A.在服务器上,存档的私钥
B.配置Hisecdc安全模板
C.撤销企业从属CA和问题用户证书加密文件的用户
D.配置存储加密文件的计算机自动enrollement
您可能感兴趣的试卷
你可能感兴趣的试题
A.更改本地计算机策略的企业根CA仅允许管理员管理受信任的发布。
B.发布的代码签名模板
C.更改模板的安全设置,只允许管理员请求代码签名证书
D.管理员之间分发代码签名模板,并要求他们将其添加到信任同行证书。
A.打开认证服务管理单元和配置审核
B.认证服务的服务器的本地安全策略中启用和配置审核对象访问“设置
C.配置认证服务的服务器,以记录成功和失败的企图改变权限的文件在%SYSTEM32%\ CertSrv目录
D.打开认证服务管理单元和配置安全设置的审核
A.在S1上,配置机构信息访问(AIA)扩展
B.配置CertPublishers组S1和S2
C.配置双证书列表扩展上S1和S2
D.创建一个传统的组策略对象(GPO)和进口企业根CA证书。 GPO链接到S1
E.以上都不是
A.添加Active Directory证书服务(AD CS)的作用。
B.添加Web服务器(IIS)角色和AD LDS的作用。
C.添加DNS服务器的作用。
D.将服务器加入到域。
A.配置在成员服务器上的证书颁发机构Web注册角色服务。
B.成员服务器上配置联机响应程序角色服务。
C.配置域控制器上的证书颁发机构Web注册角色服务。
D.在域控制器上配置联机响应程序角色服务。
A.限制智能卡登录证书注册代理帐户操作员组。
B.安装ad cs角色,并配置它作为一个独立的ca。
C.限制帐户操作员组的智能卡登录证书证书经理。
D.安装ad cs角色和配置企业根ca。
E.创建一个注册代理证书。
F.创建一个智能卡登录证书。
A.通过访问“ADSI编辑”管理单元中创建的AD LDS应用程序目录分区的组织单位
B.执行DSMOD的OU
C.使用的Active Directory用户和计算机管理单元中的AD LDS应用程序目录分区创建的组织单位。
D.执行dsadd ou命令创建组织单位
A.打开Ntdsutil实用工具中的文件选项,Ntds.dit文件移动到新卷
B.Ntds.dit文件移动到新卷上使用复制粘贴功能在Windows电源外壳
C.使用Windows命令XCOPY命令提示符Ntds.dit文件移动到新卷
D.使用Windows资源管理Ntds.dit文件移动到新卷。
Certkiller.COM服务器运行Windows Server 2008。它有一个Active Directory域。名为CK4服务器文件服务角色安装。你安装一些额外的存储磁盘。在布展所示的磁盘配置。为了支持剥离带奇偶校验的数据,你必须创建一个新的驱动器卷。要达到这个目标,你应该怎么做呢()
A.建立一个新的跨区卷,结合Disk0上,并为Disk1
B.加入另一个磁盘创建一个新的RAID - 5卷
C.创建一个新的虚拟卷相结合的磁盘1和磁盘2
D.建立一个新的带区卷,结合Disk0上和磁盘2
A.Ntdsutil
B.WBADMIN
C.RacAgent
D.REGSVR 32
最新试题
Your network contains an Active Directory domain. All domain controller run Windows Server 2003. You replace all domain controllers with domain controllers that run Windows Server 2008 R2. You raise the functional level of the domain to Windows Server 2008 R2. You need to minimize the amount of SYSVOL replication traffic on the network. What should you do()
Your network contains an Active Directory forest. The forest contains two domain controllers. The domain controllers are configured as shown in the following table. All client computers run Windows 7. You need to ensure that all client computers in the domain keep the same time as an external time server. What should you do()
You have Active Directory Certificate Services (AD CS) deployed. You create a custom certificate template. You need to ensure that all of the users in the domain automatically enroll for a certificate based on the custom certificate template. Which two actions should you perform()
Your network contain 10 domain controller that run Windows Server R2. The network contain a member server that is configured to collect all of events that occur on the domain controllers. Your need to ensure that administrators are notified when a specific event occurs on any of the domain controllers. You want to achive the goal by using the minimum amount effort. What should you do()
Your network contains an Active Directory forest. The forest contains two domains. You have a standalone root certification authority (CA). On a server in the child domain, you run the Add Roles Wizard and discover that the option to select an enterprise CA is disabled. You need to install an enterprise subordinate CA on the server. What should you use to log on to the new server()
You have an enterprise subordinate certification authority (CA). You have a custom certificate template that has a key length of 1,024 bits. The template is enabled for autoenrollment. You increase the template key length to 2,048 bits. You need to ensure that all current certificate holders automatically enroll for a certificate that uses the new template. Which console should you use()
You create a new Active Directory domain. The functional level of the domain is Windows Server 2003. The domain contains five domain controllers that run Windows Server 2008 R2. You need to monitor the replication of the group policy template files. Which tool should you use()
Your network contains an Active Directory domain controller named DC1. DDC1 runs Windows Server 2008 R2. You need to defragment the Active Directory database on DC1. The solution must minimize downtime on DC1. What should you do first()
You need to compact an Active Directory database on a domain controller that runs windows Server 2008 R2. What should you do()
You need to receive an e-mail message whenever a domain user account is locked out. Which tool should you use()