网友您好, 请在下方输入框内输入要搜索的题目:

题目内容 (请给出正确答案)
单选题
Your company has Active Directory Certificate Services (AD CS) and Network Access Protection (NAP) deployed on the network.You need to ensure that NAP policies are enforced on portable computers that use a wireless connection to access the network.  What should you do?()
A

Configure all access points to use 802.1X authentication.

B

Configure all portable computers to use MS-CHAP v2 authentication.

C

Use the Group Policy Management Console to access the wireless Group Policy settings, and enable the Prevent connections to ad-hoc networks option.

D

Use the Group Policy Management Console to access the wireless Group Policy settings, and disable the Prevent connections to infrastructure networks option.


参考答案

参考解析
解析: 暂无解析
更多 “单选题Your company has Active Directory Certificate Services (AD CS) and Network Access Protection (NAP) deployed on the network.You need to ensure that NAP policies are enforced on portable computers that use a wireless connection to access the network.  What should you do?()A Configure all access points to use 802.1X authentication.B Configure all portable computers to use MS-CHAP v2 authentication.C Use the Group Policy Management Console to access the wireless Group Policy settings, and enable the Prevent connections to ad-hoc networks option.D Use the Group Policy Management Console to access the wireless Group Policy settings, and disable the Prevent connections to infrastructure networks option.” 相关考题
考题 Your company has an Active Directory forest that runs at the functional level of Windows Server  2008.     You implement Active Directory Rights Management Services (AD RMS). You install Microsoft  SQL Server 2005.   When you attempt to open the AD RMS administration Web site, you receive the following error  message: "SQL Server does not exist or access denied." You need to open the AD RMS  administration Web site.     Which two actions should you perform()A、Restart IIS.B、Install Message Queuing.C、Start the MSSQLSVC service.D、Manually delete the Service Connection Point in Active Directory Domain Services (AD DS) and restart AD RMS.

考题 Your company has a branch office that is configured as a separate Active Directory site and has  an Active Directory domain controller.     The Active Directory site requires a local Global Catalog server to support a new application.     You need to configure the domain controller as a Global Catalog server.     Which tool should you use()A、The Dcpromo.exe utilityB、The Server Manager consoleC、The Computer Management consoleD、The Active Directory Sites and Services consoleE、The Active Directory Domains and Trusts console

考题 You are designing a plan to migrate an existing application to Windows Azure.  The application must use the existing Active Directory Domain Services (AD DS) domain. You need to recommend an approach for joining Windows Azure virtual machines to the domain.  What should you recommend?()A、 Install the Active Directory Certificate Services (AD CS) root certificate into the Enterprise Trustcertificate store on each virtual machine.B、 Configure Windows Azure Connect.C、 Configure Windows Azure AppFabric Access Control.D、 Install Active Directory Federation Services (AD FS) in the existing domain.

考题 Your network consists of a single Active Directory domain. All domain controllers run Windows Server2008 R2. Your company and an external partner plan to collaborate on a project. The external partner has an Active Directory domain that contains Windows Server 2008 R2 domain controllers. You need to design a collaboration solution that meets the following requirements:   èAllows users to prevent sensitive documents from being forwarded to untrusted recipients or from being  printed.   èAllows users in the external partner organization to access the protected content to which they have been granted rights.   èSends all inter-organizational traffic over port 443.   èMinimizes the administrative effort required to manage the external users. What should you include in your design?()A、Establish a federated trust between your company and the external partner. Deploy a Windows Server 2008 R2 server that has Microsoft SharePoint Foundation 2010 installed.B、Establish a federated trust between your company and the external partner. Deploy a Windows Server 2008 R2 server that runs Microsoft SharePoint 2010 and that has the Active Directory Rights  Management Services (AD?RMS) role installed.C、Establish an external forest trust between your company and the external partner. Deploy a Windows Server 2008 R2 server that has the Active Directory Certificate Services server role installed. Implement Encrypting File System (EFS).D、Establish an external forest trust between your company and the external partner. Deploy a Windows Server 2008 R2 server that has the Active Directory Rights Management Service (AD?RMS)role installed  and Microsoft SharePoint Foundation 2010 installed.

考题 Your company has an Active Directory forest that contains a single domain. The domain member   server has an Active Directory Federation Services (AD FS) server role installed.   You need to configure AD FS to ensure that AD FS tokens contain information from the Active Directory  domain.   What should you do()A、Add and configure a new account store.B、Add and configure a new account partner.C、Add and configure a new resource partner.D、Add and configure a Claims-aware application.

