Woodgrove Bank has a Windows Server 2012 R2 environment and wants to implement just-in-time (JIT) administration so that admin privileges are granted only when needed and automatically revoked after a set period. Which capability supports this?
-
A
Fine-Grained Password Policies applied to admin accounts
-
B
Privileged Access Workstations (PAWs) with smart card logon
-
C
Privileged Identity Management (PIM) using Active Directory Bastion Forest
-
D
Account lockout policies with short unlock intervals