Your network contains an Active Directory forest. The forest contains a single domain named contoso.com.
AppLocker policies are enforced on all member servers.
You view the AppLocker policy applied to the member servers as shown in the exhibit. (Click the Exhibit button.)
To answer, complete each statement according to the information presented in the exhibit. Each correct selection is worth one point.
Hot Area:
 
 
                





Answer is correct but explanation is wrong LOL!!!
0
1
In the choices it stated “Only members of the Domain Admins” Meaning this users are created and once you created a user on AD the user is default member of Domain users.
So the correct answers are:
Only Local Users
Everyone
0
0
Additional info. By default members of domain admins group was administrator and if you are going to look the groups that administrator is member of you will see that domain users is one of them. This means that denied rule for domain users group will surely deny the default member of domain admins group.
0
0
drin, i think, that permitions fo Domain Admins will interrupt deny for Domain users.
0
0
Actually in the task was not mentioned nothing about groups membership,right ? right! So separately domain admins will have access to IE (of course without membership in group Domain users )
0
0