An organization using Chrome browser on Windows has policies from group policy and Chrome Enterprise Core.
In what order are the policies applied?
A Chrome administrator notices that a Chrome browser is checking In with the Google Admin console but has not received a new cloud computer policy setting that was recently deployed. During the investigation, the administrator deletes the Chrome browser from the Google Admin console
What action can be taken to have the browser re-enroll in the Google Admin console?
A company is reviewing the permissions of extensions that are popular among employees The security team wants to make sure all extensions in the environment have these capabilities disabled:
* Modify to internal home page: `internal.acme.com`
* Access to the storage
* Access to history
Which actions should be taken in the company default extension Permissions and URLs fields to meet the security team’s requirements?
Company A uses an extension that is critical to business operations The company currently pins the version of the extension They received an updated version of the extension that delivers new functionality The Chrome administrator notices that the new version now requests all available permissions, while the previous version only requested four permissions
Which action should the Chrome administrator recommend to address this security issue?
An IT administrator manages a large organization that uses Chrome browser across multiple platforms including Windows, macOS, and Linux The organization has diverse user needs and varying levels of risk associated with different departments, for which the administrator must determine the most efficient method to manage Chrome updates across the organization
Why is it advantageous to manage Chrome update policies using the Google Admin console instead of the Group Policy Management Console (GPMC)?
What report types are available in Google Chrome Enterprise Core on the Chrome Insights Report page'?
When a Chrome browser under cloud management goes to a potentially risky website, that action is logged in the Audit and Investigation Report as what type of event"?
An organization has a critical extension that is force-installed on managed Chrome browsers to meet specific security needs Additionally, the organization has specified that when extensions are unpublished from the Chrome Web Store, they are also disabled The extension has been taken over by a malicious actor and has been unpublished from the Chrome Web Store
What impact will this have to the force-installed extension?
An administrator decides to shorten the default time that a browser may be inactive before automatic deletion from the Google Admin console
What policy must be selected for the Device Token Management policy to allow devices to re-enroll in the Google Admin console?
Users in the organization report that browsers force a restart after a new update has been downloaded, which interrupts their work day
What could an engineer do to improve the experience while maintaining security?
A small business wants to have all of their macOS devices enroll in Chrome Enterprise Core. They do not have a Mobile Device Management solution but do maintain a base image for their Mac computers
Where should they put the enrollment token*?
The security team has a request to approve two extensions with similar functionality. They only want to approve one extension for use in the environment to avoid redundancy
What is an objective measurement that the security team can use to help determine which extension may be safer to use?
The browser administrators at a company have configured the following extension policies:
Policy Name | Policy Value
------- | --------
ExtensionInstallAllowlist | [ "lpbdmphcndhhacbfcgbdmnoffaeppiici", "gihagpmigkmndpbjkmlolikibogeofcm", "enebfpjnlbicamdncnfhlaapucdmgkj", "hhpkimhnadcdidjaejaegpeeikllochd", "bmplllbeanipnjdckniakhniegbcobannoj" ]
ExtensionInstallBlocklist | [ ]
ExtensionInstallForceList | [ "gihagpmigkmndpbjkmlolikibogeofcm;[https://clients2.google.com/service/update2/crx](https://clients2.google.com/service/update2/crx)", "ufninibicajhgibfhjcgnimlmdhccodfl;[https://clients2.google.com/service/update2/crx] (https://clients2.google.com/service/update2/crx)", "hhpkimhnadcdidjaejaegpeeikllochd;[https://clients2.google.com/service/update2/crx](https://clients2.google.com/service/update2/crx)" ]
An employee at the company wants to install an extension from the Chrome Web Store called "Grammar Friend" with the extension ID `ufninibicajhgibfhjcgnimlmdhccodfl`
What will happen when the user goes to the Grammar Friend page in the Chrome Web Store?
A company uses Chrome Enterprise Core to manage Chrome browsers for its employees and contractors who share devices They need a way to ensure the following:
* Full-Time Employees (FTEs) can only see and use extensions assigned to them
* Contractors can only see and use extensions assigned to them
* Both FTEs and contractors have access to a set of shared extensions
How can the Chrome administrator configure Chrome Enterprise Core to achieve this'?
An administrator is using Organizational Units (OU) to apply different Chrome browser settings to different types of devices The administrator needs to ensure that the browsers are placed in the correct OU
Which token must the administrator generate and apply?