考题 Your company has an Active Directory forest. You plan to install an Enterprise certification authority (CA) on a dedicated stand-alone server. When you attempt to add the Active Directory Certificate Services (AD CS) role, you find that the Enterprise CA option is not available. You need to install the AD CS role as an Enterprise CA. What should you do first()A、Add the DNS Server role.B、Join the server to the domain.C、Add the Web server (IIS) role and the AD CS role.D、Add the Active Directory Lightweight Directory Service (AD LDS) role.

考题 Your company has an Active Directory domain. You plan to install the Active Directory Certificate Services (AD CS) server role on a member  server that runs Windows Server 2008 R2.     You need to ensure that members of the Account Operators group are able to issue smartcard  credentials. They should not be able to revoke certificates.     Which three actions should you perform()A、Install the AD CS server role and configure it as an Enterprise Root CA .B、Install the AD CS server role and configure it as a Standalone CA .C、Restrict enrollment agents for the Smartcard logon certificate to the Account Operator group.D、Restrict certificate managers for the Smartcard logon certificate to the Account Operator group.E、Create a Smartcard logon certificate.F、Create an Enrollment Agent certificate.

考题 Your company has an Active Directory forest. You plan to install an Enterprise certification  authority (CA) on a dedicated stand-alone server. When you attempt to add the Active Directory Certificate Services (AD CS) server role, you find  that the Enterprise CA option is not available. You need to install the AD CS server role as an Enterprise CA.     What should you do first()A、Add the DNS Server server role.B、Join the server to the domain.C、Add the Web Server (IIS) server role and the AD CS server role.D、Add the Active Directory Lightweight Directory Services (AD LDS) server role.

考题 Your company has a server that runs an instance of Active Directory Lightweight Directory Services   (AD LDS).    You need to create new organizational units in the AD LDS application directory partition.  What should you do()A、Use the Active Directory Users and Computers snap-in to create the organizational units on the AD  LDS application directory partition.B、Use the ADSI Edit snap-in to create the organizational units on the AD LDS application directory  partition.C、Use the dsadd OU  command to create the organizational units.D、Use the dsmod OU  command to create the organizational units.

考题 Your company has an Active Directory forest. You plan to install an Enterprise certification authority  (CA) on a dedicated stand-alone server.    When you attempt to add the Active Directory Certificate Services (AD CS) server role, you find that the  Enterprise CA option is not available.    You need to install the AD CS server role as an Enterprise CA.    What should you do first()A、Add the DNS Server server role.B、Join the server to the domain.C、Add the Web Server (IIS) server role and the AD CS server roleD、Add the Active Directory Lightweight Directory Services (AD LDS) server role. .

考题 You are designing a plan to migrate an existing application to Windows Azure.  The application must use the existing Active Directory Domain Services (AD DS) domain. You need to recommend an approach for joining Windows Azure virtual machines to the domain.  What should you recommend?()A、 Install the Active Directory Certificate Services (AD CS) root certificate into the Enterprise Trust certificate store on each virtual machine.B、 Configure Windows Azure Connect.C、 Configure Windows Azure AppFabric Access Control.D、 Install Active Directory Federation Services (AD FS) in the existing domain.

考题 Your company has an Active Directory Rights Management Services (AD RMS) server. Users have   Windows Vista computers. An Active Directory domain is configured at the Windows Server 2003  functional level.   You need to configure AD?RMS so that users are able to protect their documents.  What should you do()A、Install the AD?RMS client 2.0 on each client computer.B、Add the RMS service account to the local administrators group on the AD RMS server.C、Establish an e-mail account in Active Directory Domain Services (AD DS) for each RMS user.D、Upgrade the Active Directory domain to the functional level of Windows Server 2008.

考题 Your company has a server that runs an instance of Active Directory Lightweight Directory  Services (AD LDS).     You need to create new organizational units in the AD LDS application directory partition.     What should you do()A、Use the Active Directory Users and Computers snap-in to create the organizational units on the AD LDS applicationB、Use the ADSI Edit snap-in to create the organizational units on the AD LDS application directory partition.C、Use the dsadd OU  command to create the organizational units.D、Use the dsmod OU  command to create the organizational units.

