Your network contains an Active Directory forest. The forest contains a single domain.
You want to access resources in a domain that is located in another forest.
You need to configure a trust between the domain in your forest and the domain in the other forest.
What should you create()
A.an incoming external trust
B.an incoming realm trust
C.an outgoing external trust
D.an outgoing realm trust
您可能感兴趣的试卷
你可能感兴趣的试题
Your network contains an Active Directory domain named contoso.com. All domain controllers run Windows Server 2008 R2. The functional level of the domain is Windows Server 2008 R2. The functional level of the forest is Windows Server 2008.
You have a member server named Server1 that runs Windows Server 2008.
You need to ensure that you can add Server1 to contoso.com as a domain controller.
What should you run before you promote Server1()
A.dcpromo.exe /CreateDCAccount
B.dcpromo.exe /ReplicaOrNewDomain:replica
C.Set-ADDomainMode -Identity contoso.com -DomainMode Windows2008Domain
D.Set-ADForestMode -Identity contoso.com -ForestMode Windows2008R2Forest
You have a DNS zone that is stored in a custom application directory partition. You install a new domain controller.
You need to ensure that the custom application directory partition replicates to the new domain controller.
What should you use()
A.the Active Directory Administrative Center console
B.the Active Directory Sites and Services console
C.the DNS Manager console
D.the Dnscmd tool
Your network contains a single Active Directory forest. The forest contains two domains named contoso.com and sales.contoso.com. The domain controllers are configured as shown in the following table.
Server name Domain DNS zones hosted
DC1 contoso.com contoso.com DC2 contoso.com contoso.com
DC3 sales.contoso.com sales.contoso.com DC4
sales.contoso.com sales.contoso.com
All domain controllers run Windows Server 2008 R2. All zones are configured as Active Directory-integrated zones.
You need to ensure that contoso.com records are available on DC3.
Which command should you run()
A.dnscmd.exe DC1.contoso.com /ZoneChangeDirectoryPartition contoso.com /domain
B.dnscmd.exe DC1.contoso.com /ZoneChangeDirectoryPartition contoso.com /forest
C.dnscmd.exe DC3.contoso.com /ZoneChangeDirectoryPartition contoso.com /domain
D.dnscmd.exe DC3.contoso.com /ZoneChangeDirectoryPartition contoso.com /forest
Your network contains an Active Directory forest. The forest contains one domain and three sites.
Each site contains two domain controllers. All domain controllers are DNS servers. You create a new Active Directory-integrated zone.
You need to ensure that the new zone is replicated to the domain controllers in only one of the sites.
What should you do first()
A.Modify the NTDS Site Settings object for the site.
B.Modify the replication settings of the default site link.
C.Create an Active Directory connection object.
D.Create an Active Directory application directory partition.
Your network contains an Active Directory domain named contoso.com. The contoso.com DNS zoneis stored in Active Directory. All domain controllers run Windows Server 2008 R2.
You need to identify if all of the DNS records used for Active Directory replication are correctly registered.
What should you do()
A.From the command prompt, use netsh.exe.
B.From the command prompt, use dnslint.exe.
C.From the Active Directory Module for Windows PowerShell, run the Get-ADRootDSE cmdlet.
D.From the Active Directory Module for Windows PowerShell, run the Get-ADDomainController cmdlet.
Your network contains an Active Directory domain named contoso.com.You run nslookup.exe as shown in the following Command Prompt window. You need to ensure that you can use Nslookup to list all of the service location (SRV) resource records for contoso.com.
What should you modify()
A.the root hints of the DNS server
B.the security settings of the zone
C.the Windows Firewall settings on the DNS server
D.the zone transfer settings of the zone
Your network contains a single Active Directory domain named contoso.com. The domain contains two domain controllers named DC1 and DC2 that run Windows Server 2008 R2.
DC1 hosts a primary zone for contoso.com. DC2 hosts a secondary zone for contosto.com.
On DC1, you change the zone to an Active Directory-integrated zone and configure the zone to accept secure dynamic updates only.
You need to ensure that DC2 can accept secure dynamic updates to the contoso.com zone.
