网友您好, 请在下方输入框内输入要搜索的题目:

题目内容 (请给出正确答案)
单选题
You have a Windows Server 2008 R2 that has the Active Directory Certificate Services server  role installed.   You need to minimize the amount of time it takes for client computers to download a certificate  revocation list (CRL).     What should you do()
A

Install and configure an Online Responder.

B

Install and configure an additional domain controller.

C

Import the Root CA certificate into the Trusted Root Certification Authorities store on all client workstations.

D

Import the Issuing CA certificate into the Trusted Root Certification Authorities store on all client workstations.


参考答案

参考解析
解析: 暂无解析
更多 “单选题You have a Windows Server 2008 R2 that has the Active Directory Certificate Services server  role installed.   You need to minimize the amount of time it takes for client computers to download a certificate  revocation list (CRL).     What should you do()A Install and configure an Online Responder.B Install and configure an additional domain controller.C Import the Root CA certificate into the Trusted Root Certification Authorities store on all client workstations.D Import the Issuing CA certificate into the Trusted Root Certification Authorities store on all client workstations.” 相关考题
考题 Your company has an Active Directory domain. You have a two-tier PKI infrastructure that  contains an offline root CA and an online issuing CA. The Enterprise certification authority is  running Windows Server 2008 R2.   You need to ensure users are able to enroll new certificates.     What should you do()A、Renew the Certificate Revocation List (CRL) on the root CA . Copy the CRL to the CertEnroll folder on the issuing CB、Renew the Certificate Revocation List (CRL) on the issuing CA . Copy the CRL to the SystemCertificates folder in thC、Import the root CA certificate into the Trusted Root Certification Authorities store on all client workstations.D、Import the issuing CA certificate into the Intermediate Certification Authorities store on all client workstations.

考题 Your network contains an Active Directory domain named contoso.com. Contoso.com contains a  member server that runs Windows Serever 2008 Standart.   You need to install an enterprise subordinate certification authority (CA) that support private key  archival. You must achieve this goal by using the minimum amount of administrative effort. What do you do first()A、Initialize the Trusted Platform Module (TPM)B、Upgrade the menber server to Windows Server 2008 R2 Standard.C、Install the Certificate Enrollment Policy Web Service role service on the member server.D、Run the Security Configuration Wizard (SCW) and select the Active Directory Certificate Services - Certification

考题 Your company has an Active Directory domain. A server named Server2 runs Windows Server 2008. All client computers run Windows Vista.  You install the Terminal Services role,Terminal Services Web Access role service,and Terminal Services Gateway role service on Server2.  You need to ensure that all client computers have compliant firewall, antivirus software,and antispyware. Which two actions should you perform?()A、Configure Network Access Protection (NAP) on a server in the domain.B、Add the Terminal Services servers to the Windows Authorization Access domain local security group.C、Add the Terminal Services client computers to the Windows Authorization Access domain local security group.D、Enable the Request clients to send a statement of health option in the Terminal Services client access policy.

考题 Your company has an Active Directory domain. You plan to install the Active Directory Certificate Services (AD CS) server role on a member  server that runs Windows Server 2008 R2.     You need to ensure that members of the Account Operators group are able to issue smartcard  credentials. They should not be able to revoke certificates.     Which three actions should you perform()A、Install the AD CS server role and configure it as an Enterprise Root CA .B、Install the AD CS server role and configure it as a Standalone CA .C、Restrict enrollment agents for the Smartcard logon certificate to the Account Operator group.D、Restrict certificate managers for the Smartcard logon certificate to the Account Operator group.E、Create a Smartcard logon certificate.F、Create an Enrollment Agent certificate.

考题 Your company has an Active Directory forest. You plan to install an Enterprise certification  authority (CA) on a dedicated stand-alone server. When you attempt to add the Active Directory Certificate Services (AD CS) server role, you find  that the Enterprise CA option is not available. You need to install the AD CS server role as an Enterprise CA.     What should you do first()A、Add the DNS Server server role.B、Join the server to the domain.C、Add the Web Server (IIS) server role and the AD CS server role.D、Add the Active Directory Lightweight Directory Services (AD LDS) server role.

