网友您好, 请在下方输入框内输入要搜索的题目:

题目内容 (请给出正确答案)

Your network consists of a single Active Directory forest that contains a root domain and two child domains. All servers run Windows Server 2008 R2.  A corporate policy has the following requirements:   èAll local guest accounts must be renamed and disabled. èAll local administrator accounts must be renamed.   You need to recommend a solution that meets the requirements of the corporate policy. What should you recommend?()

  • A、Implement a Group Policy object(GPO) for each domain.
  • B、Implement a Group Policy object(GPO) for the root domain.
  • C、Deploy Network Policy and Access Services(NPAS)on all domain controllers in each domain. 
  • D、Deploy Active Directory Rights Management Services(AD RMS)on the root domain controllers.

参考答案

更多 “ Your network consists of a single Active Directory forest that contains a root domain and two child domains. All servers run Windows Server 2008 R2.  A corporate policy has the following requirements:   èAll local guest accounts must be renamed and disabled. èAll local administrator accounts must be renamed.   You need to recommend a solution that meets the requirements of the corporate policy. What should you recommend?()A、Implement a Group Policy object(GPO) for each domain.B、Implement a Group Policy object(GPO) for the root domain.C、Deploy Network Policy and Access Services(NPAS)on all domain controllers in each domain. D、Deploy Active Directory Rights Management Services(AD RMS)on the root domain controllers.” 相关考题
考题 Your network consists of a single Active Directory domain. The functional level of the domain is Windows Server 2008 R2. All servers run Windows Server 2008 R2.   A corporate security policy requires complex passwords for user accounts that have administrator  privileges. You need to design a strategy that meets the following requirements: èEnsures that administrators use complex passwords   èMinimizes the number of servers required to support the solution What should you include in your design?()A、Implement Network Access Protection (NAP).B、Implement Active Directory Rights Management Services (AD RMS).C、Create a new Password Settings Object (PSO) for administrator accounts.D、Create a new child domain in the forest. Move all non-administrator accounts to the new domain.Configure a complex password policy in the root domain.

考题 Your network consists of an Active Directory forest that contains two domains. All servers run  Windows Server 2008 R2. All domain controllers are configured as DNS servers.     You have a standard primary zone for dev.contoso.com that is stored on a member server.     You need to ensure that all domain controllers can resolve names from the dev.contoso.com  zone.     What should you do()A、On the member server, create a stub zone.B、On the member server, create a NS record for each domain controller.C、On one domain controller, create a conditional forwarder. Configure the conditional forwarder to replicate to all DNSD、On one domain controller, create conditionals forwarder. Configure the conditional forwarder to replicate to all DNS

考题 Contoso Ltd. has a single Active Directory forest that has five domains. Each domain has two DNS servers.Each DNS server hosts Active Directory-integrated zones for all five domains. All domain controllers run Windows Server 2008 R2.Contoso acquires a company named Tailspin Toys. Tailspin Toys has a single Active Directory forest that contains a single domain.You need to configure the DNS system in the Contoso forest to provide name resolution for resources in both forests.What should you do?()A、Configure client computers in the Contoso forest to use the Tailspin Toys DNS server as the alternate DNS server.B、Create a new conditional forwarder and store it in Active Directory. Replicate the new conditional forwarder to all DNS servers in the Contoso forest.C、Create a new application directory partition in the Contoso forest. Enlist the directory partition for all DNS servers.D、Create a new host (A) record in the GlobalNames folder on one of the DNS servers in the Contoso forest. Configure the host (A) record by using the Tailspin Toys domain name and the IP address of the DNS server in the Tailspin Toys forest.

考题 Your company has a single Active Directory directory service forest with multiple domains. The Schema FSMO role is held by one of the domain controllers in the forest root domain. The DomainThe safer , easier way to help you pass any IT exams. Naming Master FSMO role is held by one of the domain controllers in a child domain. All domain controllers have Windows Server 2003 installed.  You need to upgrade all domain controllers to Windows Server 2003 R2.  Which two actions should you perform?()A、 Run the adprep /forestprep command in the forest root domain.B、 Run the adprep /forestprep command in all the child domains.C、 Run the adprep /domainprep command in all the child domains only.D、 Run the adprep /domainprep command in all domains.

