{"id":17915,"date":"2026-09-21T12:11:03","date_gmt":"2026-09-21T12:11:03","guid":{"rendered":"https:\/\/www.examlabs.com\/certification\/?p=17915"},"modified":"2026-09-21T12:11:03","modified_gmt":"2026-09-21T12:11:03","slug":"google-associate-google-workspace-administrator-practice-test-questions-and-exam-dumps-part5-q81-100","status":"publish","type":"post","link":"https:\/\/www.examlabs.com\/certification\/google-associate-google-workspace-administrator-practice-test-questions-and-exam-dumps-part5-q81-100\/","title":{"rendered":"Google Associate Google Workspace Administrator Practice Test Questions and Exam Dumps Part5 Q81-100"},"content":{"rendered":"<h2><b>View Full <\/b><a href=\"https:\/\/www.examlabs.com\/associate-google-workspace-administrator-exam-dumps\"><b>Google Associate Google Workspace Administrator Exam Dumps<\/b><\/a><b> and Practice Test Dumps<\/b><\/h2>\n<p>&nbsp;<\/p>\n<h3><b>Question 81.<\/b><\/h3>\n<p><b>Which Google Workspace feature lets administrators define rules for automatically assigning users to groups?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Group moderation<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Dynamic groups<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Gmail delegation<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Shared drives<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Dynamic groups use membership rules to automatically include users who match specified attributes. This can reduce the need for administrators to manually maintain membership when employees join, leave, or change departments. For example, an organization may create a group based on a user&#8217;s department or organizational information. When directory attributes change, group membership can be updated according to the defined rule. Dynamic groups are different from manually managed Google Groups because administrators do not have to add every qualifying user individually. Their usefulness depends on accurate directory information and the attributes available for group membership conditions.<\/span><\/p>\n<h3><b>Question 82.<\/b><\/h3>\n<p><b>Which Google Groups setting determines who is permitted to join a group?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Group storage quota<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Membership management<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Gmail routing<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Vault retention<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Google Groups provides membership settings that determine how users can become members of a group. Depending on the group&#8217;s configuration, users may be added directly by managers, request membership, or be subject to other membership controls. These settings are useful for controlling access to group conversations, collaborative resources, and group-based permissions. Administrators and group managers should configure membership rules according to the organization&#8217;s requirements. Membership controls are separate from email-routing or Vault settings because they determine who belongs to the group rather than how messages or retained information are handled.<\/span><\/p>\n<h3><b>Question 83.<\/b><\/h3>\n<p><b>What does a collaborative inbox allow members of a Google Group to do?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Manage and assign group conversations<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Configure domain DNS records<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Create Workspace administrator roles<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Manage Vault retention policies<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">A collaborative inbox provides features that help group members manage incoming conversations as shared work items. Depending on the configuration, members can organize conversations, assign responsibilities, and track the status of group requests. This can be useful for teams such as support, customer service, or internal help desks where several people work from the same group address. A collaborative inbox is different from a normal personal Gmail inbox because the conversations are handled as shared group work rather than belonging to one individual account. Administrators should configure group permissions so only appropriate members can manage these conversations.<\/span><\/p>\n<h3><b>Question 84.<\/b><\/h3>\n<p><b>Which Google Workspace setting can limit who may post messages to a Google Group?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Storage management<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Posting permissions<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Calendar resource settings<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Device enrollment<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Posting permissions control who can send messages to a Google Group. Depending on the group&#8217;s configuration, posting may be limited to group members, managers, users within the organization, or other permitted audiences. Restricting posting can help reduce unwanted messages and maintain the purpose of specialized groups. For example, an announcement group may be configured so that only designated users can post while members can still receive messages. Posting permissions are separate from membership permissions because a person may belong to a group without necessarily being allowed to publish messages to it.<\/span><\/p>\n<h3><b>Question 85.<\/b><\/h3>\n<p><b>Which Gmail control can help prevent users from receiving mail from specified senders or domains?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Blocklist settings<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Calendar sharing<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Vault export<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Drive labels<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Gmail blocklist controls can help administrators restrict messages from specified senders or domains according to organizational requirements. Blocklisting can be useful when an organization repeatedly receives unwanted or problematic messages from particular sources. Administrators should configure these controls carefully because blocking a broad domain can affect legitimate communication as well. Blocklists are different from allowlists, which are designed to identify trusted senders or domains for supported mail-processing scenarios. Gmail also provides spam and security controls that work alongside these administrative settings. The exact available configuration options depend on the organization&#8217;s Workspace edition and Gmail administration features.