考题 You have a Windows Server 2008 R2 that has the Active Directory Certificate Services server  role installed.   You need to minimize the amount of time it takes for client computers to download a certificate  revocation list (CRL).     What should you do()A、Install and configure an Online Responder.B、Install and configure an additional domain controller.C、Import the Root CA certificate into the Trusted Root Certification Authorities store on all client workstations.D、Import the Issuing CA certificate into the Trusted Root Certification Authorities store on all client workstations.

考题 You have a Windows Server 2008 R2 Enterprise Root CA . Security policy prevents port 443 and  port 80 from being opened on domain controllers and on the issuing CA .   You need to allow users to request certificates from a Web interface. You install the Active  Directory Certificate Services (AD CS) server role.     What should you do next()A、Configure the Online Responder Role Service on a member server.B、Configure the Online Responder Role Service on a domain controller.C、Configure the Certificate Enrollment Web Service role service on a member server.D、Configure the Certificate Enrollment Web Service role service on a domain controller.

考题 Your company has an Active Directory forest. You plan to install an Enterprise certification authority  (CA) on a dedicated stand-alone server.    When you attempt to add the Active Directory Certificate Services (AD CS) server role, you find that the  Enterprise CA option is not available.    You need to install the AD CS server role as an Enterprise CA.    What should you do first()A、Add the DNS Server server role.B、Join the server to the domain.C、Add the Web Server (IIS) server role and the AD CS server roleD、Add the Active Directory Lightweight Directory Services (AD LDS) server role. .

考题 Your company has an Active Directory Domain Services (AD DS) domain that includes an AD security group named Development. You have a member server that runs Windows Server 2008 R2 with the Hyper-V role installed. You need to ensure that Development group members can only manage virtual machines (VMs). Development group members must not have administrative privileges on the host server. What should you use?()A、Authorization ManagerB、Local Users and GroupsC、the net localgroup commandD、Active Directory Administrative Center

考题 Your network contains an Active Directory forest. All domain controllers run Windows Server  2008 Standard. The functional level of the domain is Windows Server 2003. You have a  certification authority (CA).   The relevant servers in the domain are configured as shown in the following table:     Server name  Operating system  Server role   Server1  Windows Server 2003  Enterprise root CA  Server2  Windows Server 2008  Enterprise subordinate CA  Server3  Windows Server 2008 R2  Web Server   You need to ensure that you can install the Active Directory Certificate Services (AD CS)  Certificate Enrollment Web Service on the network.     What should you do()A、Upgrade Server1 to Windows Server 2008 R2.B、Upgrade Server2 to Windows Server 2008 R2.C、Raise the functional level of the domain to Windows Server 2008.D、Install the Windows Server 2008 R2 Active Directory Schema updates.

考题 You have a Windows Server 2008 that has the Active Directory Certificate Services server role installed. You need to minimize the amount of time it takes to download a certificate revocation list (CRL). What should you do()A、Install and configure an Online Responder.B、Install and configure an addtional domain controller.C、Import the Root CA certificate into the Trusted Root Certification Authorities on all client workstations.D、Import the Issuing CA certificate into the Trusted Root Certification Authorities on all client workstations.

考题 Your network contains an Active Directory forest. All domain controllers run Windows Server 2008   Standard. The functional level of the domain is Windows Server 2003.  You have a certification authority (CA).   The relevant servers in the domain are configured as shown in the following table.  Server name  Operating system  Server role   Server1  Windows Server 2003  Enterprise root CA  Server2  Windows Server 2008  Enterprise subordinate CA    Server3  Windows Server 2008 R2    Web Server   You need to ensure that you can install the Active Directory Certificate Services (AD CS) Certificate   Enrollment Web Service on the network.   What should you do()A、Upgrade Server1 to Windows Server 2008 R2.B、Upgrade Server2 to Windows Server 2008 R2.C、Raise the functional level of the domain to Windows Server 2008.D、Install the Windows Server 2008 R2 Active Directory Schema updates.

