CompTIA A+ Core 2 (220-1202)SecurityMedium
A network administrator is configuring a new Windows Server 2022. The server will host sensitive company documents that need to be accessed by specific user groups. The administrator wants to ensure that access permissions are granular and apply whether users access files locally or over the network. Which permission system should the administrator configure?
- ANTFS permissions only
- BBoth NTFS and Share permissions, with NTFS being more restrictive
- CBoth NTFS and Share permissions, with Share being more restrictive
- DShare permissions only
Show answer & explanationAnswer & explanation
Correct answer: B. Both NTFS and Share permissions, with NTFS being more restrictive
NTFS permissions control access both locally and over the network, offering granular control. Share permissions only apply to network access. When both are applied, the most restrictive permission from either system takes precedence, ensuring comprehensive security.
Why the other options are wrong
- A. NTFS permissions are essential, but share permissions are also needed for network access to even reach the folder.
- C. While both are used, it's always the MOST restrictive permission that applies, regardless of which system (NTFS or Share) it comes from.
- D. Share permissions only apply to network access and are less granular than NTFS.
NTFS vs. Share Permissions
NTFS permissions control access to files and folders both locally and over the network, while Share permissions control access only when files are accessed over a network share. When both are applied, the most restrictive permission takes precedence.
- NTFS: Local and network access; granular control.
- Share: Network access only; less granular.
- Most restrictive permission wins when both are applied.
Memory trick: NTFS is the key, Share is the door, most restrictive wins the war.