考题 Your network contains an internal network and a perimeter network. The internal network contains an Active Directory forest. The forest contains a single domain.  You plan to deploy 10 Edge Transport servers on the perimeter network.  You need to recommend a solution for the Edge Transport server deployment. The solution must meet the following requirements: .Allow administrators to apply a single security policy to all Edge Transport servers .Reduce the administrative overhead that is required to manage servers .Minimize the attack surface of the internal network What should you recommend?()A、Implement Network Policy and Access Services (NPAS).B、Implement Active Directory Federation Services (AD FS).C、Create a new Active Directory domain in the internal forest, and then join all Edge Transport servers to the new domain.D、Create an Active Directory forest in the perimeter network, and then join all Edge Transport servers to the new domain.

考题 Your company has a main office and ten branch offices.  Your network consists of a single domain Active Directory forest. An Active Directory site exists for each office.  The main office contains five domain controllers that run Windows Server 2008 (x64).  Each branch office contains one read-only domain controller (RODC) that runs Windows Server 2008(x86).  All domain controllers are configured as global catalog servers. You plan to deploy one Exchange Server 2010 server in each site.  You need to recommend changes to Active Directory to support the planned deployment.  The solution must ensure that Exchange servers in each branch-office site connect to their local domain controllers.  What should you recommend?()A、Implement a DNS zone for each office.B、Change all RODCs to Windows Server 2008 (x64) RODCs.C、Implement a writable domain controller in each branch office.D、Disable site link bridging for the forest and configure Exchange-specific costs.

考题 Your network contains a single Active Directory domain. The functional level of the forest is Windows  Server 2008. The functional level of the domain is Windows Server 2008 R2.   All DNS servers run Windows Server 2008. All domain controllers run Windows Server 2008 R2.  You need to ensure that you can enable the Active Directory Recycle Bin.   What should you do()A、Change the functional level of the forest.B、Change the functional level of the domain.C、Modify the Active Directory schema.D、Modify the Universal Group Membership Caching settings.

考题 Your network contains an internal network and a perimeter network. The internal network contains an Active Directory forest. The forest contains a single domain.  You plan to deploy 10 Edge Transport servers on the perimeter network.  You need to recommend a solution for the Edge Transport server deployment. The solution must meet the following requirements: .Allow administrators to apply a single security policy to all Edge Transport servers .Reduce the administrative overhead that is required to manage servers .Minimize the attack surface of the internal network  What should you recommend?()A、Implement Network Policy and Access Services (NPAS).B、Implement Active Directory Federation Services (AD FS).C、Create a new Active Directory domain in the internal forest, and then join all Edge Transport servers to the new domain.D、Create an Active Directory forest in the perimeter network, and then join all Edge Transport servers to the new domain.

考题 Your network consists of a single Active Directory domain. All servers run Windows Server 2008 R2.   You plan to publish a Web site on two Web servers.   You need to deploy an availability solution for your Web servers that meets the following requirements: èSupports the addition of more Web servers without interrupting client connections  èEnsures that the Web site is accessible even if a single server fails What should you do?()A、Configure a failover cluster.B、Configure a Web garden on each Web server.C、Create a Network Load Balancing cluster.D、Create two application pools on each Web server.

考题 Your company has several branch offices. Your network consists of a single Active Directory domain.   Each branch office contains domain controllers and member servers. The domain controllers run  Windows Server 2003 SP2. The member servers run Windows Server 2008 R2.  Physical security of the servers at the branch offices is a concern.   You plan to implement Windows BitLocker Drive Encryption (BitLocker) on the member servers.  You need to ensure that you can access the BitLocker volume if the BitLocker keys are corruptedon the member servers. The recovery information must be stored in a central location. What should you do?()A、Upgrade all domain controllers to Windows Server 2008 R2.Use Group Policy to configure Public Key  policies.B、Upgrade all domain controllers to Windows Server 2008 R2. Use Group Policy to enable Trusted platform Module(TPM) backups to Active Directory.C、Upgrade the domain controller that has the schema master role to Windows Server 2008 R2. Use group Policy to enable a Data Recovery Agent (DRA).D、Upgrade the domain controller that has the primary domain controller (PDC) emulator role to windows Server 2008 R2. Use Group Policy to enable a Data Recovery Agent (DRA).

