List of questions
Related questions
Question 206 - Certified Identity and Access Management Architect discussion
Universal Containers (UC) is using Active Directory as its corporate identity provider and Salesforce as its CRM for customer care agents, who use SAML based sign sign-on to login to Salesforce. The default agent profile does not include the Manage User permission. UC wants to dynamically update the agent role and permission sets.
Which two mechanisms are used to provision agents with the appropriate permissions?
Choose 2 answers
A.
Use Login Flow in User Context to update role and permission sets.
B.
Use Login Flow in System Context to update role and permission sets.
C.
Use SAML Just-m-Time (JIT) Handler class run as current user to update role and permission sets.
D.
Use SAML Just-in-Time (JIT) handler class run as an admin user to update role and permission sets.
Your answer:
0 comments
Sorted by
Leave a comment first