AZ-800 · Question #156
Your network contains an Active Directory Domain Services (AD DS) domain. The domain contains a user named User1 and the servers shown in the following table. You need to ensure that User1 can…
The correct answer is B. Implement IP Address Management (IPAM). IPAM provides centralized IP address infrastructure management with granular role-based access control (RBAC) at the scope level. Using IPAM, you can delegate management of specific DHCP scopes (e.g., Scope1 and Scope3) to specific users without granting them rights over all…
Question
Your network contains an Active Directory Domain Services (AD DS) domain. The domain contains a user named User1 and the servers shown in the following table. You need to ensure that User1 can manage only Scope1 and Scope3. What should you do?
Options
- AAdd User1 to the DHCP Administrators group on Server1 and Server2.
- BImplement IP Address Management (IPAM).
- CAdd User1 to the DHCP Administrators domain local group.
- DImplement Windows Admin Center and add connections to Server1 and Server2.
How the community answered
(19 responses)- A5% (1)
- B74% (14)
- C16% (3)
- D5% (1)
Explanation
IPAM provides centralized IP address infrastructure management with granular role-based access control (RBAC) at the scope level. Using IPAM, you can delegate management of specific DHCP scopes (e.g., Scope1 and Scope3) to specific users without granting them rights over all scopes. Adding User1 to the DHCP Administrators group on the servers (options A and C) would grant full DHCP administrative rights on the entire server, meaning User1 could manage all scopes - not just the two required. Windows Admin Center (option D) provides server management capabilities but does not offer scope-level DHCP delegation.
Topics
Community Discussion
No community discussion yet for this question.