A.Publish the code signing template.
B.Edit the local computer policy of the Enterprise Root CA to allow users to trust peer certificates and allow only administrators to apply the policy.
C.Edit the local computer policy of the Enterprise Root CA to allow only administrators to manage Trusted Publishers.
D.Modify the security settings on the template to allow only administrators to request code signing certificates.
您可能感兴趣的试卷
你可能感兴趣的试题
A.Create multiple Active Directory sites.
B.On all domain controllers, run dcpromo /adv.
C.On one domain controller, run dcpromo /adv.
D.Raise the functional level of the domain to Windows Server 2008.
A.Run the Dsmod utility.
B.Run the Active Directory Migration Tool (ADMT).
C.Run the Active Directory Users and Computers utility.
D.Run the move-item command in the Microsoft Windows PowerShell utility.
Your company has an Active Directory forest. The forest includes organizational units corresponding to the following four locations.
London
Chicago
New York
Madrid
Each location has a child organizational unit named Sales. The Sales organizational unit contains all the users and computers from the sales department.
The offices in London, Chicago, and New York are connected by T1 connections. The office in Madrid is connected by a 256-Kbps ISDN connection.
You need to install an application on all the computers in the sales department.
Which two actions should you perform()
A.Disable the slow link detection setting in the Group Policy Object (GPO).
B.Configure the slow link detection threshold setting to 1,544 Kbps (T1) in the Group Policy Object GPO).
C.Create a Group Policy Object (GPO) named Officelnstall that assigns the application to users. Link the GPO to each Sales organizational unit.
D.Create a Group Policy Object (GPO) named Officelnstall that assigns the application to the computers.Link the GPO to each Sales organizational unit.
A.Set up Automatic Updates through Control Panel on the client computers
B.Create a GPO and link it to the Domain Controllers organizational unit. Configure the GPO to automatically search for updates on the Microsoft Update site.
C.Create a GPO and link it to the domain. Configure the GPO to direct the client computers to the Microsoft WSUS server for approved updates.
D.Install the Microsoft WSUS application on a server in the environment. Configure the server to search for new updates on the Internet. Approve all required updates.
Your company has a single-domain Active Directory forest. The functional level of the domain is Windows Server 2008.
You perform the following activities.
Create a global distribution group.
Add users to the global distribution group.
Create a shared folder on a Windows Server 2008 member server.
Place the global distribution group in a domain local group that has access to the shared folder.
You need to ensure that the users have access to the shared folder.
What should you do()
A.Raise the forest functional level to Windows Server 2008.
B.Add the global distribution group to the Domain Administrators group.
C.Change the group type of the global distribution group to a security group.
D.Change the scope of the global distribution group to a Universal distribution group.
A.Delete the computer accounts for each domain controller in the child domain. Remove the trust relationship between the parent domain and the child domain.
B.Run the Dcpromo tool that has individual answer files on each domain controller in the child domain.
C.Run the Computer Management console to stop the Domain Controller service on both domain controllers in the child domain.
D.Use Server Manager on both domain controllers in the child domain to uninstall the Active Directory domain services role.
A.Decrease the cost between the connection objects.
B.Decrease the replication interval for all connection objects.
C.Decrease the replication interval for the DEFAUL TIPSITELINK object.
D.Decrease the replication schedule for the DEFAUL TIPSITELINK object.
A.From the command prompt, run netdom /reset.
B.From the command prompt, run dfsutil /addroot.sysvol.
C.Raise the functional level of the domain to Windows Server 2008.
D.From the command prompt, run dcpromo /unattend:unattendfile.xml
A.Raise the contoso.com forest functional level to Windows Server 2003 or Windows Server 2008.
B.Raise the contoso.com domain functional level to Windows Server 2003 or Windows Server 2008.
C.Add the new UPN suffix to the forest.
D.Change the Primary DNS Suffix option in the Default Domain Controllers Group Policy Object (GPO) to contoso.com.
A.RID master
B.PDC emulator
C.Schema master
D.Infrastructure master
E.Domain naming master
最新试题
You have an enterprise subordinate certification authority (CA). You have a custom certificate template that has a key length of 1,024 bits. The template is enabled for autoenrollment. You increase the template key length to 2,048 bits. You need to ensure that all current certificate holders automatically enroll for a certificate that uses the new template. Which console should you use()
You need to compact an Active Directory database on a domain controller that runs windows Server 2008 R2. What should you do()
You create a new Active Directory domain. The functional level of the domain is Windows Server 2008 R2. The domain contains five domain controllers. You need to monitor the replication of the group policy template files. Which tool should you use()
Your network contain 10 domain controller that run Windows Server R2. The network contain a member server that is configured to collect all of events that occur on the domain controllers. Your need to ensure that administrators are notified when a specific event occurs on any of the domain controllers. You want to achive the goal by using the minimum amount effort. What should you do()
You create a new Active Directory domain. The functional level of the domain is Windows Server 2003. The domain contains five domain controllers that run Windows Server 2008 R2. You need to monitor the replication of the group policy template files. Which tool should you use()
Your network contains an Active Directory domain named contoso.com. The domain contains five domain controllers.You add a logoff script to an existing Group Policy object (GPO). You need to verify that each domain controller successfully replicates the updated group policy. Which two objects should you verify on each domain controller()
Your network contains an Active Directory domain named contoso.com. Contoso.com contains a member server that runs Windows Serever 2008 Standart. You need to install an enterprise subordinate certification authority (CA) that support private key archival. You must achieve this goal by using the minimum amount of administrative effort.What do you do first()
What should you do()
Your network contains three Active Directory forest named Forest1, Forest2, and Forest3. Each forest contains three domains. A two-way forest trust exists between Forest1 and Forest2. A two-way forest trust exists between Forest2 and Forest3. You need to configure the forest to meet the following requirements Users in Forest3 must be able to access resources in Forest1. Users in Forest1 must be able to access resources in Forest3. The number of trusts must be minimized. What should you do()
Active Directory Rights Management Services (AD RMS) is deployed on your network. You need to configure AD RMS to use Kerberos authentication. Which two actions should you perform()