<\/span><\/p>\n<h3><b>Question 86.<\/b><\/h3>\n<p><b>What is the main purpose of an allowlist in Gmail administration?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">To identify approved senders or domains for supported mail handling<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">To delete every message marked as spam<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">To disable all external email<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">To create user aliases<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">An allowlist identifies senders, domains, or other approved sources that should receive special treatment under supported Gmail administrative controls. Organizations may use allowlisting when legitimate senders are incorrectly affected by filtering or when specific sources require trusted handling. An allowlist should not be interpreted as a guarantee that every message from the source is completely safe. Administrators should understand how the selected Gmail control evaluates allowlisted traffic and whether other security mechanisms still apply. Broad allowlisting can increase risk if it is used without careful review, so organizations should keep approved entries limited to legitimate and necessary sources.<\/span><\/p>\n<h3><b>Question 87.<\/b><\/h3>\n<p><b>Which Gmail feature can search message metadata and delivery information for troubleshooting?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Email Log Search<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Google Forms<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Google Sites<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Calendar search<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Email Log Search helps administrators investigate email delivery and message-related activity. It can provide useful information when troubleshooting situations such as delayed messages, routing behavior, delivery problems, or unexpected handling. Administrators can use available search criteria to locate relevant message activity and inspect associated details. Email Log Search is different from opening a user&#8217;s Gmail mailbox because it focuses on administrative message-flow information rather than simply viewing mailbox contents. The exact information and retention available through email logs depend on Google Workspace capabilities and the administrator&#8217;s permissions.<\/span><\/p>\n<h3><b>Question 88.<\/b><\/h3>\n<p><b>Which Gmail configuration can route outgoing messages through an organization&#8217;s SMTP relay?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Gmail routing<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Google Vault<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Drive sharing<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Calendar interoperability<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Gmail routing can support mail-flow configurations that send messages through an SMTP relay. Organizations may use an SMTP relay when outgoing mail needs to pass through an external or organizational mail server for additional processing, filtering, logging, or integration. The configuration can include conditions that determine which messages use the relay. Administrators should carefully evaluate the relay&#8217;s authentication, network requirements, and allowed senders. Incorrect configuration can affect outgoing mail delivery or create unexpected routing behavior. SMTP relay configuration is therefore an administrative mail-flow function rather than a standard Gmail user setting.<\/span><\/p>\n<h3><b>Question 89.<\/b><\/h3>\n<p><b>What is the purpose of an inbound gateway in Gmail?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">To manage Calendar invitations<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">To identify mail arriving through an external mail gateway<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">To create Drive shared drives<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">To configure Google Groups membership<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">An inbound gateway configuration is used when incoming mail reaches Google through another mail server or gateway before being delivered to Gmail. It can help Google Workspace understand the expected mail flow and apply appropriate handling based on the organization&#8217;s architecture. This is especially relevant when an organization uses an external filtering or security gateway in front of Google Workspace. Administrators need to configure gateway settings carefully so that legitimate mail is handled correctly and security controls continue to operate as intended. Inbound gateway configuration is therefore part of Gmail mail-flow administration.<\/span><\/p>\n<h3><b>Question 90.<\/b><\/h3>\n<p><b>Which DNS record type is commonly used to publish SPF information?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">MX<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">CNAME<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">TXT<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">SRV<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 3<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">SPF information is commonly published in a DNS TXT record. The TXT record contains the SPF policy that identifies authorized systems or services permitted to send mail for the domain. Receiving mail systems can use that information during email authentication checks. MX records identify mail servers responsible for receiving messages, while CNAME records provide DNS aliases and SRV records can identify services and ports. Administrators should ensure that SPF records are correctly formatted and include all legitimate systems that send email for the organization&#8217;s domain. An incomplete SPF policy can cause legitimate messages to fail authentication checks.<\/span><\/p>\n<h3><b>Question 91.<\/b><\/h3>\n<p><b>What is the role of DMARC reporting?