nerdexam
Citrix

1Y0-201 · Question #128

A Citrix Administrator needs to ensure that individual support teams are only able to control the delivery groups for their units. Which feature should the administrator configure to ensure that the…

The correct answer is A. Scopes. Citrix Delegated Administration Scopes restrict which objects a delegated administrator role can manage, enabling per-team control over specific delivery groups.

Managing Applications and Desktops

Question

A Citrix Administrator needs to ensure that individual support teams are only able to control the delivery groups for their units. Which feature should the administrator configure to ensure that the appropriate teams have administrator access to the desktops for their particular unit?

Options

  • AScopes
  • BExclusion filters
  • CUser assignment
  • DSmartAccess settings

How the community answered

(39 responses)
  • A
    87% (34)
  • B
    8% (3)
  • C
    3% (1)
  • D
    3% (1)

Why each option

Citrix Delegated Administration Scopes restrict which objects a delegated administrator role can manage, enabling per-team control over specific delivery groups.

AScopesCorrect

Scopes in Citrix Delegated Administration define the subset of objects - such as delivery groups, machine catalogs, and applications - that a given administrator role is permitted to view and manage. By creating a distinct scope for each support team and associating only that team's delivery groups with the scope, the administrator ensures each team has management access exclusively to the desktops relevant to their unit, satisfying the least-privilege requirement.

BExclusion filters

Exclusion filters are applied within Citrix policy settings to exclude specific users or machines from receiving a policy and are not a mechanism for restricting administrative management access to delivery groups.

CUser assignment

User assignment controls which end users are entitled to access published desktops and applications in a delivery group but does not govern which administrators can manage or configure those groups.

DSmartAccess settings

SmartAccess settings tie NetScaler Gateway session policy conditions to Citrix access control for resource delivery based on endpoint analysis results, and are unrelated to restricting administrator management permissions.

Concept tested: Citrix Delegated Administration scopes for delivery group access control

Source: https://docs.citrix.com/en-us/citrix-virtual-apps-desktops/secure/delegated-administration.html

Topics

#scopes#delegated administration#delivery groups#access control

Community Discussion

No community discussion yet for this question.

Full 1Y0-201 Practice