Check Point Certified Security Administrator (CCSA) R80 — Question 134
When defining group-based access in an LDAP environment with Identity Awareness, what is the BEST object type to represent an LDAP group in a Security
Policy?
Answer options
- A. Access Role
- B. User Group
- C. SmartDirectory Group
- D. Group Template
Correct answer: A
Explanation
The correct answer is A, Access Role, as it is specifically designed to manage access based on user group membership in an LDAP context. The other options, while related to user management, do not effectively represent LDAP groups within the framework of Security Policies.