考题 Contoso Ltd. has a single active directory forest that has five domains. Each domain has two DNS servers. Each DNS server hosts active directory-integrated zones for all five domains. All domain controllers run windows server 2008. Contoso acquires a company names tailspin toys. Tailspin toys has a single active directory forest that contains a single domain. You need to configure the DNS system in the contoso forest to provide name resolution for resources in both forests. What should you do?()A、Configure client computers in the contoso forest to use the tailspin toys DNS server as the alternate DNS server.B、Create a new conditional forwader and store it in active directory. Replicate the new conditional forwarded to all DNS server in the contoso forest.C、Create a new application directory partition in the contoso forest. Enlist the directory partition for all DNS servers.D、Create a new host (A) record in the globalnames folder on one of the DNS servers in the contoso forest. Configure the host (A) record by using by using the tailspin toys domain name and the ip address of the DNS server in the tailspin toys forest.

考题 Your network consists of an Active Directory forest that contains two domains. All servers run  Windows Server 2008 R2. All domain controllers are configured as DNS servers.   You have a standard primary zone for dev.contoso.com that is stored on a member server.   You need to ensure that all domain controllers can resolve names from the dev.contoso.com zone.  What should you do()A、On the member server, create a stub zone.B、On the member server, create a NS record for each domain controller.C、On one domain controller, create a conditional forwarder. Configure the conditional forwarder to  replicate to all DNS servers in the forest.D、On one domain controller, create a conditional forwarder. Configure the conditional forwarder to  replicate to all DNS servers in the domain.

考题 Your company has three offices. Each office has a direct link to the Internet. The offices connect to each other by using a WAN link.  Your network consists of an Active Directory forest that contains two domains and one site. The functional level of the forest is Windows Server 2003.  All domain controllers run Windows Server 2003 R2. Each office contains two domain controllers for eachdomain.  All domain controllers are global catalog servers.  In each office, you plan to deploy Mailbox, Client Access, and Hub Transport Exchange Server 2010servers.  All e-mail messages sent to the Internet will be delivered from a local server in each office.  You need to recommend changes to the Active Directory environment to support the planned deploymentof Exchange Server 2010.  What should you recommend?()A、Disable site link bridging for the forest.B、Modify the cost values for the default IP site link.C、Create an Active Directory subnet and site object for each office.D、Upgrade one domain controller in each office to Windows Server 2008.

考题 Your network consists of a single Active Directory domain. All domain controllers run Windows Server  2008 R2.   You need to plan an auditing strategy that meets the following requirements: èAudits all changes to Active Directory Domain Services (AD?DS) èStores all auditing data in a central location. What should you include in your plan?()A、Configure an audit policy for the domain. Configure Event Forwarding.B、Configure an audit policy for the domain controllers. Configure Data Collector Sets.C、Implement Windows Server Resource Manager (WSRM) in managing mode.D、Implement Windows Server Resource Manager (WSRM) in accounting mode.

考题 Your network contains a single Active Directory domain. The functional level of the forest is  Windows Server 2008. The functional level of the domain is Windows Server 2008 R2. All DNS servers run Windows Server 2008. All domain controllers run Windows Server 2008 R2. You need to ensure that you can enable the Active Directory Recycle Bin. What should you do()A、Change the functional level of the forest.B、Change the functional level of the domain.C、Modify the Active Directory schema.D、Modify the Universal Group Membership Caching settings.

考题 Contoso Ltd. has a single Active Directory forest that has five domains. Each domain has two DNS servers. Each DNS server hosts Active Directory-integrated zones for all five domains. All domain controllers run windows server 2008. Contoso acquires a company names Tailspin Toys. Tailspin Toys has a single Active Directory forest that contains a single domain. You need to configure the DNS system in the Contoso forest to provide name resolution for resources in both forests. What should you do?()A、Configure client computers in the Contoso forest to use the Tailspin Toys DNS server as the alternate DNS serverB、Create a new conditional forwarder and store it in Active Directory. Replicate the new conditional forwarded to all DNS server in the Contoso forest.C、Create a new application directory partition in the Contoso forest. Enlist the directory partition for all DNS serversD、Create a new host (A) record in the GlobalNames folder on one of the DNS servers in the contoso forest. Configure the host (A) record by using the Tailspin Toys domain name and the ip address of the DNS server in the Tailspin Toys forest.