Which command should you run()
A.dnscmd.exe dc2.contoso.com /createdirectorypartition dns.contoso.com
B.dnscmd.exe dc2.contoso.com /zoneresettype contoso.com /dsprimary
C.dnslint.exe /ql
D.repadmin.exe /syncall /force
Your network contains an Active Directory domain named contoso.com.
You plan to deploy a child domain named sales.contoso.com. The domain controllers in sales.contoso.com will be DNS servers for sales.contoso.com.
You need to ensure that users in contoso.com can connect to servers in sales.contoso.com by using fully qualified domain names (FQDNs).
What should you do()
A.Create a DNS forwarder.
B.Create a DNS delegation.
C.Configure root hint servers.
D.Configure an alternate DNS server on all client computers.
You need to force a domain controller to register all service location (SRV) resource records in DNS.
Which command should you run()
A.ipconfig.exe /registerdns
B.net.exe stop dnscache & net.exe start dnscache
C.net.exe stop netlogon & net.exe start netlogon
D.regsvr32.exe dnsrslvr.dll
Your network contains an Active Directory domain named contoso.com. You remove several computers from the network.
You need to ensure that the host (A) records for the removed computers are automatically deleted from the contoso.com DNS zone.
What should you do()
A.Configure dynamic updates.
B.Configure aging and scavenging.
C.Create a scheduled task that runs the Dnscmd /ClearCache command.
D.Create a scheduled task that runs the Dnscmd /ZoneReload contoso.com command.
最新试题
Your network contains an Active Directory domain. The domain contains 1000 user accounts. You have a list that contains the mobile phone number of each user You need to add the mobile number of each user to Active Directory. What should you do()
Your network contains an Active Directory forest. All domain controllers run Windows Server 2008 Standard. The functional level of the domain is Windows Server 2003. You have a certification authority (CA). The relevant servers in the domain are configured as shown in the following table: Server name Operating system Server role Server1 Windows Server 2003 Enterprise root CA Server2 Windows Server 2008 Enterprise subordinate CA Server3 Windows Server 2008 R2 Web Server You need to ensure that you can install the Active Directory Certificate Services (AD CS) Certificate Enrollment Web Service on the network. What should you do()
Your company has four offices. The network contains a single Active Directory domain. Each office has domain controller. Each office has an organitational unit (OU) that contains the user accounts for the users in that office. In each office, support technicians perform basic troubleshooting for the users in their respective office. You need to ensure that the support technicians can reset the password for the user accounts in their respective office only. The solution must prevent the thechnicians from creating user accounts. What shoul you do()
Your network contains an Active Directory domain named contoso.com. You have a management computer named Computer1 that runs Windows 7. You need to forward the logon events of all the domain controllers in contoso.com to Computer1. All new domain controllers must be dynamically added to the subscription. What should you do()
You have an enterprise subordinate certification authority (CA). You have a custom certificate template that has a key length of 1,024 bits. The template is enabled for autoenrollment. You increase the template key length to 2,048 bits. You need to ensure that all current certificate holders automatically enroll for a certificate that uses the new template. Which console should you use()
You have an enterprise subordinate certification authority (CA). You have a group named Group1. You need to allow members of Group1 to publish new certificate revocation lists. Members of Group1 must not be allowed to revoke certificates. What should you do()
Your network contains an Active Directory domain named contoso.com. The domain contains five domain controllers.You add a logoff script to an existing Group Policy object (GPO). You need to verify that each domain controller successfully replicates the updated group policy. Which two objects should you verify on each domain controller()
You need to receive an e-mail message whenever a domain user account is locked out. Which tool should you use()
Your network contains an Active Directory forest. The forest contains two domains. You have a standalone root certification authority (CA). On a server in the child domain, you run the Add Roles Wizard and discover that the option to select an enterprise CA is disabled. You need to install an enterprise subordinate CA on the server. What should you use to log on to the new server()
You create a new Active Directory domain. The functional level of the domain is Windows Server 2003. The domain contains five domain controllers that run Windows Server 2008 R2. You need to monitor the replication of the group policy template files. Which tool should you use()