RCA User and Workspace Management 3 — Questions and Answers
Question 1: Which authentication protocol does Relativity support to integrate with enterprise identity providers such as Okta or Azure AD?
- LDAP
- SAML 2.0 (Correct answer)
- Kerberos
- OAuth 1.0
Correct answer: SAML 2.0
Relativity supports SAML 2.0 for federated authentication, enabling single sign-on (SSO) with enterprise identity providers like Okta and Azure AD.
Question 2: What is the key difference between a Relativity System Admin and a Workspace Admin?
- System Admins can create workspaces; Workspace Admins can only modify existing ones
- System Admins manage server infrastructure; Workspace Admins manage document review
- System Admins have access to the Admin mode with all system settings; Workspace Admins manage settings within their assigned workspaces only (Correct answer)
- System Admins cannot be added to workspaces; Workspace Admins can
Correct answer: System Admins have access to the Admin mode with all system settings; Workspace Admins manage settings within their assigned workspaces only
System Admins access the full Admin mode (clients, matters, servers, users), while Workspace Admins only manage objects and users within their specific workspace(s).
Question 3: Which Relativity setting forces a user to change their password the next time they log in?
- Require Password Reset
- Force Password Change on Next Login (Correct answer)
- Password Must Change
- Reset Password Flag
Correct answer: Force Password Change on Next Login
The 'Force Password Change on Next Login' checkbox in a user's profile flags their account so they must set a new password upon their very next successful login.
Question 4: In Relativity, what is the purpose of a 'Client Domain'?
- It restricts users to only logging in from specific IP addresses
- It associates users with a client so they only see workspaces belonging to that client (Correct answer)
- It defines the email domain used for sending notifications to a client's users
- It sets the default currency and locale for all users under a client
Correct answer: It associates users with a client so they only see workspaces belonging to that client
Client Domains allow administrators to associate a user with a specific client, limiting their workspace visibility to only workspaces under that client.
Question 5: Which of the following actions can ONLY be performed by a Relativity System Admin?
- Creating a new saved search
- Adding a new user to a workspace group
- Creating a new Relativity workspace (Correct answer)
- Modifying a document layout
Correct answer: Creating a new Relativity workspace
Creating a new workspace requires System Admin access because it involves selecting clients, matters, resource pools, and server configurations at the system level.
Question 6: When configuring password complexity in Relativity, where are the global password policy settings managed?
- In each individual user's profile under Security Settings
- In the Instance Setting table under the Authentication section
- In the Authentication Provider record in the System Admin tab (Correct answer)
- In the workspace configuration for each matter
Correct answer: In the Authentication Provider record in the System Admin tab
Password policy settings such as minimum length, complexity requirements, and expiration are configured on the Authentication Provider record in the Relativity System Admin tab.
Question 7: A Relativity user who is a member of two groups with conflicting permissions on the same object will receive which permission level?
- The more restrictive permission wins
- The less restrictive (more permissive) permission wins (Correct answer)
- Permissions are averaged between the two groups
- The system prompts the admin to resolve the conflict manually
Correct answer: The less restrictive (more permissive) permission wins
Relativity uses a 'least restrictive' model — if a user belongs to multiple groups, they receive the union of all permissions, meaning the most permissive setting applies.
Which authentication protocol does Relativity support to integrate with enterprise identity providers such as Okta or Azure AD?