You need a strategy to log access to data on servers in the Manufacturing
department.
What should you do?
A. Install the Microsoft Baseline Security Analyzer (MBSA) on a server in the Chicago
office and use it to scan for Windows vulnerabilities on all servers in the Manufacturing
department.
B. Create a custom security template and run Security Configuration and Analysis to
analyze the security settings of each server in the Manufacturing department against the
custom security template.
C. Create a Group Policy Object (GPO) and configure the GPO to audit successful logon
attempts.350-001 Link the GPO to the Manufacturing department's Servers OU.
D. Create a Group Policy Object (GPO) and configure the GPO to enable auditing for
object access. Link the GPO to the Manufacturing department's Servers OU.
Answer: D
Explanation:
Leading the way in IT testing and certification tools, www.certifyme.com
- 32 -
Auditing object access audits user access to objects such as files, folders, registry
keys, and so forth.640-802 As with the other audit policies, you can either monitor the
success or failure of these actions. Further more making use of a GPO will ease the
administrative effort. Linking this GPO to the Manufacturing department's Servers
OU should be the strategy used to monitor the data on the serves in the
Manufacturing department.
Incorrect answers:
A: MBSA verifies whether your computer has the latest security updates and whether
there are any common security violation configurations that have been applied to your
computer. This is not the same as monitoring the servers to meet business requirements.
Auditing object access if what is required.
B: The Security Configuration and Analysis tool is used to analyze and to help configure
a computer's local security settings.VCP-310 Security Configuration and Analysis works by
comparing the computer's actual security configuration to a security database configured
with the desired settings. This is not the same as tracking all access to data on the servers
in the Manufacturing department.
C: You should audit object access to track access to data. Auditing logon attempts will
only log attempts to logon to the server it will not log access to data over the network.
Subscribe to:
Post Comments (Atom)
No comments:
Post a Comment