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">To provide information about authentication activity involving a domain<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">To create Google Groups automatically<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">To increase Drive storage<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">To schedule Calendar resources<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">DMARC reporting can provide domain owners with information about email authentication activity involving their domain. Reports can help administrators understand which systems appear to be sending messages using the organization&#8217;s domain and whether those messages are passing or failing relevant authentication checks. This visibility can assist with identifying legitimate sending services as well as potential spoofing activity. DMARC reporting is not a mailbox-management or storage feature. Organizations should analyze reports carefully because they can contain information from many receiving systems and may require dedicated tools or processes for practical analysis.<\/span><\/p>\n<h3><b>Question 92.<\/b><\/h3>\n<p><b>Which setting can help enforce a minimum password length for users?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Gmail routing<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Password policy<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Drive classification<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Calendar sharing<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Password policy settings allow administrators to establish requirements for user passwords, including supported complexity and length controls. Requiring stronger passwords can reduce the risk associated with weak or easily guessed credentials. Organizations can combine password policies with additional controls such as two-step verification to strengthen account security. Password requirements should be communicated clearly to users so that they understand the organization&#8217;s authentication expectations. Administrators should also consider account recovery and authentication methods when changing password policies because stronger requirements do not eliminate the need for effective recovery procedures.<\/span><\/p>\n<h3><b>Question 93.<\/b><\/h3>\n<p><b>What is the purpose of backup codes for a Google Workspace user?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">To provide alternate verification codes when the usual second-step method is unavailable<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">To restore deleted Google Drive files<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">To recover deleted Calendar events<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">To configure an SMTP relay<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Backup codes are one-time codes that can provide an alternative way for a user to complete two-step verification when their normal second-step method is unavailable. They can be useful if a user loses access to a phone or another authentication method. Because backup codes can be used to authenticate an account, they should be stored securely and protected from unauthorized access. They are not intended for restoring files, recovering Calendar events, or configuring mail infrastructure. Administrators should ensure that users understand how backup codes work and follow organizational policies for secure account recovery.<\/span><\/p>\n<h3><b>Question 94.<\/b><\/h3>\n<p><b>Which authentication method uses a physical security device to help verify a user&#8217;s identity?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Gmail filter<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Security key<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Calendar resource<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Group alias<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">A security key is a physical authentication device that can provide strong verification during sign-in. Security keys are designed to resist many types of phishing because authentication involves interaction with a trusted physical device and supported cryptographic mechanisms. Organizations may use security keys as part of their broader two-step verification strategy. Administrators should consider enrollment, replacement, recovery, and account lifecycle procedures when deploying physical authentication devices. Security keys are different from ordinary passwords because possession and use of the registered device provide an additional authentication factor.<\/span><\/p>\n<h3><b>Question 95.<\/b><\/h3>\n<p><b>Which feature can help administrators review suspicious security events across Google Workspace?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Security Investigation tool<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Google Docs<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Google Calendar<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Google Sites<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The Security Investigation tool can help authorized administrators investigate security-related activity across supported Google Workspace services. Administrators can use available event information and filters to examine suspicious actions, identify affected users, and understand patterns that may require further investigation. Depending on permissions and edition, administrators may also be able to take supported actions directly from investigative workflows. The tool is more focused on security investigation than ordinary application interfaces. Effective investigations often combine several event types rather than relying on a single record, especially when determining whether unusual activity represents a genuine security issue.<\/span><\/p>\n<h3><b>Question 96.<\/b><\/h3>\n<p><b>What can an administrator use the Alert Center to monitor?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Selected security and administrative alerts<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">User-created document content<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Personal Gmail labels<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Calendar color preferences<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The Alert Center provides administrators with information about selected alerts related to security, account activity, and other administrative events supported by Google Workspace. Alerts can help administrators identify situations that may require investigation or action. Depending on the alert type and Workspace edition, administrators may be able to configure alert settings, assign alerts, or investigate associated activity. The Alert Center should not be confused with ordinary application notifications because it is designed for administrative monitoring. Administrators can use alerts alongside audit logs and investigation tools to gain a broader view of potential security or operational issues.