考题 Your company has a server that runs Windows Server 2008 R2. Active Directory Certificate Services  (AD CS) is configured as a standalone Certification Authority (CA) on the server. You need to audit changes to the CA configuration settings and the CA security settings. Which two tasks should you perform()A、Configure auditing in the Certification Authority snap-in.B、 Enable  auditing  of  successful  and  failed  attempts  to  change  permissions  on  files  in  the %SYSTEM32%/CertSrv directory.C、Enable auditing of successful and failed attempts to write to files in the %SYSTEM32%/CertLog directory.D、Enable the Audit object access setting in the Local Security Policy for the Active Directory Certificate  Services (AD CS) server.

考题 多选题Your company has a server that runs Windows Server 2008 R2. Active Directory Certificate Services  (AD CS) is configured as a standalone Certification Authority (CA) on the server. You need to audit changes to the CA configuration settings and the CA security settings. Which two tasks should you perform()AConfigure auditing in the Certification Authority snap-in.BEnable  auditing  of  successful  and  failed  attempts  to  change  permissions  on  files  in  the %SYSTEM32%/CertSrv directory.CEnable auditing of successful and failed attempts to write to files in the %SYSTEM32%/CertLog directory.DEnable the Audit object access setting in the Local Security Policy for the Active Directory Certificate  Services (AD CS) server.

考题 单选题Your company has a server that runs an instance of Active Directory Lightweight Directory  Services (AD LDS).     You need to create new organizational units in the AD LDS application directory partition.     What should you do()A Use the Active Directory Users and Computers snap-in to create the organizational units on the AD LDS applicationB Use the ADSI Edit snap-in to create the organizational units on the AD LDS application directory partition.C Use the dsadd OU  command to create the organizational units.D Use the dsmod OU  command to create the organizational units.

考题 多选题Your company has a server that runs Windows Server 2008 R2. Active Directory Certificate  Services (AD CS) is configured as a standalone Certification Authority (CA) on the server. You  need to audit changes to the CA configuration settings and the CA security settings.     Which two tasks should you perform()AConfigure auditing in the Certification Authority snap-in.BEnable auditing of successful and failed attempts to change permissions on files in the %SYSTEM32%/CertSrv direCEnable auditing of successful and failed attempts to write to files in the %SYSTEM32%/CertLog directory.DEnable the Audit object access setting in the Local Security Policy for the Active Directory Certificate Services

考题 单选题Your company has an Active Directory forest. You plan to install an Enterprise certification authority  (CA) on a dedicated stand-alone server.    When you attempt to add the Active Directory Certificate Services (AD CS) server role, you find that the  Enterprise CA option is not available.    You need to install the AD CS server role as an Enterprise CA.    What should you do first()A Add the DNS Server server role.B Join the server to the domain.C Add the Web Server (IIS) server role and the AD CS server roleD Add the Active Directory Lightweight Directory Services (AD LDS) server role. .

考题 单选题Your company has an Active Directory forest. You plan to install an Enterprise certification authority (CA) on a dedicated stand-alone server. When you attempt to add the Active Directory Certificate Services (AD CS) role, you find that the Enterprise CA option is not available. You need to install the AD CS role as an Enterprise CA. What should you do first()A Add the DNS Server role.B Join the server to the domain.C Add the Web server (IIS) role and the AD CS role.D Add the Active Directory Lightweight Directory Service (AD LDS) role.

考题 单选题Your company has a branch office that is configured as a separate Active Directory site and has an  Active Directory domain controller.   The Active Directory site requires a local Global Catalog server to support a new application.  You need to configure the domain controller as a Global Catalog server.  Which tool should you use()A The Dcpromo.exe utilityB The Server Manager consoleC The Computer Management consoleD The Active Directory Sites and Services consoleE The Active Directory Domains and Trusts console

考题 多选题Your company has an Active Directory domain. You plan to install the Active Directory Certificate Services (AD CS) server role on a member  server that runs Windows Server 2008 R2.     You need to ensure that members of the Account Operators group are able to issue smartcard  credentials. They should not be able to revoke certificates.     Which three actions should you perform()AInstall the AD CS server role and configure it as an Enterprise Root CA .BInstall the AD CS server role and configure it as a Standalone CA .CRestrict enrollment agents for the Smartcard logon certificate to the Account Operator group.DRestrict certificate managers for the Smartcard logon certificate to the Account Operator group.ECreate a Smartcard logon certificate.FCreate an Enrollment Agent certificate.

