单项选择题Certkiller.com has a server with Active Directory Rights Management Services (AD RMS) server installed. Users have computers with Windows Vista installed on them with an Active Directory domain installed at Windows Server 2003 functional level. As an administrator at Certkiller.com, you discover that the users are unable to benefit from AD RMS to protect their documents. You need to configure AD RMS to enable users to use it and protect their documents. What should you do to achieve this functionality()

A.Configure an email account in Active Directory Domain Services (AD DS) for each user.
B.Add and configure ADRMSADMIN account in local administrators group on the user computers
C.Add and configure the ADRMSSRVC account in AD RMS server’s local administrator group
D.Reinstall the Active Directory domain on user computers
E.All of the above


您可能感兴趣的试卷

你可能感兴趣的试题

1.多项选择题One of the remote branch offices of Certkiller branch is running a Windows Server 2008 having ready only domain controller (RODC) installed.For security reasons you don’t want some critical credentials like (passwords, encryption keys) to be stored on RODC. What should you do so that these credentials are not replicated to any RODC’s in the forest()

A.Configure RODC filtered attribute set on the server
B.Configure RODC filtered set on the server that holds Schema Operations Master role.
C.Delegate local administrative permissions for an RODC to any domain user without granting that user any user rights for the domain
D.Configure forest functional level server for Windows server 2008 to configure filteredattribute set.
E.None of the above

2.单项选择题Certkiller.com has servers on the main network that run Windows Server 2008. It also has two domain controllers. Active Directory services are running on a domain controller named CKDC1. You have to perform critical updates of Windows Server 2008 on CKDC1 without rebooting the server. What should you do to perform offline critical updates on CKDC1 without rebooting the server()

A.Start the Active Directory Domain Services on CKDC1
B.Disconnect from the network and start the Windows update feature
C.Stop the Active Directory domain services and install the updates. Start the Active Directorydomain services after installing the updates.
D.Stop Active Directory domain services and install updates. Disconnect from the network and then connect again
E.None of the above

4.单项选择题

Certkiller.com has installed a server. You are assigned to install and run an instance of Active Directory Lightweight Directory Service (AD LDS). After doing necessary configurations, you start an instance of AD LDS successfully. 
Now you need to create new Organizational Units in the AD LDS application directory partition. What should you do to create new OUs in the AD LDS application directory partition()

A.To create the OUs, use the dsmod OU  command
B.Employ ADSI Edit Snap-in to create the OUs on the AD LDS application directory partition.
C.Create OUs by executing dsadd OU  command
D.Create OUs on the AD LDS application directory partition by using Active Directory Users and computers snap-in.

5.单项选择题Your company has an Active Directory domain. All servers run Windows Server 2008. You deploy a Certification Authority (CA) server. You create a new global security group named CertIssuers. You need to ensure that members of the CertIssuers group can issue, approve, and revoke certificates. What should you do()

A.Assign the Certificate Manager role to the CertIssuers group.
B.Place CertIssuers group in the Certificate Publisher group
C.Run the certsrv -add CertIssuers command promt of the certificate server
D.Run the add -member-membertype memberset CertIssuers command by using Microsoft WindowsPowershell

6.单项选择题Your company has a domain controller that runs Windows Server 2008. The domain controller has the backup features installed. You need to perform a non-authoritative restore of the doman controller using an existing backup file. What should you do()

A.Boot into Directory Services Restore Mode and use wbadmin to restore critical volume.
B.Boot into Directory Services Restore Mode and use the backup snap-in to restore critical volume
C.Boot into Safe Mode and use wbadmin to restore critical volume
D.Boot into Safe Mode and use the backup snap-in to restore critical volume

7.单项选择题You have two servers named Server1 and Server2. Both servers run Windows Server 2008. Server1 is configured as an enterprise root certification authority (CA). You install the Online Responder role service on Server2. You need to configure Server1 to support the Online Responder. What should you do()

A.Import the enterprise root CA certificate.
B.Configure the Certificate Distribution Point (CDP) extension.
C.Configure the Authority Information Access (AIA) extension.
D.Add the Server2 computer account to the CertPublishers group.

