問題文
A compliance report must state which named person accessed a regulated application. Sessions from the office are translated to a small pool of shared public addresses. What makes the report possible?
選択肢
- The report is built from the device attributes of the endpoint, which are unique enough to serve as a person identifier once each laptop has been issued to a named member of staff.
- The application's own access log is the only possible source, because the network layer cannot attribute a session to a person once the addresses have been replaced by a shared pool at the perimeter.
- The translated public addresses are assigned one per person, so the address itself identifies the user in the report and the record can be built from the translation table alone.
- The user-to-address mapping is resolved at the time the session is created, so the log entry carries the user name even though the address is later shared by many people.