考题 单选题Your company has an Active Directory forest that contains a single domain. The domain member   server has an Active Directory Federation Services (AD FS) server role installed.   You need to configure AD FS to ensure that AD FS tokens contain information from the Active Directory  domain.   What should you do()A Add and configure a new account store.B Add and configure a new account partner.C Add and configure a new resource partner.D Add and configure a Claims-aware application.

考题 单选题Your company has a server that runs an instance of Active Directory Lightweight Directory Services   (AD LDS).    You need to create new organizational units in the AD LDS application directory partition.  What should you do()A Use the Active Directory Users and Computers snap-in to create the organizational units on the AD  LDS application directory partition.B Use the ADSI Edit snap-in to create the organizational units on the AD LDS application directory  partition.C Use the dsadd OU  command to create the organizational units.D Use the dsmod OU  command to create the organizational units.

考题 多选题Your company has an Active Directory forest that runs at the functional level of Windows Server 2008.    You implement Active Directory Rights Management Services (AD RMS). You install Microsoft SQL  Server 2005.   When you attempt to open the AD RMS administration Web site, you receive the following error message:   "SQL Server does not exist or access denied."   You need to open the AD RMS administration Web site.   Which two actions should you perform()ARestart IIS.BInstall Message Queuing.CStart the MSSQLSVC service.DManually delete the Service Connection Point in Active Directory Domain Services (AD DS) and restart  AD RMS.

考题 单选题You are designing a plan to migrate an existing application to Windows Azure.  The application must use the existing Active Directory Domain Services (AD DS) domain. You need to recommend an approach for joining Windows Azure virtual machines to the domain.  What should you recommend?()A  Install the Active Directory Certificate Services (AD CS) root certificate into the Enterprise Trust certificate store on each virtual machine.B  Configure Windows Azure Connect.C  Configure Windows Azure AppFabric Access Control.D  Install Active Directory Federation Services (AD FS) in the existing domain.

考题 单选题Your company has an Active Directory Rights Management Services (AD RMS) server. Users have   Windows Vista computers. An Active Directory domain is configured at the Windows Server 2003  functional level.   You need to configure AD?RMS so that users are able to protect their documents.  What should you do()A Install the AD?RMS client 2.0 on each client computer.B Add the RMS service account to the local administrators group on the AD RMS server.C Establish an e-mail account in Active Directory Domain Services (AD DS) for each RMS user.D Upgrade the Active Directory domain to the functional level of Windows Server 2008.

考题 单选题Your company has an Active Directory forest. You plan to install an Enterprise certification  authority (CA) on a dedicated stand-alone server. When you attempt to add the Active Directory Certificate Services (AD CS) server role, you find  that the Enterprise CA option is not available. You need to install the AD CS server role as an Enterprise CA.     What should you do first()A Add the DNS Server server role.B Join the server to the domain.C Add the Web Server (IIS) server role and the AD CS server role.D Add the Active Directory Lightweight Directory Services (AD LDS) server role.

考题 单选题Your network consists of a single Active Directory domain. All domain controllers run Windows Server2008 R2. Your company and an external partner plan to collaborate on a project. The external partner has an Active Directory domain that contains Windows Server 2008 R2 domain controllers. You need to design a collaboration solution that meets the following requirements:   èAllows users to prevent sensitive documents from being forwarded to untrusted recipients or from being  printed.   èAllows users in the external partner organization to access the protected content to which they have been granted rights.   èSends all inter-organizational traffic over port 443.   èMinimizes the administrative effort required to manage the external users. What should you include in your design?()A Establish a federated trust between your company and the external partner. Deploy a Windows Server 2008 R2 server that has Microsoft SharePoint Foundation 2010 installed.B Establish a federated trust between your company and the external partner. Deploy a Windows Server 2008 R2 server that runs Microsoft SharePoint 2010 and that has the Active Directory Rights  Management Services (AD?RMS) role installed.C Establish an external forest trust between your company and the external partner. Deploy a Windows Server 2008 R2 server that has the Active Directory Certificate Services server role installed. Implement Encrypting File System (EFS).D Establish an external forest trust between your company and the external partner. Deploy a Windows Server 2008 R2 server that has the Active Directory Rights Management Service (AD?RMS)role installed  and Microsoft SharePoint Foundation 2010 installed.