CV0-002 · Question #420
Government agencies currently operate their own websites, each with its own directory services. There is a mandate to minimize IT administration. Which of the following should the cloud services archi
The correct answer is D. Reengineer the identification and authorization process.. To minimize IT administration across multiple government agencies, each with its own directory services, the most effective approach is to reengineer the identification and authorization process.
Question
Government agencies currently operate their own websites, each with its own directory services. There is a mandate to minimize IT administration. Which of the following should the cloud services architect choose to BEST meet this mandate?
Options
- ASet up a direct VPN tunnel between the government sites.
- BUpgrade all stand-alone systems to use mobile technologies.
- CUpgrade the operating systems on all of the web servers.
- DReengineer the identification and authorization process.
How the community answered
(44 responses)- A5% (2)
- B16% (7)
- C9% (4)
- D70% (31)
Why each option
To minimize IT administration across multiple government agencies, each with its own directory services, the most effective approach is to reengineer the identification and authorization process.
Setting up a direct VPN tunnel between sites addresses network connectivity but does not resolve the administrative burden of managing separate, disparate directory services for user authentication and authorization.
Upgrading systems to use mobile technologies is about user access methods or application design, not directly about reducing the administrative overhead of managing separate directory services.
Upgrading operating systems on web servers is a maintenance task that does not inherently address or reduce the administrative complexity arising from managing multiple, independent directory services.
With each agency having its own directory services, centralizing or federating the identification and authorization process would significantly reduce IT administration overhead. This reengineering could involve implementing a single sign-on (SSO) solution or a shared identity provider, simplifying user management and access control across all websites and minimizing redundant administrative tasks.
Concept tested: Centralized identity management, Single Sign-On (SSO)
Source: https://learn.microsoft.com/en-us/azure/active-directory/
Topics
Community Discussion
No community discussion yet for this question.