List of questions
Related questions
Question 226 - Certified Identity and Access Management Architect discussion
Northern Trail Outfitters manages application functional permissions centrally as Active Directory groups. The CRM_Superllser and CRM_Reportmg_SuperUser groups should respectively give the user the SuperUser and Reportmg_SuperUser permission set in Salesforce. Salesforce is the service provider to a Security Assertion Markup Language (SAML) identity provider.
Mow should an identity architect ensure the Active Directory groups are reflected correctly when a user accesses Salesforce?
A.
Use the Apex Just-in-Time handler to query standard SAML attributes and set permission sets.
B.
Use the Apex Just-in-Time handler to query custom SAML attributes and set permission sets.
C.
Use a login flow to query custom SAML attributes and set permission sets.
D.
Use a login flow to query standard SAML attributes and set permission sets.
Your answer:
0 comments
Sorted by
Leave a comment first