PrepAway - Latest Free Exam Questions & Answers

You configure GPO1 to prohibit access to Control Panel.

HOTSPOT
Your network contains an Active Directory domain named contoso.com.
The domain contains an organizational unit (OU) named OU1 as shown in the OU1 exhibit. (Click the
Exhibit button.)

The membership of Group1 is shown in the Group1 exhibit. (Click the Exhibit button.)

You configure GPO1 to prohibit access to Control Panel. GPO1 is linked to OU1 as shown in the GPO1
exhibit. (Click the Exhibit button.)

Select Yes if the statement can be shown to be true based on the available information; otherwise
select No. Each correct selection is worth one point.

PrepAway - Latest Free Exam Questions & Answers

Answer:

Explanation:
Group Policy does NOT APPLY TO SECURITY GROUPS, only users and computers in an OU.
Consequently, the only users in the OU are User2 and User4. Since the Security Filtering specifies
that the policy will only apply to users/computers in the OU who are members of Group1 or User3,
User4 will not have the policy applied. Since User2 is, in fact, a member of Group1, the policy will be
applied to user 2. Thus, the only user who will not be able to access the control panel is User2.

4 Comments on “You configure GPO1 to prohibit access to Control Panel.

  1. Jar-Jar says:

    For the Group Policy to apply, the user must be in the OU AND the Security Group. The only user in both of these is User2.
    It’s a classic Microsoft trick question, as no sane person would add User3 to the Security Filtering, since that user isn’t in the OU the GP is applied to.




    0



    0

Leave a Reply