QuestionQ14

Trust and Security with Google Cloud

Your organization relies on Active Directory to authenticate users. Users' access to their Google accounts must be removed when their Active Directory accounts are terminated.

How should the organization fulfill this requirement?

Explanation

Single sign-on (SSO) federates Google-domain authentication with an external identity provider such as Active Directory. Active Directory can therefore remain the authoritative source for authentication and account lifecycle; when its user account is terminated, it can no longer authenticate through SSO to access Google services.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!