A.Add the user accounts of the branch office administrators to the Group Policy Creator Owners Group.
B.Modify the Managed By tab in each organizational unit to add the branch office administrators to their respective organizational units.
C.Run the Delegation of Control wizard and delegate the right to link GPOs for the domain to the branch office administrators.
D.Run the Delegation of Control wizard and delegate the right to link GPOs for their branch organizational units to the branch office administrators.
您可能感兴趣的试卷
你可能感兴趣的试题
A.Configure the Deny Apply Group Policy permission for the sales managers on the DesktopLockdown GPO.
B.Configure the Deny Apply Group Policy permission for the sales executives on theDesktopLockdown GPO.
C.Configure the Deny Apply Group Policy permission for Authenticated Users on the DesktopLockdown GPO.
D.Configure the Allow Apply Group Policy permission for Authenticated Users on the DesktopLockdown GPO.
A.Run the csvde f computers.csv command.
B.Run the ldifde f computers.ldf command.
C.Run the dsadd computer
D.Run the dsmod computer
A.Restart IIS.
B.Install Message Queuing.
C.Start the MSSQLSVC service.
D.Manually delete the Service Connection Point in AD DS and restart AD RMS.
A.Import the enterprise root CA certificate.
B.Import the OCSP Response Signing certificate.
C.Add the Server1 computer account to the CertPublishers group.
D.Set the Startup Type of the Certificate Propagation service to Automatic.
A.Register Schmmgmt.dll.
B.Log off and log on again by using an account that is a member of the Schema Administrators group.
C.Use the Ntdsutil.exe command to connect to the Schema Master operations master and open the schema for writing.
D.Add the Active Directory Lightweight Directory Services (AD LDS) role to the domain controller by using Server Manager.
A.Site
B.Server
C.Domain
D.Connection object
Your company has two Active Directory forests named contoso.com and fabrikam.com. The company network has three DNS servers named DNS1, DNS2, and DNS3. The DNS servers are configured as shown in the following table.
All computers that belong to the fabrikam.com domain have DNS3 configured as the preferred DNS server.
All other computers use DNS1 as the preferred DNS server. Users from the fabrikam.com domain are unable to connect to the servers that belong to the contoso.com domain. You need to ensure users in the fabrikam.com domain are able to resolve all contoso.com queries. What should you do()
A.Create a copy of the _msdcs.contoso.com zone on the DNS3 server.
B.Create a copy of the fabrikam.com zone on the DNS1 server and the DNS2 server.
C.Configure conditional forwarding on DNS3 to forward contoso.com queries to DNS1.
D.Configure conditional forwarding on DNS1 and DNS2 to forward fabrikam.com queries to DNS3.
A.Create a new forest trust and enable forest-wide authentication.
B.Raise the forest functional level of contoso.com to Windows Server 2008.
C.Raise the forest functional level of fabrikam.com to Windows Server 2008.
D.Raise the domain functional level of fabrikam.com to Windows Server 2008.
A.Create a NS record in the contoso.com zone.
B.Create a delegation in the contoso.com zone.
C.Create a standard secondary zone on a Global Catalog server.
D.Modify the properties of the SOA record in the contoso.com zone.
A.Create a new delegation in the ForestDnsZones application directory partition.
B.Create a new delegation in the DomainDnsZones application directory partition.
C.From the command prompt, run dnscmd and specify the /enlistdirectorypartition parameter.
D.From the command prompt, run dnscmd and specify the /createdirectorypartition parameter.
最新试题
You have Active Directory Certificate Services (AD CS) deployed. You create a custom certificate template. You need to ensure that all of the users in the domain automatically enroll for a certificate based on the custom certificate template. Which two actions should you perform()
Your network contains an Active Directory domain. A user named User1 takes a leave of absence for one year. You need to restrict access to the User1 user account while User1 is away. What should you do()
You need to receive an e-mail message whenever a domain user account is locked out. Which tool should you use()
You have a domain controller named Server1 that runs Windows Server 2008 R2. You need to determine the size of the Active Directory database on Server1. What should you do()
Your network contains an Active Directory domain that has two sites. You need to identify whether logon scripts are replicated to all domain controllers. Which folder should you verify()
You have an enterprise subordinate certification authority (CA). The CA is configured to use a hardware security module. You need to back up Active Directory Certificate Services on the CA. Which command should you run()
Your network contains an Active Directory domain. All domain controller run Windows Server 2003. You replace all domain controllers with domain controllers that run Windows Server 2008 R2. You raise the functional level of the domain to Windows Server 2008 R2. You need to minimize the amount of SYSVOL replication traffic on the network. What should you do()
You remotely monitor several domain controllers. You run winrm.exe quickconfig on each domain controller. You need to create a WMI script query to retrieve information from the bios of each domain controller. Which format should you use to write the query()
Your network contains an Active Directory domain named contoso.com. Contoso.com contains three servers.The servers are configure as shown in the following table. Server name Server roel Service Server1 Certification authority (CA) Server2 Certificate Enrollment Web Service Server3 Certificate Enrollment Policy Web Service You need to ensure that users can manually enroll and renew their certificates by using the Certificate Enrollment Web Service. Which two actions should you perform()
Your network contains an Active Directory forest. The forest contains two domains. You have a standalone root certification authority (CA). On a server in the child domain, you run the Add Roles Wizard and discover that the option to select an enterprise CA is disabled. You need to install an enterprise subordinate CA on the server. What should you use to log on to the new server()