Salesforce Certified Platform Identity and Access Management Architect (Plat-Arch-203) Exam - Topic 5 Question 27 Discussion
The security team at Universal Containers (UC) has identified exporting reports as a high-risk action and would like to require users to be logged into Salesforce with their Active Directory (AD) credentials when doing so. For all other users of Salesforce, users should be allowed to use AD Credentials or Salesforce credentials. What solution should be recommended to prevent exporting reports except when logged in using AD credentials while maintaining the ability to view reports when logged in with Salesforce credentials?
B) Use SAML Federated Authentication and Custom SAML JIT Provisioning to dynamically and or remove a permission set that grants the Export Reports Permission.
A) Use SAML Federated Authentication and block access to reports when accessed through a Standard Assurance session.
C) Use SAML federated Authentication, treat SAML Sessions as High Assurance, and raise the session level required for exporting reports.
D) Use SAML federated Authentication with a Login Flow to dynamically add or remove a Permission Set that grants the Export Reports Permission.
Rima
8 months agoRex
8 months agoDierdre
8 months agoAnissa
8 months agoVanesa
9 months agoCheryl
9 months agoLillian
9 months agoTegan
9 months agoRolland
9 months agoMeghann
9 months agoAvery
10 months agoElinore
10 months agoCecil
10 months agoTiera
10 months agoHelga
10 months agoNickole
10 months agoKrissy
1 year agoCorinne
1 year agoLemuel
1 year agoCoral
1 year agoMarge
1 year agoCherrie
1 year agoChandra
1 year agoOlive
1 year agoKerrie
1 year agoMing
1 year agoAnnita
1 year agoAudry
1 year agoGlenn
1 year agoHoa
1 year agoAlline
1 year agoPamella
1 year agoAnjelica
1 year agoRoy
1 year agoLoreta
1 year agoMichel
1 year ago