312-38 · Question #38
Which of the following policies is a set of rules designed to enhance computer security by encouraging users to employ strong passwords and use them properly?
The correct answer is D. Password policy. Password policy (D) is specifically designed to govern how users create, manage, and protect passwords - including rules for minimum length, complexity requirements, expiration intervals, and reuse restrictions, all aimed at strengthening authentication security. A (Information…
Question
Options
- AInformation protection policy
- BRemote access policy
- CGroup policy
- DPassword policy
How the community answered
(56 responses)- A2% (1)
- B5% (3)
- C7% (4)
- D86% (48)
Explanation
Password policy (D) is specifically designed to govern how users create, manage, and protect passwords - including rules for minimum length, complexity requirements, expiration intervals, and reuse restrictions, all aimed at strengthening authentication security.
- A (Information protection policy) addresses how sensitive data is classified, handled, stored, and shared - it's about protecting data assets broadly, not password rules specifically.
- B (Remote access policy) governs how users connect to a network from outside the organization (VPN rules, approved devices, etc.) - not password construction.
- C (Group policy) is a Windows Active Directory mechanism for pushing configuration settings to users and computers - it can enforce password rules, but it is a technical tool, not the policy itself.
Memory tip: Think "P for P" - Password Policy is the only option whose name directly matches what it controls. If the question mentions rules about password strength or proper use, map it straight to the policy named after passwords.
Topics
Community Discussion
No community discussion yet for this question.