Certkiller .com has a main office and branch office in another city. You are assigned to deploy and implement a Read-only Domain Controller (RODC) at the branch office. You deploy a RODC that runs Windows Server 2008.
What should you do to ensure that the users at the branch office can log on to the domain using RODC()
A.Use Password Replication Policy on the RODC
B.Add RODC to the main office
C.Deploy and configure a new bridgehead server in the branch office
D.Deploy and configure a Password Replication Policy on the RODC in the main office
您可能感兴趣的试卷
你可能感兴趣的试题
A.Open the Microsoft Management Console (MMC) and stop the Domain Controller service. After that,run the defrag tool
B.Start the domain controller in the Directory Service restore mode and run the Ntdsutil tool
C.Start the domain controller and then use the Defrag tool to start defragmentation
D.Open the MMC and stop the Domain Controller service. After that, run the Ntdsutil tool.
E.All of the above
Certkiller .com has a domain controller that runs Windows Server 2008. The Certkiller .com network boosts 40 Windows Vista client machines. As an administrator at Certkiller .com, you want to deploy Active Directory Certificate service (AD CS) to authorize the network users by issuing digital certificates.
What should you do to manage certificate settings on all machines in a domain from one main location()
A.Configure Enterprise CA certificate settings
B.Configure Enterprise trust certificate settings
C.Configure Advance CA certificate settings
D.Configure Group Policy certificate settings
E.All of the above
A.RID master
B.PDC emulator
C.Schema master
D.Infrastructure master
E.Domain naming master
A.RID master
B.PDC emulator
C.Schema master
D.Infrastructure master
E.Domain naming master
A.在服务器上,存档的私钥
B.配置Hisecdc安全模板
C.撤销企业从属CA和问题用户证书加密文件的用户
D.配置存储加密文件的计算机自动enrollement
A.更改本地计算机策略的企业根CA仅允许管理员管理受信任的发布。
B.发布的代码签名模板
C.更改模板的安全设置,只允许管理员请求代码签名证书
D.管理员之间分发代码签名模板,并要求他们将其添加到信任同行证书。
A.打开认证服务管理单元和配置审核
B.认证服务的服务器的本地安全策略中启用和配置审核对象访问“设置
C.配置认证服务的服务器,以记录成功和失败的企图改变权限的文件在%SYSTEM32%\ CertSrv目录
D.打开认证服务管理单元和配置安全设置的审核
A.在S1上,配置机构信息访问(AIA)扩展
B.配置CertPublishers组S1和S2
C.配置双证书列表扩展上S1和S2
D.创建一个传统的组策略对象(GPO)和进口企业根CA证书。 GPO链接到S1
E.以上都不是
A.添加Active Directory证书服务(AD CS)的作用。
B.添加Web服务器(IIS)角色和AD LDS的作用。
C.添加DNS服务器的作用。
D.将服务器加入到域。
A.配置在成员服务器上的证书颁发机构Web注册角色服务。
B.成员服务器上配置联机响应程序角色服务。
C.配置域控制器上的证书颁发机构Web注册角色服务。
D.在域控制器上配置联机响应程序角色服务。
最新试题
Your network contains an Active Directory forest. The forest contains two domains. You have a standalone root certification authority (CA). On a server in the child domain, you run the Add Roles Wizard and discover that the option to select an enterprise CA is disabled. You need to install an enterprise subordinate CA on the server. What should you use to log on to the new server()
You remotely monitor several domain controllers. You run winrm.exe quickconfig on each domain controller. You need to create a WMI script query to retrieve information from the bios of each domain controller. Which format should you use to write the query()
Your network contains an Active Directory domain named contoso.com. The domain contains five domain controllers.You add a logoff script to an existing Group Policy object (GPO). You need to verify that each domain controller successfully replicates the updated group policy. Which two objects should you verify on each domain controller()
You create a new Active Directory domain. The functional level of the domain is Windows Server 2008 R2. The domain contains five domain controllers. You need to monitor the replication of the group policy template files. Which tool should you use()
Active Directory Rights Management Services (AD RMS) is deployed on your network. You need to configure AD RMS to use Kerberos authentication. Which two actions should you perform()
Your network contains an Active Directory domain that has two sites. You need to identify whether logon scripts are replicated to all domain controllers. Which folder should you verify()
Your network contains an Active Directory domain. A user named User1 takes a leave of absence for one year. You need to restrict access to the User1 user account while User1 is away. What should you do()
You install a standalone root certification authority (CA) on a server named Server1. You need to ensure that every computer in the forest has a copy of the root CA certificate installed in the local computer’s Trusted Root Certification Authorities store. Which command should you run on Server1()
Your network contains an Active Directory domain named contoso.com. You have a management computer named Computer1 that runs Windows 7. You need to forward the logon events of all the domain controllers in contoso.com to Computer1. All new domain controllers must be dynamically added to the subscription. What should you do()
Your network contains an Active Directory domain named contoso.com. Contoso.com contains three servers.The servers are configure as shown in the following table. Server name Server roel Service Server1 Certification authority (CA) Server2 Certificate Enrollment Web Service Server3 Certificate Enrollment Policy Web Service You need to ensure that users can manually enroll and renew their certificates by using the Certificate Enrollment Web Service. Which two actions should you perform()