CompTIA A+ Core 2 (220-1202)SecurityMedium
A company policy requires that all employee workstations automatically lock after 10 minutes of inactivity and display a login screen. Additionally, users are required to have complex passwords that expire every 90 days. Which Windows security feature is primarily responsible for enforcing these types of settings across multiple computers in a domain environment?
- AWindows Defender Firewall
- BUser Account Control (UAC)
- CLocal Security Policy
- DGroup Policy
Show answer & explanationAnswer & explanation
Correct answer: D. Group Policy
Group Policy is a powerful feature in Windows Server environments that allows administrators to define and enforce security, networking, and user configuration settings for groups of users and computers across a domain. It is the primary tool for centrally managing settings like screen lock, password complexity, and expiration.
Why the other options are wrong
- A. Windows Defender Firewall controls network traffic and connections.
- B. UAC prompts users for administrative consent when making system changes.
- C. Local Security Policy manages security settings on a single, standalone computer.
Group Policy
A feature of Windows Active Directory that provides centralized management and configuration of operating systems, applications, and users' settings in an Active Directory environment.
- Enforces security policies (e.g., password complexity, screen lock).
- Can deploy software and scripts.
- Managed through Group Policy Objects (GPOs) linked to OUs, domains, or sites.
Memory trick: Group Policy governs the domain's digital rules.