nerdexam
Microsoft

70-703 · Question #22

You have a deployment of System Center Configuration Manager (Current Branch) that contains a collection named Restricted. Restricted contains only client computers that run Windows 10. You need to…

The correct answer is B. Create a Windows Defender Application Control (WDAC) policy. https://docs.microsoft.com/en-us/sccm/protect/deploy-use/use-device-guard-with-configuration-

endpoint protection

Question

You have a deployment of System Center Configuration Manager (Current Branch) that contains a collection named Restricted. Restricted contains only client computers that run Windows 10. You need to ensure that only trusted executable files can run on the computers in the Restricted collection. What should you do?

Options

  • ADeploy custom Client Device Settings.
  • BCreate a Windows Defender Application Control (WDAC) policy.
  • CModify the Default Client Settings.
  • DCreate a device compliancy policy.

How the community answered

(25 responses)
  • A
    8% (2)
  • B
    80% (20)
  • C
    8% (2)
  • D
    4% (1)

Explanation

https://docs.microsoft.com/en-us/sccm/protect/deploy-use/use-device-guard-with-configuration-

Topics

#Windows Defender Application Control#WDAC#application whitelisting#endpoint security

Community Discussion

No community discussion yet for this question.

Full 70-703 Practice