セキュリティ ポリシーのどの 2 つのコンポーネントを設定すると、業務時間外にサードパーティの請負業者が内部アプリケーションにアクセスできるようになりますか? (2 つ選択してください。)
正解:C,D
To allow third-party contractors controlled access, security policies must combineuser identificationandtime- based access controls:
User-ID
"User-ID enables security policies to be based on user identity rather than IP addresses, ensuring precise policy enforcement for specific users such as contractors." (Source: User-ID Overview) Schedule
"Schedules allow policies to be active only during specific times, providing time-based access control (e.g., after business hours)." (Source: Security Policy Schedules) Together, they ensure that only authorized users (contractors) have access, and only when explicitly allowed.