Your network contains an Active Directory forest named contoso.com. A partner company has a
forest named fabrikam.com. Each forest contains one domain. You need to provide access for a
group named Research in fabrikam.com to resources in contoso.com. The solution must use the
principle of least privilege. What should you do?
A.
Create an external trust from fabrikam.com to contoso.com. Enable Active Directory split permissions in
fabrikam.com.
B.
Create an external trust from contoso.com to fabrikam.com. Enable Active Directory split permissions in
contoso.com.
C.
Create a one-way forest trust from contoso.com to fabrikam.com that uses selective authentication.
D.
Create a one-way forest trust from fabrikam.com to contoso.com that uses selective authentication.
Answer is D