Soru

Zorluk: OrtaSession Settings and Password Policies

An organization's security policy mandates that standard users change their passwords every 90 days. However, to satisfy compliance requirements, users assigned to the Executive Operations team must change their passwords every 30 days. Which administrative action should a Salesforce administrator take to enforce this password expiration requirement specifically for the Executive Operations team?

  1. A
    Create and assign a custom Permission Set configured with a 30-day password expiration policy.
  2. Edit the Password Policies settings on the Profile assigned to the Executive Operations team to expire passwords in 30 days.Cevap
  3. C
    Update the Organization-Wide Password Policies to 30 days and apply a criteria-based sharing rule for standard users.
  4. D
    Modify the Organization-Wide Session Settings to restrict total session duration to 30 days for privileged roles.

Cevap

The administrator should edit the Password Policies settings directly on the Profile assigned to the Executive Operations team to set password expiration to 30 days.
In Salesforce, Password Policies configured at the Profile level override the default Organization-Wide Password Policies. Setting the password expiration to 30 days on the specific Profile assigned to the Executive Operations team successfully enforces the requirement for those users without impacting standard users.

Adım Adım Çözüm

1
Identify the administrative location where password policy overrides are configured for specific groups of users.
Determine that Profile-level password policies take precedence over Organization-Wide settings.
Organization-Wide policies establish defaults, but individual Profiles permit granular security control overrides.
2
Navigate to Setup -> Profiles and select the target profile assigned to the Executive Operations team.
Access the profile configuration interface.
Security controls such as password policies are maintained directly within the Profile configuration.
3
Edit the Password Policies section on the Profile to set password expiration to 30 Days.
Enforce the stricter 30-day password expiration requirement for all users assigned to that Profile.
This achieves the compliance requirement without altering password expiration timelines for standard users.

Anahtar Kavram

Profile-Level Password Policy Overrides
Bu soruyu puanla