Soru

Zorluk: OrtaSession Settings and Password Policies

A financial firm requires custom password security controls for users assigned to the Support Specialist profile. Specifically, these users must have their passwords expire every 30 days, and their accounts must lock out after 3 invalid login attempts. All other users in the organization must retain the default organization-wide settings. Which TWO administrative actions should the Salesforce administrator take to enforce these profile-specific requirements? (Select TWO)

  1. Set the User Password Expires In setting to 30 days within the Support Specialist profile Password Policies.Cevap
  2. Set the Maximum Invalid Login Attempts setting to 3 within the Support Specialist profile Password Policies.Cevap
  3. C
    Update the Organization-Wide Password Policies under Setup to enforce the 30-day expiration and 3-attempt lockout.
  4. D
    Create and assign a Permission Set that defines the 30-day password expiration and 3-attempt lockout rules.

Cevap

The administrator must configure both the User Password Expires In setting to 30 days and the Maximum Invalid Login Attempts setting to 3 within the Support Specialist profile Password Policies.
In Salesforce, password policies configured at the profile level override organization-wide default password policies. Setting 'User Password Expires In' to 30 days and 'Maximum Invalid Login Attempts' to 3 within the Support Specialist profile Password Policies enforces these security rules strictly for assigned users without altering password policies for the rest of the organization.

Adım Adım Çözüm

1
Identify the target profile requiring non-default password policy settings.
Determined that the updated expiration and lockout requirements apply exclusively to the Support Specialist profile.
Profile-level password policies allow administrators to override org-wide defaults for specific user groups.
2
Navigate to the Password Policies section of the Support Specialist profile.
Opened the profile-specific security settings interface.
Custom password rules must be set directly on the profile to avoid affecting other profiles.
3
Update the password expiration and invalid login attempt settings.
Set User Password Expires In to 30 days and Maximum Invalid Login Attempts to 3.
These two parameters satisfy the compliance mandate while leaving org-wide defaults intact for all other users.

Anahtar Kavram

Profile-level Password Policies override Organization-Wide Password Policies and cannot be managed using Permission Sets.
Tahmini Süre:1m 30s
Bu soruyu puanla