Managing browsers and endpoints1 / 5
You need to manage Chrome OS devices enrolled in your organization. A policy must be configured to prevent users from installing extensions outside of an approved list. Where do you configure this?
CorrectIncorrect
Alex
Chrome OS device management in Google Workspace is handled through the Admin Console under Devices > Chrome > Apps & extensions. Administrators can configure extension policies at the organizational unit level, including allowlists (only approved extensions can be installed), blocklists (specific extensions blocked), and force-installed extensions (automatically deployed without user action). When an allowlist policy is set, users can only install extensions that appear on the approved list — all others are blocked by default. This is different from a blocklist approach, where everything is allowed except explicitly blocked items. User-level Chrome settings cannot override admin-enforced policies, and IAM roles are for Google Cloud resource permissions, not Chrome device management. Exam tip: Chrome policies are always managed under Devices > Chrome in the Admin Console, not under security or user settings.
Sourcecloud.google.com
Follow-up answers are available in the app. Create a free account — no credit card required.
Question 1 of 5
Create a free account