Your company has a main office and 50 branch offices. Each office contains multiple subnets.
You need to automate the creation of Active Directory subnet objects.
What should you use()
A.the Dsadd tool
B.the Netsh tool
C.the New-ADObject cmdlet
D.the New-Object cmdlet
您可能感兴趣的试卷
你可能感兴趣的试题
Your company has a main office and a branch office. The main office contains two domain controllers.
You create an Active Directory site named BranchOfficeSite.
You deploy a domain controller in the branch office, and then add the domain controller to the BranchOfficeSite site.
You discover that users in the branch office are randomly authenticated by either the domain controller in
the branch office or the domain controllers in the main office.
You need to ensure that the users in the branch office always attempt to authenticate to the domain controller in the branch office first.
What should you do()
A.Create organizational units (OUs).
B.Create Active Directory subnet objects.
C.Modify the slow link detection threshold.
D.Modify the Location attribute of the computer objects.
Your network contains two Active Directory forests. One forest contains two domains named contoso.com and na.contoso.com. The other forest contains a domain named nwtraders.com. A forest trust is configured between the two forests. You have a user named User1 in the na.contoso.com domain. User1 reports that he fails to log on to a computer in the nwtraders.com domain by using the user name NA\User1. Other users from na.contoso.com report that they can log on to the computers in the nwtraders.com domain. You need to ensure that User1 can log on to the computer in the nwtraders.com domain.
What should you do()
A.Enable selective authentication over the forest trust.
B.Create an external one-way trust from na.contoso.com to nwtraders.com.
C.Instruct User1 to log on to the computer by using his user principal name (UPN).
D.Instruct User1 to log on to the computer by using the user name nwtraders\User1.
Your network contains an Active Directory forest. The forest contains a single domain.
You want to access resources in a domain that is located in another forest.
You need to configure a trust between the domain in your forest and the domain in the other forest.
What should you create()
A.an incoming external trust
B.an incoming realm trust
C.an outgoing external trust
D.an outgoing realm trust
Your network contains an Active Directory domain named contoso.com. All domain controllers run Windows Server 2008 R2. The functional level of the domain is Windows Server 2008 R2. The functional level of the forest is Windows Server 2008.
You have a member server named Server1 that runs Windows Server 2008.
You need to ensure that you can add Server1 to contoso.com as a domain controller.
What should you run before you promote Server1()
A.dcpromo.exe /CreateDCAccount
B.dcpromo.exe /ReplicaOrNewDomain:replica
C.Set-ADDomainMode -Identity contoso.com -DomainMode Windows2008Domain
D.Set-ADForestMode -Identity contoso.com -ForestMode Windows2008R2Forest
You have a DNS zone that is stored in a custom application directory partition. You install a new domain controller.
You need to ensure that the custom application directory partition replicates to the new domain controller.
What should you use()
A.the Active Directory Administrative Center console
B.the Active Directory Sites and Services console
C.the DNS Manager console
D.the Dnscmd tool
Your network contains a single Active Directory forest. The forest contains two domains named contoso.com and sales.contoso.com. The domain controllers are configured as shown in the following table.
Server name Domain DNS zones hosted
DC1 contoso.com contoso.com DC2 contoso.com contoso.com
DC3 sales.contoso.com sales.contoso.com DC4
sales.contoso.com sales.contoso.com
All domain controllers run Windows Server 2008 R2. All zones are configured as Active Directory-integrated zones.
You need to ensure that contoso.com records are available on DC3.
Which command should you run()
A.dnscmd.exe DC1.contoso.com /ZoneChangeDirectoryPartition contoso.com /domain
B.dnscmd.exe DC1.contoso.com /ZoneChangeDirectoryPartition contoso.com /forest
C.dnscmd.exe DC3.contoso.com /ZoneChangeDirectoryPartition contoso.com /domain
D.dnscmd.exe DC3.contoso.com /ZoneChangeDirectoryPartition contoso.com /forest
Your network contains an Active Directory forest. The forest contains one domain and three sites.
Each site contains two domain controllers. All domain controllers are DNS servers. You create a new Active Directory-integrated zone.
You need to ensure that the new zone is replicated to the domain controllers in only one of the sites.
What should you do first()
A.Modify the NTDS Site Settings object for the site.
