Limited-Time Offer: Enjoy 50% Savings! Ends in 00h 00m 00s Coupon code: 50OFF
Skip to content

Free Google Professional ChromeOS Administrator ChromeOS-Administrator Exam Questions

Page: 1 / 12 Total 117 questions

Want more questions? Get Premium Access.

Question 1

As a ChromeOS Administrator, you are tasked with blocking incognito mode in the ChromeOS Browser. How would you prevent users from using incognito mode?

Correct Answer: A. Navigate to 'Users & Browser Security Settings' and set the 'Disallow incognito mode' policy.
Explanation:

To block incognito mode in ChromeOS, administrators need to configure the policy under 'Users & Browser Security Settings'. The specific policy to disable incognito mode ensures that users can only browse in regular mode, allowing for better tracking and compliance.

Verified Answer from Official Source:

The correct answer is verified from the Google Admin Console Policies Guide, which details managing incognito mode via User & Browser settings.

'To disable incognito mode, go to Admin console > Devices > Chrome > Settings > Users & browsers > Security settings, and select 'Disallow incognito mode'.'

Disabling incognito mode is essential for compliance and security, especially in educational and enterprise environments where browsing history must be retained.

Objectives:

Manage browser settings for security compliance.

Disable incognito mode on ChromeOS devices.


Google Admin Console Policies Guide

Question 2

An organization was recently hacked through an admin's choice of an operating system. Leadership decides to move to Chromebooks for their security.

While the organization waits for Chromebooks to be delivered, what will allow them to continue using their existing devices securely?

Correct Answer: D. ChromeOS Flex
Explanation:

ChromeOS Flex allows the organization to repurpose existing devices by installing a lightweight version of ChromeOS on them. This provides a secure and familiar environment while they await the delivery of new Chromebooks. Here's why it's the best choice:

Security: ChromeOS Flex inherits the security features of ChromeOS, such as sandboxing, verified boot, and automatic updates, mitigating the risks associated with the previous operating system.

Quick Deployment: ChromeOS Flex can be easily installed on existing hardware using a USB drive, minimizing downtime and allowing employees to continue working.

Familiar Interface: The user interface of ChromeOS Flex is similar to ChromeOS, ensuring a smooth transition for employees.

Option A is incorrect because the ChromeOS Readiness Guide is a resource for planning migration, not an immediate security solution.

Option B is incorrect because while ChromeOS Managed Browser enhances security within a browser, it doesn't address vulnerabilities in the underlying operating system.

Option C is incorrect because ChromeOS Bytes is a blog, not a software solution.


ChromeOS Flex: https://chromeenterprise.google/os/chromeosflex/

Question 3

All of your kiosk devices must update only during certain hours. Which setting is required?

Correct Answer: B. Blackout windows
Explanation:

To restrict updates to specific time frames, configure Blackout windows in the Admin console. Blackout windows allow administrators to specify periods during which ChromeOS devices are not allowed to update. This feature is particularly useful for kiosk devices, where unexpected updates could disrupt operations.

Verified Answer from Official Source:

The correct answer is verified from the Google ChromeOS Update Management Guide, which specifies that blackout windows help control update timing.

'Configure blackout windows to prevent ChromeOS devices from updating during specified hours, ensuring that kiosks remain functional during business operations.'

Blackout windows are essential for environments where uptime is critical, such as retail kiosks or customer service points, as they prevent disruptions caused by automatic updates.

Objectives:

Control update schedules for ChromeOS devices.

Maintain device availability during operational hours.


Google ChromeOS Update Management Guide

Question 4

In regular user mode, how does an admin open the crosh shell on a ChromeOS device to run a ping command?

Correct Answer: B. Ctrl + Alt + t
Explanation:

In regular user mode on a ChromeOS device, pressing Ctrl + Alt + t opens the crosh shell (Chrome OS developer shell), a command-line interface. From there, you can execute various commands, including ping to test network connectivity.

Other options are incorrect because they either have no assigned function or trigger different actions in ChromeOS.


Question 5

Which setting is required to restrict Chrome Remote Desktop use to only accounts on your domain?

Correct Answer: C. Remote access clients
Explanation:

Within the 'Chrome Remote Desktop' settings in the Google Admin console, the option 'Remote access clients' allows you to restrict access to Chrome Remote Desktop based on the domain of the user accounts. By configuring this setting, you can ensure that only users with accounts on your specific domain can access Chrome Remote Desktop on the managed devices.

Why other options are incorrect:

A . Firewall traversal: This setting controls whether Chrome Remote Desktop can bypass firewalls to establish connections, but it does not restrict access based on domain.

B . URL Blocking: This setting controls which websites users can access but does not specifically apply to Chrome Remote Desktop access based on domain.

D . Chrome Remote Desktop review: This setting allows administrators to review Chrome Remote Desktop sessions but does not restrict access based on domain.


