PrepAway - Latest Free Exam Questions & Answers

You create the executable rules as shown in the exhibit by using the Create Executable Rules wizard.

HOTSPOT
Your network contains an Active Directory domain named contoso.com. All domain controllers run
Windows Server 2012 R2.
All servers are configured to enforce AppLocker policies.
You install a server named Server1.
On Server1, you install an application named App1.exe in a folder located on C:\App1.
You have two domain groups named Group1 and Group2.A user named User1 is a member of
Group1 and Group2.
You create a Group Policy object (GPO) named GPO1. You link GPO1 to contoso.com.
You create the executable rules as shown in the exhibit by using the Create Executable Rules wizard.
(Click the Exhibit button.)

To answer, complete each statement according to the information presented in the exhibit. Each
correct selection is worth one point.

PrepAway - Latest Free Exam Questions & Answers

Answer:

3 Comments on “You create the executable rules as shown in the exhibit by using the Create Executable Rules wizard.

    1. Mr. B says:

      Agreed choices.

      If User1 is removed from Group2, then the “Deny” would not be included. If you just add the user to the “Domain Admins” group, then even though that is allowed, the “Deny” takes precedence.

      If the Deny rule that is set is removed, then the group “Everyone” will not be included, and thus allowing “Everyone” to use the App. Again, if you do any other action, then even though it may appear to function, the Deny rule will always take precedence.




      2



      0

Leave a Reply