DRAG DROP
Your network contains an Active Directory domain named contoso.com. The domain
contains a file server named Server1. All servers run Windows Server 2012 R2.
All domain user accounts have the Division attribute automatically populated as part of the
user provisioning process. The Support for Dynamic Access Control and Kerberos armoring
policy is enabled for the domain.
You need to control access to the file shares on Server1 based on the values in the Division
attribute and the Division resource property.
Which three actions should you perform in sequence?
Explanation:
http://technet.microsoft.com/de-de/library/hh846167.aspx
First create a claim type for the property, then create a reference resource property that
points back to the claim. Finally set the classification value on the folder.
1. From Active Directory Administrative Center, create a claim type.
2. From Active Directory Administrative Center, create a reference resource property.
3. On the shared folders, set the classification value.
0
0
I agree
0
0