ertkiller.COM有一个名为Sales的组织单位的Active Directory域。
这个组织单位举办两个全球安全组名为“销售总监和销售主管。 Certkiller已指示你到桌面的限制,以“销售经理”组。然而,在桌面上的限制不应适用于销售集团。您创建一个GPO命名的桌面锁定,并链接到销售的组织单位。下一步你应该怎么做呢()
A.销售总监拒绝应用组策略上的DesktopLockdown GPO的权限设置
B.销售人员拒绝对DesktopLockdown GPO的权限应用组策略设置
C.设置允许本地域中的用户DesktopLockdown的GPO应用组策略权限
D.允许身份验证的用户应用组策略权限设置 DesktopLockdown的GPO
您可能感兴趣的试卷
你可能感兴趣的试题
A.执行Active Directory的诊断数据收集器设置Active Directory的报告
B.打开资源监视器和审查的性能数据
C.运行局域网的诊断数据收集器集。查看局域网的诊断报告。
D.审查的硬件事件,在事件查看器日志。
作为Certkiller。COM管理员,
你创建了200个新的用户帐户。位于6个不同的地点的用户。用户报告说,当他们尝试登录时,他们会收到以下错误消息: “用户名或密码不正确”
您确认,存在的用户帐户和启用。您还确认用户名和密码是正确的。你必须认同这种故障的原因。您还需要确保新用户能够登录使用他们的帐户。来实现这个任务,你应该怎么做呢()
A.REPADMIN
B.Rsdiag
C.Active Directory域和信任关系
D.Rstools
Certkiller.COM运行Windows Server 2008 Active Directory域。用户试图登录到域从客户端计算机使用其帐户。他收到以下消息:
“此帐户已过期,请与管理员联系,以重新激活该帐户,”你应该怎么做,以确保用户能够登录到域,用他的帐户()
A.打开用户帐户的属性和更改选项为“永不过期”
B.打开用户帐户的属性和延长登录时间设置
C.打开用户帐户的属性和修改默认的域策略,以减少帐户锁定时间。
D.更改密码“选项,在用户帐户属性为永不过期
A.访问默认域控制器策略中启用审核目录服务访问“设置和目录服务的变化
B.禁用审核帐户管理政策,并再次启用它
C.执行auditpol.exe和配置在域控制器组织单位的安全设置
D.执行Audipol.exe和禁用默认域策略
E.以上都不是
A.Disjoin域中的计算机,并重新加入到域。重置计算机帐户
B.删除计算机帐户的组织单位,然后再添加帐户
C.在电脑上执行netsh命令和设置本机的选项
D.执行netsh的信任/复位命令,并再次将计算机加入到域。
E.以上都不是
A.注册Schmmgmt.dll
B.使用Schema Administrators组的成员帐户,注销并再次登录
C.添加到域控制器的Active Directory轻型目录服务(AD LDS)中的作用
D.执行Ntdsutil.exe命令连接到架构主机操作主机。
A.使用网络负载平衡群集控制台创建一个TCP端口80的新规则
B.运行的WLBS群集节点上禁用的命令
C.使用NLB群集控制台分配一个独特的端口规则为NLB群集
D.通过网络负载平衡群集控制台中删除默认端口规则
A.添加一个新的帐户存储和配置
B.添加新的资源合作伙伴,并对其进行配置
C.添加新的资源存储和配置
D.添加新的管理员帐户和配置AD FS的
E.以上都不是
A.转到服务选项卡,检查活动目录联合服务运行。
B.在事件查看器,应用,事件ID列事件看编号674。
C.打开一个浏览器窗口,然后键入新的联邦服务器的联邦服务URL。
D.以上都不对
最新试题
Your network contains an Active Directory forest. All domain controllers run Windows Server 2008 Standard. The functional level of the domain is Windows Server 2003. You have a certification authority (CA). The relevant servers in the domain are configured as shown in the following table: Server name Operating system Server role Server1 Windows Server 2003 Enterprise root CA Server2 Windows Server 2008 Enterprise subordinate CA Server3 Windows Server 2008 R2 Web Server You need to ensure that you can install the Active Directory Certificate Services (AD CS) Certificate Enrollment Web Service on the network. What should you do()
Your network contain 10 domain controller that run Windows Server R2. The network contain a member server that is configured to collect all of events that occur on the domain controllers. Your need to ensure that administrators are notified when a specific event occurs on any of the domain controllers. You want to achive the goal by using the minimum amount effort. What should you do()
Your network contains three Active Directory forest named Forest1, Forest2, and Forest3. Each forest contains three domains. A two-way forest trust exists between Forest1 and Forest2. A two-way forest trust exists between Forest2 and Forest3. You need to configure the forest to meet the following requirements Users in Forest3 must be able to access resources in Forest1. Users in Forest1 must be able to access resources in Forest3. The number of trusts must be minimized. What should you do()
What should you do()
You have an enterprise subordinate certification authority (CA) configured for key archival. Three key recovery agent certificates are issued. The CA is configured to use two recovery agents. You need to ensure that all of the recovery agent certificates can be used to recover all new private keys. What should you do()
Your network contains two Active Directory forests named contoso.com and nwtraders.com. A two-way forest trust exists between contoso.com and nwtraders.com. The forest trust is configured to use selective authentication. Contoso.com contains a server named Server1. Server1 contains a shared folder named Marketing. Nwtraders.com contains a global group named G_Marketing. The Change share permission and the Modify NTFS permissions for the Marketing folder are assignes to the G_Marketing group. Members of G_Marketing report that they cannot accesss the Marketing folder. You need to ensure that the G_Marketing members can accesss the folder from the network. What should you do()
Your network contains an Active Directory domain named contoso.com. Contoso.com contains three servers.The servers are configure as shown in the following table. Server name Server roel Service Server1 Certification authority (CA) Server2 Certificate Enrollment Web Service Server3 Certificate Enrollment Policy Web Service You need to ensure that users can manually enroll and renew their certificates by using the Certificate Enrollment Web Service. Which two actions should you perform()
You have an enterprise subordinate certification authority (CA). You have a custom certificate template that has a key length of 1,024 bits. The template is enabled for autoenrollment. You increase the template key length to 2,048 bits. You need to ensure that all current certificate holders automatically enroll for a certificate that uses the new template. Which console should you use()
You install a standalone root certification authority (CA) on a server named Server1. You need to ensure that every computer in the forest has a copy of the root CA certificate installed in the local computer’s Trusted Root Certification Authorities store. Which command should you run on Server1()
Your network contains an Active Directory forest. The forest contains two domain controllers. The domain controllers are configured as shown in the following table. All client computers run Windows 7. You need to ensure that all client computers in the domain keep the same time as an external time server. What should you do()