A.RID master
B.PDC emulator
C.Schema master
D.Infrastructure master
E.Domain naming master
您可能感兴趣的试卷
你可能感兴趣的试题
A.RID master
B.PDC emulator
C.Schema master
D.Infrastructure master
E.Domain naming master
A.在服务器上,存档的私钥
B.配置Hisecdc安全模板
C.撤销企业从属CA和问题用户证书加密文件的用户
D.配置存储加密文件的计算机自动enrollement
A.更改本地计算机策略的企业根CA仅允许管理员管理受信任的发布。
B.发布的代码签名模板
C.更改模板的安全设置,只允许管理员请求代码签名证书
D.管理员之间分发代码签名模板,并要求他们将其添加到信任同行证书。
A.打开认证服务管理单元和配置审核
B.认证服务的服务器的本地安全策略中启用和配置审核对象访问“设置
C.配置认证服务的服务器,以记录成功和失败的企图改变权限的文件在%SYSTEM32%\ CertSrv目录
D.打开认证服务管理单元和配置安全设置的审核
A.在S1上,配置机构信息访问(AIA)扩展
B.配置CertPublishers组S1和S2
C.配置双证书列表扩展上S1和S2
D.创建一个传统的组策略对象(GPO)和进口企业根CA证书。 GPO链接到S1
E.以上都不是
A.添加Active Directory证书服务(AD CS)的作用。
B.添加Web服务器(IIS)角色和AD LDS的作用。
C.添加DNS服务器的作用。
D.将服务器加入到域。
A.配置在成员服务器上的证书颁发机构Web注册角色服务。
B.成员服务器上配置联机响应程序角色服务。
C.配置域控制器上的证书颁发机构Web注册角色服务。
D.在域控制器上配置联机响应程序角色服务。
A.限制智能卡登录证书注册代理帐户操作员组。
B.安装ad cs角色,并配置它作为一个独立的ca。
C.限制帐户操作员组的智能卡登录证书证书经理。
D.安装ad cs角色和配置企业根ca。
E.创建一个注册代理证书。
F.创建一个智能卡登录证书。
A.通过访问“ADSI编辑”管理单元中创建的AD LDS应用程序目录分区的组织单位
B.执行DSMOD的OU
C.使用的Active Directory用户和计算机管理单元中的AD LDS应用程序目录分区创建的组织单位。
D.执行dsadd ou命令创建组织单位
A.打开Ntdsutil实用工具中的文件选项,Ntds.dit文件移动到新卷
B.Ntds.dit文件移动到新卷上使用复制粘贴功能在Windows电源外壳
C.使用Windows命令XCOPY命令提示符Ntds.dit文件移动到新卷
D.使用Windows资源管理Ntds.dit文件移动到新卷。
最新试题
Your network contains an Active Directory domain. The domain contains 1000 user accounts. You have a list that contains the mobile phone number of each user You need to add the mobile number of each user to Active Directory. What should you do()
Your network contains an Active Directory domain named contoso.com. Contoso.com contains a member server that runs Windows Serever 2008 Standart. You need to install an enterprise subordinate certification authority (CA) that support private key archival. You must achieve this goal by using the minimum amount of administrative effort.What do you do first()
You have Active Directory Certificate Services (AD CS) deployed. You create a custom certificate template. You need to ensure that all of the users in the domain automatically enroll for a certificate based on the custom certificate template. Which two actions should you perform()
Active Directory Rights Management Services (AD RMS) is deployed on your network. You need to configure AD RMS to use Kerberos authentication. Which two actions should you perform()
Your network contains an Active Directory domain. The domain contains a group named Group1. The minimum password lenght for the domain is set to six characters. you need to ensure that the passwords for all users in Group1 are at least 10 characters long. All other users must be able to use passwords that are six characters long. What should you do first()
Your company has four offices. The network contains a single Active Directory domain. Each office has domain controller. Each office has an organitational unit (OU) that contains the user accounts for the users in that office. In each office, support technicians perform basic troubleshooting for the users in their respective office. You need to ensure that the support technicians can reset the password for the user accounts in their respective office only. The solution must prevent the thechnicians from creating user accounts. What shoul you do()
Your network contain 10 domain controller that run Windows Server R2. The network contain a member server that is configured to collect all of events that occur on the domain controllers. Your need to ensure that administrators are notified when a specific event occurs on any of the domain controllers. You want to achive the goal by using the minimum amount effort. What should you do()
You install a standalone root certification authority (CA) on a server named Server1. You need to ensure that every computer in the forest has a copy of the root CA certificate installed in the local computer’s Trusted Root Certification Authorities store. Which command should you run on Server1()
Your network contains two Active Directory forests named contoso.com and nwtraders.com. A two-way forest trust exists between contoso.com and nwtraders.com. The forest trust is configured to use selective authentication. Contoso.com contains a server named Server1. Server1 contains a shared folder named Marketing. Nwtraders.com contains a global group named G_Marketing. The Change share permission and the Modify NTFS permissions for the Marketing folder are assignes to the G_Marketing group. Members of G_Marketing report that they cannot accesss the Marketing folder. You need to ensure that the G_Marketing members can accesss the folder from the network. What should you do()
You remotely monitor several domain controllers. You run winrm.exe quickconfig on each domain controller. You need to create a WMI script query to retrieve information from the bios of each domain controller. Which format should you use to write the query()