and Rename. Because DA1 is a leaf object - a Server object cannot contain child objects - the Create right (which only applies to containers) and the Inheritable flag are not relevant and are therefore not listed in the effective rights.

DBrowse, Create, Delete, Rename

This set omits the Supervisor right, which Admin does hold through inheritance, and incorrectly includes Create, which does not apply to leaf objects.

EBrowse, Create, Delete, Rename, Inheritable

This set omits the Supervisor right and incorrectly includes both Create and Inheritable, neither of which is applicable to a leaf Server object.

FSupervisor, Browse, Create, Delete, Rename, Inheritable

Create and Inheritable are included here but do not apply to leaf objects such as a Server object, making this set incorrect.

GAdmin has no rights.

Admin does have rights to DA1 because the Supervisor right assigned at the tree root inherits down to all subordinate objects in the tree.

Concept tested: eDirectory entry rights inheritance to leaf objects

Source: https://www.novell.com/documentation/edir88/

Topics

#eDirectory rights#supervisor rights#rights inheritance#trustee assignment

Community Discussion

No community discussion yet for this question.

Full 050-696 Practice