220-802 · Question #238
A technician would like to limit computer access to certain users. Which of the following should be configured?
The correct answer is D. Local security policy. Local Security Policy allows administrators to define user rights, logon restrictions, and access controls that determine which users can log on to or access the computer.
Question
A technician would like to limit computer access to certain users. Which of the following should be configured?
Options
- AAdvanced security
- BBoot.ini file
- CSystem configuration
- DLocal security policy
How the community answered
(21 responses)- A5% (1)
- B5% (1)
- D90% (19)
Why each option
Local Security Policy allows administrators to define user rights, logon restrictions, and access controls that determine which users can log on to or access the computer.
Advanced security (Windows Firewall with Advanced Security) controls network traffic filtering rules - it does not manage which user accounts can log on to the local system.
Boot.ini is a legacy Windows XP/2003 boot configuration file that controls OS loading options - it has no role in user access or logon restrictions.
System Configuration (msconfig.exe) manages startup services, boot options, and diagnostic modes - it does not contain user access or logon policy controls.
Local Security Policy (secpol.msc) contains User Rights Assignment settings such as 'Allow log on locally' and 'Deny log on locally,' which directly control which accounts or groups can access the machine. It also supports account and audit policies that enforce access restrictions at the operating system level.
Concept tested: Restricting user logon access via Local Security Policy
Source: https://learn.microsoft.com/en-us/windows/security/threat-protection/security-policy-settings/user-rights-assignment
Topics
Community Discussion
No community discussion yet for this question.