考题 You have an Active Directory domain that runs Windows Server 2008 R2. You need to implement  a certification authority (CA) server that meets the following requirements:     - Allows the certification authority to automatically issue certificates  - Integrates with Active Directory Domain Services     What should you do()A、Install and configure the Active Directory Certificate Services server role as a Standalone Root CA .B、Install and configure the Active Directory Certificate Services server role as an Enterprise Root CA .C、Purchase a certificate from a third-party certification authority. Install and configure the Active Directory Certificate SD、Purchase a certificate from a third-party certification authority. Import the certificate into the computer store of the sc

考题 单选题Your company has an Active Directory forest. You plan to install an Enterprise certification  authority (CA) on a dedicated stand-alone server.   When you attempt to add the Active Directory Certificate Services (AD CS) server role, you find  that the Enterprise CA option is not available.   You need to install the AD CS server role as an Enterprise CA.     What should you do first()A Add the DNS Server server role.B Join the server to the domain.C Add the Web Server (IIS) server role and the AD CS server role.D Add the Active Directory Lightweight Directory Services (AD LDS) server role.

考题 单选题Your network contains an Active Directory domain named contoso.com. Contoso.com contains a  member server that runs Windows Serever 2008 Standart.   You need to install an enterprise subordinate certification authority (CA) that support private key  archival. You must achieve this goal by using the minimum amount of administrative effort. What do you do first()A Initialize the Trusted Platform Module (TPM)B Upgrade the menber server to Windows Server 2008 R2 Standard.C Install the Certificate Enrollment Policy Web Service role service on the member server.D Run the Security Configuration Wizard (SCW) and select the Active Directory Certificate Services - Certification

考题 单选题Your company has an Active Directory forest. You plan to install an Enterprise certification authority  (CA) on a dedicated stand-alone server.    When you attempt to add the Active Directory Certificate Services (AD CS) server role, you find that the  Enterprise CA option is not available.    You need to install the AD CS server role as an Enterprise CA.    What should you do first()A Add the DNS Server server role.B Join the server to the domain.C Add the Web Server (IIS) server role and the AD CS server roleD Add the Active Directory Lightweight Directory Services (AD LDS) server role. .

考题 单选题Your company has an Active Directory forest. You plan to install an Enterprise certification authority (CA) on a dedicated stand-alone server. When you attempt to add the Active Directory Certificate Services (AD CS) role, you find that the Enterprise CA option is not available. You need to install the AD CS role as an Enterprise CA. What should you do first()A Add the DNS Server role.B Join the server to the domain.C Add the Web server (IIS) role and the AD CS role.D Add the Active Directory Lightweight Directory Service (AD LDS) role.

考题 单选题You have a server named Server1 that has the following Active Directory Certificate Services (AD CS)   role services installed:   ( Enterprise root certification authority (CA)  .Certificate Enrollment Web Service   .Certificate Enrollment Policy Web Service   You create a new certificate template.   External users report that the new template is unavailable when they request a new certificate.  You verify that all other templates are available to the external users.   You need to ensure that the external users can request certificates by using the new template.  What should you do on Server1()A Run iisreset.exe /restart.  B Run gpupdate.exe /force.  C Run certutil.exe dspublish.D Restart the Active Directory Certificate Services service.

考题 多选题Your company has an Active Directory domain. You plan to install the Active Directory Certificate Services (AD CS) server role on a member  server that runs Windows Server 2008 R2.     You need to ensure that members of the Account Operators group are able to issue smartcard  credentials. They should not be able to revoke certificates.     Which three actions should you perform()AInstall the AD CS server role and configure it as an Enterprise Root CA .BInstall the AD CS server role and configure it as a Standalone CA .CRestrict enrollment agents for the Smartcard logon certificate to the Account Operator group.DRestrict certificate managers for the Smartcard logon certificate to the Account Operator group.ECreate a Smartcard logon certificate.FCreate an Enrollment Agent certificate.

考题 单选题You have a Windows Server 2008 R2 Enterprise Root CA.   Security policy prevents port 443 and port 80 from being opened on domain controllers and on the issuing  CA.   You need to allow users to request certificates from a Web interface. You install the Active Directory  Certificate Services (AD CS) server role. What should you do next()A Configure the Online Responder Role Service on a member server.B Configure the Online Responder Role Service on a domain controller.C Configure the Certificate Enrollment Web Service role service on a member server.D Configure the Certificate Enrollment Web Service role service on a domain controller.