9.单项选择题Your network consists of a single Active Directory domain.? All domain controllers run Windows Server 2008. You need to identify the Lightweight Directory Access Protocol (LDAP) clients that are using the largest amount of available CPU resources on a domain controller. What should you do()

A.Review performance data in Resource Monitor.
B.Review the Hardware Events log in the Event Viewer.
C.Run the LAN Diagnostics Data Collector Set. Review the LAN Diagnostics report.
D.Run the Active Directory Diagnostics Data Collector Set. Review the Active DirectoryDiagnostics

10.单项选择题Your company has file servers located in an organizational unit named Payroll. The file servers contain payroll files located in a folder named Payroll. You create a GPO. You need to track which employees access the Payroll files on the file servers. What should you do()

A.Enable the Audit object access option. Link the GPO to the Payroll organizational unit. On the file servers, configure Auditing for the Everyone group in the Payroll folder.
B.Enable the Audit object access option. Link the GPO to the domain. On the domain controllers, configure Auditing for the Authenticated Users group in the Payroll folder.
C.Enable the Audit process tracking option. Link the GPO to the Domain Controllers organizational unit. On the file servers, configure Auditing for the Authenticated Users group in the Payroll folder.
D.Enable the Audit process tracking option. Link the GPO to the Payroll organizational unit. On the file servers, configure Auditing for the Everyone group in the Payroll folder.

最新试题

Your network contains an Active Directory forest. The forest contains an Acitve Directory site for a  remote office. The remote site contains a read-only domain controller (RODC).    You need to configure the RODC to store only the password of users in the remote site.    What should you do()

题型:单项选择题

You have an enterprise subordinate certification authority (CA) configured for key archival. Three  key recovery agent certificates are issued.  The CA is configured to use two recovery agents.    You need to ensure that all of the recovery agent certificates can be used to recover all new  private keys.    What should you do()

题型:单项选择题

Active Directory Rights Management Services (AD RMS) is deployed on your network.    You need to configure AD RMS to use Kerberos authentication.  Which two actions should you perform()

题型:多项选择题

Your network contains a single Active Directory domain named contoso.com.    An administrator accidentally deletes the _msdsc.contoso.com zone.  You recreate the _msdsc.contoso.com zone.    You need to ensure that the _msdsc.contoso.com zone contains all of the required DNS records.    What should you do on each domain controller()

题型:单项选择题

Your network contains an Active Directory domain named contoso.com. Contoso.com contains  three servers.The servers are configure as shown in the following table.    Server name   Server roel Service  Server1                          Certification authority (CA)  Server2                         Certificate Enrollment Web Service  Server3                          Certificate Enrollment Policy Web Service  You need to ensure that users can manually enroll and renew their certificates by using the  Certificate Enrollment Web Service.    Which two actions should you perform()

题型:多项选择题

Your network contains an Active Directory forest. The forest contains two domain controllers. The  domain controllers are configured as shown in the following table. All client computers run Windows 7.    You need to ensure that all client computers in the domain keep the same time as an external  time server.    What should you do()

题型:单项选择题

You remotely monitor several domain controllers.  You run winrm.exe quickconfig on each domain controller. You need to create a WMI script query  to retrieve information from the bios of each domain controller.    Which format should you use to write the query()

题型:单项选择题

Your network contains an Active Directory domain named contoso.com. Contoso.com contains a  member server that runs Windows Serever 2008 Standart.  You need to install an enterprise subordinate certification authority (CA) that support private key  archival. You must achieve this goal by using the minimum amount of administrative effort.What do you do first()

题型:单项选择题

You have an enterprise subordinate certification authority (CA). You have a custom certificate  template that has a key length of 1,024 bits. The template is enabled for autoenrollment.    You increase the template key length to 2,048 bits.  You need to ensure that all current certificate holders automatically enroll for a certificate that  uses the new template.    Which console should you use()

题型:单项选择题

What should you do() 

题型:单项选择题