70-282 · Question #43
Company a network consultant for a marketing company. Exams installs Microsoft Windows Small Business Server 2003 on a network computer. The network contains a server, 35 client computers, and 15…
The correct answer is B. Remove all existing groups and add the Finance group access to the print device. Explanation: This is fairly straightforward. For exclusive usage of a network print device, you need to remove the unwanted groups from the access to the print device. Resource access permissions are stored as access control entries (ACEs) on an ACL that is part of the security…
Question
Company a network consultant for a marketing company. Exams installs Microsoft Windows Small Business Server 2003 on a network computer. The network contains a server, 35 client computers, and 15 mobile computers. Finance department users want to have a print device near the department’s location and they want exclusive use of the device. She installs a remote network print device close to these users. You create a Finance group. Exams add the users to the Finance group. Company wants to configure the print device to meet the users’ requirement with the default groups and the assigned permissions. What should she do?
Options
- ADeny permissions to the Everyone group and grant Print permissions to the Creator Owner
- BRemove all existing groups and add the Finance group access to the print device.
- CChange permission from the Everyone group to Mange Documents Only and grant Print
- DDeny permissions to the Everyone group and grant Print permissions to the Finance group.
How the community answered
(52 responses)- A13% (7)
- B77% (40)
- C8% (4)
- D2% (1)
Explanation
Explanation: This is fairly straightforward. For exclusive usage of a network print device, you need to remove the unwanted groups from the access to the print device. Resource access permissions are stored as access control entries (ACEs) on an ACL that is part of the security descriptor of each resource. When a user attempts to access a resource, the user's security access token, which contains the security identifiers (SIDs) of the user's account and group accounts, is compared to the SIDs in the ACEs of the ACL. Incorrect answers: A: The ACL should be changed as described in option B. Being the creator owner does not necessarily mean exclusive access to the print device. C: Granting permissions to the administrator group is not the same as granting exclusive use of the print device to the Finance group. D: The denial of permissions should be done by removing the existing groups from access to the print device and not print permissions to groups per se. Dan Holme, Orin Thomas, Managing and Maintaining a Microsoft Windows Server 2003 Environment, Microsoft Press, Redmond, 2004, Chapter 6, p. 13
Topics
Community Discussion
No community discussion yet for this question.