nerdexam
Microsoft

70-243 · Question #24

70-243 Question #24: Real Exam Question with Answer & Explanation

The correct answer is C. Assign the Application Deployment Manager security role to Group1.. Glossary for Microsoft System Center 2012 Configuration Manager Application Administrator A security role that grants permissions to administrative users so that they can perform both the Application Deployment Manager role and the Application Author role. Application Deployment

security management

Question

Your network contains an Active Directory forest. The forest contains a System Center 2012 Configuration Manager environment. The environment contains one primary site. You need to ensure that the members of a group named Group1 are allowed to deploy applications to desktop computers. The solution must minimize the number of permissions assigned to Group1. What should you do?

Options

  • AAssign the Application Administrator security role to Group1.
  • BAdd the Application Deployment Manager security role to Group1.
  • CAssign the Application Deployment Manager security role to Group1.
  • DAssign the Application Administrator security role to Group1.

Explanation

Glossary for Microsoft System Center 2012 Configuration Manager Application Administrator A security role that grants permissions to administrative users so that they can perform both the Application Deployment Manager role and the Application Author role. Application Deployment Manager A security role that grants permissions to administrative users so that they can deploy and monitor applications. 2012-configuration-manager.aspx Role-Based Administration in System Center 2012 Configuration Manager In Configuration Manager 2012, Security Roles are used to collectively group objects and permissions (operations) for assignment to an Administrator. Instead of an individual permission set on a single instance of object, the Security Role provides a single Role assignment to an administrator; reducing the overall complexity with permission management. An “object” in the Security Role is something that you want to manage access to and “permission” is the operational functions, such as Read, Modify and Delete.

Topics

#security roles#Application Deployment Manager#RBAC#least privilege

Community Discussion

No community discussion yet for this question.

Full 70-243 Practice