How to quickly restrict file server access after an audit?

Identity and Access Management

After an audit, an administrator discovers all users have access to confidential data on a file server. Which of the following should the administrator use to restrict access to the data quickly?

  1. Group Policy
  2. Content filtering
  3. Data loss prevention
  4. Access control lists Source Reference Answer

Community Votes

D
100%

100% of anonymous learners picked answer D. Votes are pick records left by other test-takers — they are not the verified answer.

Community Insight

The question tests the distinction between broad policy management and granular, immediate permission enforcement, with the trap being the selection of Group Policy which is less direct for quick file-level fixes.

Access Control Lists (ACLs) provide the most immediate mechanism for restricting specific user permissions on file servers, ensuring rapid remediation of unauthorized data access.

Candidates often select Group Policy because it manages security settings, but it is incorrect here as ACLs are the direct tool for controlling file system access rights efficiently.

Community Discussion (3 comments)

SHADTECH123 👍 10 Selected: D
Access control lists (ACLs) should be used to restrict access to the data quickly. ACLs allow the administrator to specify which users or groups have permission to access certain files or directories on the file server, providing a straightforward and immediate way to enforce access controls and protect confidential data.
Nilab 👍 2
Why can’t be group policy?
dbrowndiver 👍 1 Selected: D
In this scenario, D. Access control lists (ACLs) is the best choice because it provides a quick and precise way to adjust file permissions and restrict access to confidential data on a file server. ACLs allow administrators to implement immediate changes and ensure only authorized users have access to sensitive files.

Comments & Corrections

No comments yet — spotted an error or have a note? Share it below.

Log in to comment, report an error, or add a note about this question.

Submitted for moderation before publishing. Keep it helpful and respectful.

Expert Analysis

Why the Answer Is Correct

Access Control Lists (ACLs) are the fundamental mechanism used by operating systems to define who can read, write, or execute specific files. By modifying the ACL on the confidential directory, an administrator can instantly revoke access for unauthorized users without deploying complex infrastructure changes.

Why the Other Options Are Wrong

Group Policy (A) is a configuration management tool that applies settings across domains; while it can configure security policies, it is not the direct method for setting individual file permissions quickly. Content filtering (B) restricts web traffic content, not local file access. Data loss prevention (C) monitors and blocks data exfiltration but does not inherently restrict initial access rights to stored files.

Community Comment Notes

Community consensus strongly supports ACLs as the standard solution for file-level access control. Comments highlight that ACLs offer 'precise' and 'immediate' adjustments, whereas Group Policy is viewed as too broad or indirect for this specific task. One comment questions why Group Policy isn't the answer, reinforcing the need to distinguish between policy frameworks and direct permission controls.

Exam Strategy

Focus on the keyword 'quickly' and the target 'file server'; when asked about immediate file/directory permissions, always choose ACLs or NTFS permissions over broader management tools like Group Policy.

Related Analysis

Practice All SY0-701 Questions

Access 100 questions with complete answers and detailed explanations.

View Full SY0-701 Practice Test →

← Back to SY0-701 Study Guide