QuestionQ6

Manage extensions and apps

A company is auditing the permissions of extensions that are popular with employees. The security team wants to ensure that every extension in the environment has the following capabilities disabled:

  • Modify the internal home page, internal.acme.com
  • Access storage
  • Access history

Which actions should be taken in the company default extension Permissions and URLs fields to satisfy the security team’s requirements?

  • A Add *.acme.com to runtime blocked hosts; Disable storage permission; Disable history permission
  • B Add *.acme.com to runtime blocked hosts; Enable storage permission; Enable history permission
  • C Add internal.acme.com to runtime blocked hosts; Disable storage permission; Disable history permission
  • D Add internal.acme.com to runtime blocked hosts; Enable storage permission; Enable history permission
Explanation

Chrome Enterprise extension settings support runtime_blocked_hosts to prevent extensions from accessing a specified host at runtime and blocked_permissions to disallow requested extension permissions. Blocking internal.acme.com protects that specific internal home page, while disabling the storage and history permissions removes both requested capabilities.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!