考题 多选题Your company has an Active Directory domain. A server named Server2 runs Windows Server 2008. All client computers run Windows Vista.  You install the Terminal Services role,Terminal Services Web Access role service,and Terminal Services Gateway role service on Server2.  You need to ensure that all client computers have compliant firewall, antivirus software,and antispyware. Which two actions should you perform?()AConfigure Network Access Protection (NAP) on a server in the domain.BAdd the Terminal Services servers to the Windows Authorization Access domain local security group.CAdd the Terminal Services client computers to the Windows Authorization Access domain local security group.DEnable the Request clients to send a statement of health option in the Terminal Services client access policy.

考题 单选题Your network contains an Active Directory forest. All domain controllers run Windows Server 2008   Standard. The functional level of the domain is Windows Server 2003.  You have a certification authority (CA).   The relevant servers in the domain are configured as shown in the following table.  Server name  Operating system  Server role   Server1  Windows Server 2003  Enterprise root CA  Server2  Windows Server 2008  Enterprise subordinate CA    Server3  Windows Server 2008 R2    Web Server   You need to ensure that you can install the Active Directory Certificate Services (AD CS) Certificate   Enrollment Web Service on the network.   What should you do()A Upgrade Server1 to Windows Server 2008 R2.B Upgrade Server2 to Windows Server 2008 R2.C Raise the functional level of the domain to Windows Server 2008.D Install the Windows Server 2008 R2 Active Directory Schema updates.

考题 单选题Your network contains an Active Directory forest. All domain controllers run Windows Server  2008 Standard. The functional level of the domain is Windows Server 2003. You have a  certification authority (CA).   The relevant servers in the domain are configured as shown in the following table:     Server name  Operating system  Server role   Server1  Windows Server 2003  Enterprise root CA  Server2  Windows Server 2008  Enterprise subordinate CA  Server3  Windows Server 2008 R2  Web Server   You need to ensure that you can install the Active Directory Certificate Services (AD CS)  Certificate Enrollment Web Service on the network.     What should you do()A Upgrade Server1 to Windows Server 2008 R2.B Upgrade Server2 to Windows Server 2008 R2.C Raise the functional level of the domain to Windows Server 2008.D Install the Windows Server 2008 R2 Active Directory Schema updates.

考题 单选题You have a Windows Server 2008 that has the Active Directory Certificate Services server role installed. You need to minimize the amount of time it takes to download a certificate revocation list (CRL). What should you do()A Install and configure an Online Responder.B Install and configure an addtional domain controller.C Import the Root CA certificate into the Trusted Root Certification Authorities on all client workstations.D Import the Issuing CA certificate into the Trusted Root Certification Authorities on all client workstations.

考题 单选题You have an Active Directory domain that runs Windows Server 2008 R2. You need to implement  a certification authority (CA) server that meets the following requirements:     - Allows the certification authority to automatically issue certificates  - Integrates with Active Directory Domain Services     What should you do()A Install and configure the Active Directory Certificate Services server role as a Standalone Root CA .B Install and configure the Active Directory Certificate Services server role as an Enterprise Root CA .C Purchase a certificate from a third-party certification authority. Install and configure the Active Directory Certificate SD Purchase a certificate from a third-party certification authority. Import the certificate into the computer store of the sc

考题 单选题Your company has an Active Directory domain. You have a two-tier PKI infrastructure that  contains an offline root CA and an online issuing CA. The Enterprise certification authority is  running Windows Server 2008 R2.   You need to ensure users are able to enroll new certificates.     What should you do()A Renew the Certificate Revocation List (CRL) on the root CA . Copy the CRL to the CertEnroll folder on the issuing CB Renew the Certificate Revocation List (CRL) on the issuing CA . Copy the CRL to the SystemCertificates folder in thC Import the root CA certificate into the Trusted Root Certification Authorities store on all client workstations.D Import the issuing CA certificate into the Intermediate Certification Authorities store on all client workstations.

考题 单选题Your company has an Active Directory Domain Services (AD DS) domain that includes an AD security group named Development. You have a member server that runs Windows Server 2008 R2 with the Hyper-V role installed. You need to ensure that Development group members can only manage virtual machines (VMs). Development group members must not have administrative privileges on the host server. What should you use?()A Authorization ManagerB Local Users and GroupsC the net localgroup commandD Active Directory Administrative Center