An IT administrator is deploying centralized management policies across remote branch office endpoints currently running Windows 11 Pro. The organization mandates WAN bandwidth optimization for update distribution using BranchCache, as well as strict executable whitelisting using AppLocker. After configuring the corresponding Group Policy objects (GPOs), the administrator discovers that the endpoints ignore the AppLocker rules and fail to cache branch content. Which of the following actions is necessary to enable and enforce these required capabilities on the endpoints?
- Upgrade the operating system edition on the endpoints from Windows 11 Pro to Windows 11 Enterprise.Answer
- BJoin the endpoints to an Active Directory domain and grant local administrator privileges to the user accounts.
- CPerform an in-place conversion to Windows 11 Home and install the Remote Server Administration Tools (RSAT) package.
- DConfigure executable compatibility mode to run applications under elevated administrative permissions.
Answer
Upgrade the operating system edition on the endpoints from Windows 11 Pro to Windows 11 Enterprise.
Features such as full AppLocker rule enforcement and BranchCache are enterprise-grade capabilities reserved exclusively for Windows 11 Enterprise and Windows 11 Education editions. Upgrading from Windows 11 Pro to Windows 11 Enterprise allows the operating system to honor and enforce these GPO settings.
Step-by-Step Solution
Key Concept
Windows OS Edition Boundaries and Enterprise-Exclusive Features