Group Policy is a mechanism for controlling and deploying operating system setti
ID: 3771943 • Letter: G
Question
Group Policy is a mechanism for controlling and deploying operating system settings to computers all over your network. Group Policy consists of user and computer settings for the various Microsoft Windows operating systems, which the systems implement during computer startup and shutdown and user logon and logoff.
Topic: Planning Group Policy Software Deployments
Your company, a healthcare organization, is currently working toward compliance with new government standards on patient confidentiality. Your IT department has decided that using software restriction policies with standard user access permissions will help to fulfill the necessary security requirements. You are preparing an implementation plan that is based on user needs and security requirements. Users should not be able to access any programs with the exception of those that are pertinent to their jobs. In addition, the user needs within the organization are as follows:
Users only need access to email and a patient database.
The patient database has its own built-in security access system that is configured for each user based on the user's needs within the program.
All user accounts are located in containers based on the user's interface location.
In addition, the following points should be considered in your implementation plan:
Software restriction policy settings should not affect settings that are already in place within existing GPOs. If problems arise with software restriction policies, they should be easy to rectify, without affecting other security areas.
Administrator accounts should not be affected by software restrictions.
Other applications should not be affected by any of the restrictions.
List the key points that should be part of your implementation plan based on the information provided here.
Explanation / Answer
1. WAIT for NETWORK At ATARTUP and LOGON
This determines whether policies are applied synchronously or asynchronously. It would gurantee the system startups in a single boot.
2. Automatic Start Up, ShutDownb, Logon and LogOff Scripts.
3. Configure the path for Windows Firewall Settings, and Anti-Virus settings.
4. Automatic installation of OS in extreme/risk cases.
5. We could maintain a Standardized Look and Feel for the OS, for all systems under the Group Policy.
6. Certain applications that are automatically updated, implement a constant software installation policy.
7. The most commonly used browsers like IE, Chrome, Firefox must be stamdardised and secure, frequently. (say monthly/weekly)
8. Important/Regularly used folders My Documnets, My Computer, My Pictures- such folders must be redirected.
9. Maintain Automatic Updates , in order to avoid the tiring updates that could take hours :)
10. And- Strengthening the security for Desktop by implemnting better anti-viruses!
Related Questions
Navigate
Integrity-first tutoring: explanations and feedback only — we do not complete graded work. Learn more.