🔥 40% Off Crucial Exams Memberships — This Week Only

2 days, 7 hours remaining!

ISC2 Systems Security Certified Practitioner (SSCP) Practice Question

Your company operates a production VPC that contains an AWS Managed Microsoft AD directory. You must allow users from the on-premises Active Directory forest to log on to Amazon EC2 instances that are joined to the AWS directory, while ensuring that accounts created in AWS cannot authenticate to any on-premises resources. Which trust configuration best satisfies these requirements?

  • Create a one-way outgoing forest trust from AWS Managed Microsoft AD to the on-premises Active Directory.

  • Create a one-way incoming forest trust from AWS Managed Microsoft AD to the on-premises Active Directory.

  • Avoid trusts and use ADFS with SAML federation for cross-environment authentication instead.

  • Create a two-way transitive forest trust between AWS Managed Microsoft AD and the on-premises forest.

ISC2 Systems Security Certified Practitioner (SSCP)
Access Controls
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot