单项选择题

Your company has a main office and a branch office.  The network contains an Active Directory domain.  
The main office contains a writable domain controller named DC1. The branch office contains a read-only  domain controller (RODC) named DC2.  
You discover that the password of an administrator named Admin1 is cached on DC2.  You need to prevent Admin1s password from being cached on DC2.  
What should you do()

A.Modify the NTDS Site Settings.
B.Modify the properties of the domain.
C.Create a Password Setting object (PSO).
D.Modify the properties of DC2s computer account.


您可能感兴趣的试卷

你可能感兴趣的试题

3.单项选择题

Your company has a main office and a branch office. The branch office contains a read-only domain  controller named RODC1. 
You need to ensure that a user named Admin1 can install updates on RODC1. The solution must prevent  Admin1 from logging on to other domain controllers.  
What should you do()

A.Run ntdsutil.exe and use the Roles option.
B.Run dsmgmt.exe and use the Local Roles option.
C.From Active Directory Sites and Services, modify the NTDS Site Settings.
D.From Active Directory Users and Computers, add the user to the Server Operators group.

4.单项选择题

Your network contains an Active Directory Rights Management Services (AD RMS) cluster.  
You have several custom policy templates. The custom policy templates are updated frequently.  
Some users report that it takes as many as 30 days to receive the updated policy templates.  
You need to ensure that users receive the updated custom policy templates within seven days.  
What should you do()

A.Modify the registry on the AD RMS servers.
B.Modify the registry on the users   computers.
C.Change the schedule of the AD RMS Rights Policy Template Management (Manual) scheduled task.
D.Change the schedule of the AD RMS Rights Policy Template Management (Automated) scheduled  task.

6.单项选择题

Active Directory Rights Management Services (AD RMS) is deployed on your network.  Users who have Windows Mobile 6 devices report that they cannot access documents that areprotected  by AD RMS.  You need to ensure that all users can access AD RMS protected content by using Windows Mobile 6  devices.  
What should you do()

A.Modify the security of the ServerCertification.asmx file.
B.Modify the security of the MobileDeviceCertification.asmx file.
C.Enable anonymous authentication for the _wmcs virtual directory.
D.Enable anonymous authentication for the certification virtual directory.

7.单项选择题

Your network contains an Active Directory domain named contoso.com. The network contains client computers that run either Windows Vista or Windows 7. 
Active Directory Rights Management Services  (AD RMS) is deployed on the network.  
You create a new AD RMS template that is distributed by using the AD RMS pipeline. The template is  updated every month.  
You need to ensure that all the computers can use the most up-to-date version of the AD RMS template.  
You want to achieve this goal by using the minimum amount of administrative effort.  
What should you do()

A.Upgrade all of the Windows Vista computers to Windows 7.
B.Upgrade all of the Windows Vista computers to Windows Vista Service Pack 2 (SP2).
C.Assign the Microsoft Windows Rights Management Services (RMS) Client Service Pack 2 (SP2) to all  users by using a Software Installation extension of Group Policy.
D.Assign the Microsoft Windows Rights Management Services (RMS) Client Service Pack 2 (SP2) to all  computers by using a Software Installation extension of Group Policy.

10.单项选择题

Your network contains an Active Directory domain. The domain contains a server named Server1.  
Server1 runs Windows Server 2008 R2.  
You need to mount an Active Directory Lightweight Directory Services (AD LDS) snapshot from Server1.  
What should you do()

A.Run ldp.exe and use the Bind option.
B.Run diskpart.exe and use the Attach option.
C.Run dsdbutil.exe and use the snapshot option.
D.Run imagex.exe and specify the /mount parameter.

最新试题

Your network contains two Active Directory forests named contoso.com and    nwtraders.com. A  two-way forest trust exists between contoso.com and nwtraders.com. The forest trust is  configured to use selective authentication.  Contoso.com contains a server named Server1. Server1 contains a shared folder named  Marketing. Nwtraders.com contains a global group named G_Marketing. The Change share  permission and the Modify NTFS permissions for the Marketing folder are assignes to the  G_Marketing group.  Members of G_Marketing report that they cannot accesss the Marketing folder.  You need to ensure that the G_Marketing members can accesss the folder from the network.    What should you do()

题型:单项选择题

You have an enterprise subordinate certification authority (CA) configured for key archival. Three  key recovery agent certificates are issued.  The CA is configured to use two recovery agents.    You need to ensure that all of the recovery agent certificates can be used to recover all new  private keys.    What should you do()

题型:单项选择题

Your network contains an Active Directory domain that has two sites.    You need to identify whether logon scripts are replicated to all domain controllers.    Which folder should you verify()

题型:单项选择题

You have an enterprise subordinate certification authority (CA). You have a group named  Group1.    You need to allow members of Group1 to publish new certificate revocation lists. Members of  Group1 must not be allowed to revoke certificates.    What should you do()

题型:单项选择题

Your network contains an Active Directory forest. All domain controllers run Windows Server  2008 Standard. The functional level of the domain is Windows Server 2003. You have a  certification authority (CA).  The relevant servers in the domain are configured as shown in the following table:    Server name  Operating system  Server role  Server1  Windows Server 2003  Enterprise root CA  Server2  Windows Server 2008  Enterprise subordinate CA  Server3  Windows Server 2008 R2  Web Server  You need to ensure that you can install the Active Directory Certificate Services (AD CS)  Certificate Enrollment Web Service on the network.    What should you do()

题型:单项选择题

Your network contain 10 domain controller that run Windows Server    R2.  The network contain a member server that is configured to collect all of events that occur on the  domain controllers.  Your need to ensure that administrators are notified when a specific event occurs on any of the  domain controllers. You want to achive the goal by using the minimum amount effort.  What should you do()

题型:单项选择题

Your network contains an Active Directory forest. The forest contains an Acitve Directory site for a  remote office. The remote site contains a read-only domain controller (RODC).    You need to configure the RODC to store only the password of users in the remote site.    What should you do()

题型:单项选择题

Your network contains an Active Directory domain named contoso.com. You have a management  computer named Computer1 that runs Windows 7.    You need to forward the logon events of all the domain controllers in contoso.com to Computer1.    All new domain controllers must be dynamically added to the subscription.  What should you do()

题型:单项选择题

Active Directory Rights Management Services (AD RMS) is deployed on your network.    You need to configure AD RMS to use Kerberos authentication.  Which two actions should you perform()

题型:多项选择题

You remotely monitor several domain controllers.  You run winrm.exe quickconfig on each domain controller. You need to create a WMI script query  to retrieve information from the bios of each domain controller.    Which format should you use to write the query()

题型:单项选择题