<\/span><\/p>\n<h3><b>Question 97.<\/b><\/h3>\n<p><b>Which Google Workspace capability can help administrators identify applications using OAuth permissions?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">OAuth app access information<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Calendar working location<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Gmail signatures<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Drive file comments<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">OAuth app access information helps administrators understand which third-party applications have requested or received access to Google Workspace data through OAuth. Reviewing this information can help organizations identify applications that require administrative approval, restriction, or additional review. OAuth permissions can provide applications with access to specific services or data, so organizations should monitor them according to their security policies. Administrators can use app access controls to manage the treatment of third-party applications. This is particularly important when users install productivity tools, integrations, or other applications that connect to organizational Workspace accounts.<\/span><\/p>\n<h3><b>Question 98.<\/b><\/h3>\n<p><b>Which Google Workspace capability can help require reauthentication after a specified period?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Session control<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Group alias<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Gmail quarantine<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Drive label<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Session controls can help administrators manage how long authenticated sessions remain active before users are required to authenticate again. Reauthentication can reduce the period during which a stolen or unattended authenticated session might remain usable. Organizations may apply session policies according to security requirements, user roles, or supported services. Administrators should balance security requirements with user experience because excessively short session periods can create unnecessary interruptions. Session controls are different from password policies because they affect the duration of authenticated access rather than the characteristics of the user&#8217;s password.<\/span><\/p>\n<h3><b>Question 99.<\/b><\/h3>\n<p><b>What is the primary purpose of endpoint verification?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">To provide information about managed devices accessing organizational resources<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">To create new Gmail addresses<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">To manage Vault legal holds<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">To configure DNS records<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Endpoint verification provides administrators with information about devices that access organizational Google Workspace resources. Depending on the environment and supported configuration, administrators can use device information as part of security and access-management decisions. This can help organizations understand whether users are accessing services from managed or recognized devices. Endpoint verification can also work with other security controls to support more context-aware access decisions. It is different from Gmail or Vault because its focus is on endpoint and device context. Organizations should establish appropriate device-management and privacy practices when deploying endpoint-related controls.<\/span><\/p>\n<h3><b>Question 100.<\/b><\/h3>\n<p><b>Which Google Workspace control can restrict access based on the security state of a user&#8217;s device?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Context-Aware Access<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Gmail vacation responder<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Google Forms<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Calendar notifications<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Context-Aware Access can use supported contextual signals, including device-related information, when determining whether access should be allowed to protected Workspace services. Organizations can create access policies that require users to meet defined conditions before accessing specific applications or resources. Depending on the available configuration, conditions may consider device status, user identity, network information, or other supported signals. This approach allows organizations to move beyond simple password-based access decisions. Administrators should test policies carefully because an overly restrictive access rule can prevent legitimate users from accessing required business services.<\/span><\/p>\n","protected":false},"excerpt":{"rendered":"<p>View Full Google Associate Google Workspace Administrator Exam Dumps and Practice Test Dumps &nbsp; Question 81. Which Google Workspace feature lets administrators define rules for automatically assigning users to groups? Group moderation Dynamic groups Gmail delegation Shared drives Correct Answer: 2 Explanation: Dynamic groups use membership rules to automatically include users who match specified attributes. [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":[],"categories":[1648,1647],"tags":[],"_links":{"self":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts\/17915"}],"collection":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/comments?post=17915"}],"version-history":[{"count":1,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts\/17915\/revisions"}],"predecessor-version":[{"id":17916,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts\/17915\/revisions\/17916"}],"wp:attachment":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/media?parent=17915"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/categories?post=17915"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/tags?post=17915"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}