Question 6

Which management feature makes ChromeOS devices a popular choice for IT administrators in educational organizations and enterprises?

Which management feature makes ChromeOS devices enterprises?

Correct Answer: C. Centralized management through Admin console
Explanation:

The ChromeOS Admin console provides centralized management, making it a popular choice for IT administrators. It allows them to manage policies, apps, extensions, and device settings from a single interface, streamlining administration and ensuring consistency across devices.

Option A is incorrect because ChromeOS management is primarily cloud-based, not on-premises.

Option B is incorrect because while BIOS control might be available, it's not the primary management feature.

Option D is incorrect because ChromeOS devices can be remotely controlled and monitored through the Admin console.


About ChromeOS device management: https://support.google.com/chrome/a/answer/1289314?hl=en

Question 7

An admin is setting up third-party SSO for their organization as the super admin. When they test with their account, they do not see the SSO screen.

What is causing this behavior?

Correct Answer: D. Super admin bypassed the thud-patty
Explanation:

Super administrators in Google Workspace have special privileges that allow them to bypass certain security features, including third-party SSO. This is to ensure that they can always access the Admin console for troubleshooting or critical changes, even if the SSO system is malfunctioning. Therefore, when a super admin tests third-party SSO, they won't be prompted with the SSO login screen, but will directly access the console using their Google credentials.


Question 8

Which feature of the Google Admin console allows you to restrict devices from remembering user passwords?

Correct Answer: A. Password Manager
Explanation:

The Password Manager feature in the Google Admin console allows administrators to manage whether users can save and auto-fill passwords on ChromeOS devices. Disabling Password Manager prevents Chrome from remembering passwords, thus enhancing security by requiring users to enter credentials manually.

Verified Answer from Official Source:

The correct answer is verified from the Google Admin Console Password Policy Guide, which outlines how to manage password saving and auto-fill settings.

'Admins can disable the Chrome Password Manager through the Admin console to ensure that user passwords are not saved locally on the device.'

This setting is crucial in high-security environments where saving passwords locally might pose a risk. Disabling Password Manager helps maintain stricter security protocols.

Objectives:

Enforce secure password management on ChromeOS devices.

Disable auto-fill and password saving.


Google Admin Console Password Policy Guide

Question 9

Your customer is deploying ChromeOS devices in their environment and requires those ChromeOS devices to adhere to web filtering via TLS (or SSL) inspection. What recommendations should you make to your customer in setting up the requirements for ChromeOS devices?

Correct Answer: A. Configure a hostname allowlist, set up a TLS (or SSL) certificate, then verify TLS (or SSL) inspection is working
Explanation:

To enable web filtering with TLS (or SSL) inspection on ChromeOS devices, configure a hostname allowlist and set up a TLS (or SSL) certificate. Verifying that TLS inspection is working ensures that HTTPS traffic can be inspected without causing certificate errors.

Verified Answer from Official Source:

The correct answer is verified from the Google ChromeOS Security Configuration Guide, which advises configuring hostnames and certificates to enable secure web filtering.

'To perform SSL inspection on ChromeOS devices, configure a hostname allowlist and install the necessary SSL certificates. Verify that the inspection is functioning correctly.'

Without proper configuration, SSL inspection can lead to certificate errors or blocked traffic. Setting up the allowlist and certificates correctly is crucial for maintaining secure and compliant web access.

Objectives:

Implement secure web filtering on ChromeOS.

Configure TLS inspection to prevent certificate issues.


Google ChromeOS Security Configuration Guide

Question 10

Your organization has automatic ChromeOS updates implemented. Your CTO would like to review the documentation on what changes each new version has. How would you assist your CTO in accomplishing this goal?

Correct Answer: D. Direct your CTO to the 'Chrome Release Notes Support' page
Explanation:

The 'Chrome Release Notes Support' page is the official resource for detailed information about new features, security updates, and bug fixes in each ChromeOS version. It's specifically designed to keep administrators and users informed about changes.

Why other options are incorrect:

A (Support ticket): While Google support can help, it's not the most efficient way to access release notes.

B (YouTube): Unofficial sources may not be accurate or complete.

C (chrome://updates): This only shows the update status of the browser, not detailed release notes.

To assist your CTO in reviewing the documentation on changes each new version of ChromeOS has, you should direct them to the official Chrome Release Notes page. Here's how you can guide them:

Open a web browser and navigate to the official Chrome Releases blog.

On this page, you can find detailed release notes for each new version of ChromeOS. These notes include information on new features, security updates, bug fixes, and more.

The release notes are categorized by channel (Stable, Beta, Dev) and provide a comprehensive overview of what has changed in each update.

For example, the Stable Channel Update for ChromeOS / ChromeOS Flex provides details on the latest stable version updates1.


The Chrome Releases blog is the official source for release notes and update information for ChromeOS1. It is regularly updated by Google and is the best place to find detailed documentation on the changes included in each new version of ChromeOS.