考题 You are a security administrator for your company. The network consists of three Active Directory domains. All Active Directory domains are running at a Windows Server 2003 mode functionality level.    Employees in the editorial department of your company need access to resources on file servers that are in each of the Active Directory domains. Each Active Directory domain in the company contains at least one editorial department employee user account.    You need to create a single group named Company Editors that contains all editorial department employee user accounts and that has access to the resources on file server computers.  What should you do?()A、 Create a global distribution group in the forest root domain and name it Company Editors.B、 Create a global security group in the forest root domain and name it Company Editors.C、 Create a universal distribution group in the forest root domain and name it Company Editors. D、 Create a universal security group in the forest root domain and name it Company Editors.

考题 Your network consists of a single Active Directory domain. The functional level of the domain is Windows Server 2008 R2. All domain controllers run Windows Server 2008 R2.   A corporate policy requires that the users from the research department have higher levels of account and password security than other users in the domain.   You need to recommend a solution that meets the requirements of the corporate policy. Your solution must minimize hardware and software costs. What should you recommend?()A、Create a new Active Directory site. Deploy a Group Policy object (GPO) to the site.B、Create a new Password Settings Object (PSO) for the research department’s usersC、Create a new organizational unit (OU) named Research in the existing domain. Deploy a Group Policy object (GPO) to the Research OU.D、Create a new domain in the forest.Add the research department’s user accounts to the new domain.Configure a new security policy in the new domain.

考题 Your company has a single Active Directory forest that has six domains. All DNS servers in the forest run Windows Server 2008. You need to ensure that all public DNS quieries are channeled through a singlecahing- only DNS server. Which two actions should you perform?() A、Disable the root hintsB、Enable BIND secondariesC、Configure a forwarder to the caching DNS serverD、Configure a GlobalNames host (A) record for the hostname of the caching DNS server

考题 Your network consists of a single Active Directory domain. The network contains a Terminal Server that runs Windows Server 2008, and client computers that run Windows Vista. All computers are members of the domain.   You deploy an application by using the TS RemoteApp Manager. The Terminal Servers security layer is set to Negotiate.  You need to ensure that domain users are not prompted for credentials when they access the application. What should you do?()A、On the server, modify the Password Policy settings in the local Group Policy.B、On the server, modify the Credential Delegation settings in the local Group Policy.C、On all client computers, modify the Password Policy settings in the local Group Policy.D、On all client computers, modify the Credential Delegation settings in the local Group Policy.

考题 Your company network has an Active Directory forest that has one parent domain and one child domain. The child domain has two domain controllers that run Windows Server 2008. All user accounts from the child domain are migrated to the parent domain. The child domain is scheduled to be decommissioned. You need to remove the child domain from the Active Directory forest. What are two possible ways to achieve this goal()A、Delete the computer accounts for each domain controller in the child domain. Remove the trust relationship between the parent domain and the child domain.B、Run the Dcpromo tool that has individual answer files on each domain controller in the child domain.C、Run the Computer Management console to stop the Domain Controller service on both domain controllers in the child domain.D、Use Server Manager on both domain controllers in the child domain to uninstall the Active Directory domain services role.

考题 多选题Your company has a single Active Directory directory service forest with multiple domains. The Schema FSMO role is held by one of the domain controllers in the forest root domain. The DomainThe safer , easier way to help you pass any IT exams. Naming Master FSMO role is held by one of the domain controllers in a child domain. All domain controllers have Windows Server 2003 installed.  You need to upgrade all domain controllers to Windows Server 2003 R2.  Which two actions should you perform?()ARun the adprep /forestprep command in the forest root domain.BRun the adprep /forestprep command in all the child domains.CRun the adprep /domainprep command in all the child domains only.DRun the adprep /domainprep command in all domains.

考题 单选题You are a security administrator for your company. The network consists of three Active Directory domains. All Active Directory domains are running at a Windows Server 2003 mode functionality level.    Employees in the editorial department of your company need access to resources on file servers that are in each of the Active Directory domains. Each Active Directory domain in the company contains at least one editorial department employee user account.    You need to create a single group named Company Editors that contains all editorial department employee user accounts and that has access to the resources on file server computers.  What should you do?()A  Create a global distribution group in the forest root domain and name it Company Editors.B  Create a global security group in the forest root domain and name it Company Editors.C  Create a universal distribution group in the forest root domain and name it Company Editors. D  Create a universal security group in the forest root domain and name it Company Editors.