Certkiller.com runs Window Server 2008 on all of its servers. It has a single Active Directory domain and it uses Enterprise Certificate Authority. The security policy at Certkiller .com makes it necessary to examine revoked certificate information.
You need to make sure that the revoked certificate information is available at all times. What should you do to achieve that()
A.Add and configure a new GPO (Group Policy Object) that enables users to accept peer certificates and link the GPO to the domain.
B.Configure and use a GPO to publish a list of trusted certificate authorities to the domain
C.Configure and publish an OCSP (Online certificate status protocol) responder through ISAS (Internet Security and Acceleration Server) array.
D.Use network load balancing and publish an OCSP responder.
E.None of the above
您可能感兴趣的试卷
你可能感兴趣的试题
As an administrator at Certkiller.com, you have installed an Active Directory forest that has a single domain. You have installed an Active Directory Federation services (AD FS) on the domain member server.
What should you do to configure AD FS to make sure that AD FS token contains information from the active directory domain()
A.Add a new account store and configure it.
B.Add a new resource partner and configure it
C.Add a new resource store and configure it
D.Add a new administrator account on AD FS and configure it
E.None of the above
Certkiller has an Active Directory forest with six domains. The company has 5 sites. The company requires a new distributed application that uses a custom application directory partition named ResData for data replication.
The application is installed on one member server in five sites.
You need to configure the five member servers to receive the ResData application directory partition for data replication. What should you do()
A.Run the Dcpromo utility on the five member servers.
B.Run the Regsvr32 command on the five member servers
C.Run the Webadmin command on the five member servers
D.Run the RacAgent utility on the five member servers
Certkiller.com has an active directory forest on a single domain.
Certkiller needs a distributed application that employs a custom application. The application is directory partition software named PARDAT. You need to implement this application for data replication.
Which two tools should you use to achieve this task()
A.Dnscmd.
B.Ntdsutil.
C.Ipconfig
D.Dnsutil
E.All of the above
A.Configure an email account in Active Directory Domain Services (AD DS) for each user.
B.Add and configure ADRMSADMIN account in local administrators group on the user computers
C.Add and configure the ADRMSSRVC account in AD RMS server’s local administrator group
D.Reinstall the Active Directory domain on user computers
E.All of the above
A.Configure RODC filtered attribute set on the server
B.Configure RODC filtered set on the server that holds Schema Operations Master role.
C.Delegate local administrative permissions for an RODC to any domain user without granting that user any user rights for the domain
D.Configure forest functional level server for Windows server 2008 to configure filteredattribute set.
E.None of the above
A.Start the Active Directory Domain Services on CKDC1
B.Disconnect from the network and start the Windows update feature
C.Stop the Active Directory domain services and install the updates. Start the Active Directorydomain services after installing the updates.
D.Stop Active Directory domain services and install updates. Disconnect from the network and then connect again
E.None of the above
Exhibit:
Certkiller.com servers run Windows Server 2008. It has a single Active Directory domain. A server called CK4 has file services role installed. You install some disk for additional storage. The disks are configured as shown in the exhibit.
To support data stripping with parity, you have to create a new drive volume. What should you do to achieve this objective()
A.Build a new spanned volume by combining Disk0 and Disk1
B.Create a new Raid-5 volume by adding another disk.
C.Create a new virtual volume by combining Disk 1 and Disk 2
D.Build a new striped volume by combining Disk0 and Disk 2
Certkiller.com has installed a server. You are assigned to install and run an instance of Active Directory Lightweight Directory Service (AD LDS). After doing necessary configurations, you start an instance of AD LDS successfully.
Now you need to create new Organizational Units in the AD LDS application directory partition. What should you do to create new OUs in the AD LDS application directory partition()
A.To create the OUs, use the dsmod OU
B.Employ ADSI Edit Snap-in to create the OUs on the AD LDS application directory partition.
C.Create OUs by executing dsadd OU
D.Create OUs on the AD LDS application directory partition by using Active Directory Users and computers snap-in.
A.Assign the Certificate Manager role to the CertIssuers group.
B.Place CertIssuers group in the Certificate Publisher group
C.Run the certsrv -add CertIssuers command promt of the certificate server
D.Run the add -member-membertype memberset CertIssuers command by using Microsoft WindowsPowershell
A.Boot into Directory Services Restore Mode and use wbadmin to restore critical volume.
B.Boot into Directory Services Restore Mode and use the backup snap-in to restore critical volume
C.Boot into Safe Mode and use wbadmin to restore critical volume
D.Boot into Safe Mode and use the backup snap-in to restore critical volume
最新试题
Your network contain 10 domain controller that run Windows Server R2. The network contain a member server that is configured to collect all of events that occur on the domain controllers. Your need to ensure that administrators are notified when a specific event occurs on any of the domain controllers. You want to achive the goal by using the minimum amount effort. What should you do()
You have Active Directory Certificate Services (AD CS) deployed. You create a custom certificate template. You need to ensure that all of the users in the domain automatically enroll for a certificate based on the custom certificate template. Which two actions should you perform()
What should you do()
Your network contains two Active Directory forests named contoso.com and nwtraders.com. A two-way forest trust exists between contoso.com and nwtraders.com. The forest trust is configured to use selective authentication. Contoso.com contains a server named Server1. Server1 contains a shared folder named Marketing. Nwtraders.com contains a global group named G_Marketing. The Change share permission and the Modify NTFS permissions for the Marketing folder are assignes to the G_Marketing group. Members of G_Marketing report that they cannot accesss the Marketing folder. You need to ensure that the G_Marketing members can accesss the folder from the network. What should you do()
You have an enterprise subordinate certification authority (CA). You have a custom Version 3 certificate template. Users can enroll for certificates based on the custom certificate template by using the Certificates console. The certificate template is unavailable for Web enrollment. You need to ensure that the certificate template is available on the Web enrollment pages. What should you do()
Your network contains three Active Directory forest named Forest1, Forest2, and Forest3. Each forest contains three domains. A two-way forest trust exists between Forest1 and Forest2. A two-way forest trust exists between Forest2 and Forest3. You need to configure the forest to meet the following requirements Users in Forest3 must be able to access resources in Forest1. Users in Forest1 must be able to access resources in Forest3. The number of trusts must be minimized. What should you do()
You have an enterprise subordinate certification authority (CA). You have a group named Group1. You need to allow members of Group1 to publish new certificate revocation lists. Members of Group1 must not be allowed to revoke certificates. What should you do()
Your network contains an Active Directory domain that contains five domain controllers. You have a management computer that runs Windows 7. From the Windows 7 computer, you need to view all account logon failures that occur in the domain. The information must be consolidated on one list. Which command should you run on each domain controller()
You remotely monitor several domain controllers. You run winrm.exe quickconfig on each domain controller. You need to create a WMI script query to retrieve information from the bios of each domain controller. Which format should you use to write the query()
Your network contains an Active Directory domain controller named DC1. DDC1 runs Windows Server 2008 R2. You need to defragment the Active Directory database on DC1. The solution must minimize downtime on DC1. What should you do first()