B.Modify the replication settings of the default site link.
C.Create an Active Directory connection object.
D.Create an Active Directory application directory partition.
Your network contains an Active Directory domain named contoso.com. The contoso.com DNS zoneis stored in Active Directory. All domain controllers run Windows Server 2008 R2.
You need to identify if all of the DNS records used for Active Directory replication are correctly registered.
What should you do()
A.From the command prompt, use netsh.exe.
B.From the command prompt, use dnslint.exe.
C.From the Active Directory Module for Windows PowerShell, run the Get-ADRootDSE cmdlet.
D.From the Active Directory Module for Windows PowerShell, run the Get-ADDomainController cmdlet.
Your network contains an Active Directory domain named contoso.com.You run nslookup.exe as shown in the following Command Prompt window. You need to ensure that you can use Nslookup to list all of the service location (SRV) resource records for contoso.com.
What should you modify()
A.the root hints of the DNS server
B.the security settings of the zone
C.the Windows Firewall settings on the DNS server
D.the zone transfer settings of the zone
Your network contains a single Active Directory domain named contoso.com. The domain contains two domain controllers named DC1 and DC2 that run Windows Server 2008 R2.
DC1 hosts a primary zone for contoso.com. DC2 hosts a secondary zone for contosto.com.
On DC1, you change the zone to an Active Directory-integrated zone and configure the zone to accept secure dynamic updates only.
You need to ensure that DC2 can accept secure dynamic updates to the contoso.com zone.
Which command should you run()
A.dnscmd.exe dc2.contoso.com /createdirectorypartition dns.contoso.com
B.dnscmd.exe dc2.contoso.com /zoneresettype contoso.com /dsprimary
C.dnslint.exe /ql
D.repadmin.exe /syncall /force
最新试题
You have an enterprise subordinate certification authority (CA). The CA is configured to use a hardware security module. You need to back up Active Directory Certificate Services on the CA. Which command should you run()
You have an enterprise subordinate certification authority (CA). You have a custom certificate template that has a key length of 1,024 bits. The template is enabled for autoenrollment. You increase the template key length to 2,048 bits. You need to ensure that all current certificate holders automatically enroll for a certificate that uses the new template. Which console should you use()
You create a new Active Directory domain. The functional level of the domain is Windows Server 2003. The domain contains five domain controllers that run Windows Server 2008 R2. You need to monitor the replication of the group policy template files. Which tool should you use()
Your network contains an Active Directory domain that contains five domain controllers. You have a management computer that runs Windows 7. From the Windows 7 computer, you need to view all account logon failures that occur in the domain. The information must be consolidated on one list. Which command should you run on each domain controller()
Your network contains an Active Directory forest. The forest contains an Acitve Directory site for a remote office. The remote site contains a read-only domain controller (RODC). You need to configure the RODC to store only the password of users in the remote site. What should you do()
Your network contains an Active Directory domain named contoso.com. The domain contains five domain controllers.You add a logoff script to an existing Group Policy object (GPO). You need to verify that each domain controller successfully replicates the updated group policy. Which two objects should you verify on each domain controller()
You have Active Directory Certificate Services (AD CS) deployed. You create a custom certificate template. You need to ensure that all of the users in the domain automatically enroll for a certificate based on the custom certificate template. Which two actions should you perform()
You remotely monitor several domain controllers. You run winrm.exe quickconfig on each domain controller. You need to create a WMI script query to retrieve information from the bios of each domain controller. Which format should you use to write the query()
Your network contains an Active Directory domain named contoso.com. Contoso.com contains three servers.The servers are configure as shown in the following table. Server name Server roel Service Server1 Certification authority (CA) Server2 Certificate Enrollment Web Service Server3 Certificate Enrollment Policy Web Service You need to ensure that users can manually enroll and renew their certificates by using the Certificate Enrollment Web Service. Which two actions should you perform()
Your network contains three Active Directory forest named Forest1, Forest2, and Forest3. Each forest contains three domains. A two-way forest trust exists between Forest1 and Forest2. A two-way forest trust exists between Forest2 and Forest3. You need to configure the forest to meet the following requirements Users in Forest3 must be able to access resources in Forest1. Users in Forest1 must be able to access resources in Forest3. The number of trusts must be minimized. What should you do()