AZ-801 · Question #21
You have a server named Server1 that runs Windows Server. You need to ensure that only specific applications can modify the data in protected folders on Server1. Solution: You configure AppLocker. Doe
The correct answer is A. Yes. AppLocker allows administrators to restrict which specific applications can modify data in protected folders on a Windows Server by defining rules based on application identities. This directly meets the goal of controlling application access to sensitive data.
Question
Options
- AYes
- BNo
How the community answered
(23 responses)- A83% (19)
- B17% (4)
Why each option
AppLocker allows administrators to restrict which specific applications can modify data in protected folders on a Windows Server by defining rules based on application identities. This directly meets the goal of controlling application access to sensitive data.
AppLocker enables administrators to create application control policies that specify which applications are allowed to run, or prevented from running, based on attributes like publisher, product name, file name, or file hash. By configuring rules to only permit specific, trusted applications to access or modify data in designated protected folders, all other applications are implicitly blocked. This provides granular control over data modification by applications.
Concept tested: AppLocker application whitelisting for data protection
Source: learn.microsoft.com/windows/security/application-security/application-control/windows-defender-application-control/applocker/what-is-applocker
Topics
Community Discussion
No community discussion yet for this question.