Your network contains an Active Directory forest.
You set the Windows PowerShell execution policy to allow unsigned scripts on a domain controller in the network.
You create a Windows PowerShell script named new-users.ps1 that contains the following lines: new-aduser user1 new-aduser user2 new-aduser user3 new-aduser user4 new-aduser user5 On the domain controller, you double-click the script and the script runs. You discover that the script fails to create the user accounts.
You need to ensure that the script creates the user accounts.
Which cmdlet should you add to the script()
A.Import-Module
B.Register-ObjectEvent
C.Set-ADDomain
D.Set-ADUser
您可能感兴趣的试卷
你可能感兴趣的试题
Your network contains two servers named Server1 and Server2 that run Windows Server 2008 R2.
Server1 has Active Directory Federation Services (AD FS) 2.0 installed.
Server1 is a member of an AD FS farm. The AD FS farm is configured to use a configuration database that is stored on a separate Microsoft SQL Server.
You install AD FS 2.0 on Server2.
You need to add Server2 to the existing AD FS farm.
What should you do()
A.On Server1, run fsconfig.exe.
B.On Server1, run fsconfigwizard.exe.
C.On Server2, run fsconfig.exe.
D.On Server2, run fsconfigwizard.exe.
Your network contains two servers named Server1 and Server2 that run Windows Server 2008 R2.
Server1 has the Active Directory Federation Services (AD FS) Federation Service role service installed.
You plan to deploy AD FS 2.0 on Server2.
You need to export the token-signing certificate from Server1, and then import the certificate to Server2.
Which format should you use to export the certificate()
A.Base-64 encoded X.509 (.cer)
B.Cryptographic Message Syntax Standard PKCS #7 (.p7b)
C.DER encoded binary X.509 (.cer)
D.Personal Information Exchange PKCS #12 (.pfx)
Your network contains an Active Directory domain named contoso.com. The domain contains a
server named Server1. The Active Directory Federation Services (AD FS) role is installed on Server1.
Contoso.com is defined as an account store.
A partner company has a Web-based application that uses AD FS authentication. The partner company plans to provide users from contoso.com access to the Web application.
You need to configure AD FS on contoso.com to allow contoso.com users to be authenticated by the
partner company.
What should you create on Server1()
A.a new application
B.a resource partner
C.an account partner
D.an organization claim
Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1. Server1 has the Active Directory Federation Services (AD FS) role installed.
You have an application named App1 that is configured to use Server1 for AD FS authentication.
You deploy a new server named Server2. Server2 is configured as an AD FS 2.0 server.
You need to ensure that App1 can use Server2 for authentication.
What should you do on Server2()
A.Add an attribute store.
B.Create a relying party trust.
C.Create a claims provider trust.
D.Create a relaying provider trust.
You deploy a new Active Directory Federation Services (AD FS) federation server.
You request new certificates for the AD FS federation server.
You need to ensure that the AD FS federation server can use the new certificates.
To which certificate store should you import the certificates()
A.Computer
B.IIS Admin Service service account
C.Local Administrator
D.World Wide Web Publishing Service service account
You deploy an Active Directory Federation Services (AD FS) Federation Service Proxy on a server named Server1.
You need to configure the Windows Firewall on Server1 to allow external users to authenticate by using AD FS.
Which inbound TCP port should you allow on Server1()
A.88
B.135
C.443
D.445
Your network contains a single Active Directory domain. The domain contains five read-only domain
controllers (RODCs) and five writable domain controllers. All servers run Windows Server 2008.
You plan to install a new RODC that runs Windows Server 2008 R2.
You need to ensure that you can add the new RODC to the domain. You want to achieve this goal by using the minimum amount of administrative effort.
Which two actions should you perform()
A.At the command prompt, run adprep.exe /rodcprep.
B.At the command prompt, run adprep.exe /forestprep.
C.At the command prompt, run adprep.exe /domainprep.
D.From Active Directory Domains and Trusts, raise the functional level of the domain.
E.From Active Directory Users and Computers, pre-stage the RODC computer account.
Your company has a main office and a branch office. The branch office has an Active Directory site that contains a read-only domain controller (RODC).
A user from the branch office reports that his account is locked out.
From a writable domain controller in the main office, you discover that the users account is not locked out.
You need to ensure that the user can log on to the domain.
What should you do()
A.Modify the Password Replication Policy.
B.Reset the password of the user account.
C.Run the Knowledge Consistency Checker (KCC) on the RODC.
D.Restore network communication between the branch office and the main office.
Your network contains an Active Directory domain named contoso.com.
The network has a branch office site that contains a read-only domain controller (RODC) named RODC1.
RODC1 runs Windows Server 2008 R2.
A user named User1 logs on to a computer in the branch office site.
You discover that the password of User1 is not stored on RODC1.
You need to ensure that User1’s password is stored on RODC1.
What should you modify()
A.the Member Of properties of RODC1
B.the Member Of properties of User1
C.the Security properties of RODC1
D.the Security properties of User1
Your company has a main office and a branch office. The network contains an Active Directory domain.
The main office contains a writable domain controller named DC1. The branch office contains a read-only domain controller (RODC) named DC2.
You discover that the password of an administrator named Admin1 is cached on DC2. You need to prevent Admin1s password from being cached on DC2.
What should you do()
A.Modify the NTDS Site Settings.
B.Modify the properties of the domain.
C.Create a Password Setting object (PSO).
D.Modify the properties of DC2s computer account.
最新试题
You need to compact an Active Directory database on a domain controller that runs windows Server 2008 R2. What should you do()
Your network contains an Active Directory domain that contains five domain controllers. You have a management computer that runs Windows 7. From the Windows 7 computer, you need to view all account logon failures that occur in the domain. The information must be consolidated on one list. Which command should you run on each domain controller()
You have an enterprise subordinate certification authority (CA). The CA is configured to use a hardware security module. You need to back up Active Directory Certificate Services on the CA. Which command should you run()
You have an enterprise subordinate certification authority (CA). You have a custom certificate template that has a key length of 1,024 bits. The template is enabled for autoenrollment. You increase the template key length to 2,048 bits. You need to ensure that all current certificate holders automatically enroll for a certificate that uses the new template. Which console should you use()
Your network contains an Active Directory domain named contoso.com. Contoso.com contains three servers.The servers are configure as shown in the following table. Server name Server roel Service Server1 Certification authority (CA) Server2 Certificate Enrollment Web Service Server3 Certificate Enrollment Policy Web Service You need to ensure that users can manually enroll and renew their certificates by using the Certificate Enrollment Web Service. Which two actions should you perform()
Your network contains an Active Directory forest. The forest contains two domains. You have a standalone root certification authority (CA). On a server in the child domain, you run the Add Roles Wizard and discover that the option to select an enterprise CA is disabled. You need to install an enterprise subordinate CA on the server. What should you use to log on to the new server()
You need to receive an e-mail message whenever a domain user account is locked out. Which tool should you use()
You have an enterprise subordinate certification authority (CA). You have a custom Version 3 certificate template. Users can enroll for certificates based on the custom certificate template by using the Certificates console. The certificate template is unavailable for Web enrollment. You need to ensure that the certificate template is available on the Web enrollment pages. What should you do()
You have Active Directory Certificate Services (AD CS) deployed. You create a custom certificate template. You need to ensure that all of the users in the domain automatically enroll for a certificate based on the custom certificate template. Which two actions should you perform()
You remotely monitor several domain controllers. You run winrm.exe quickconfig on each domain controller. You need to create a WMI script query to retrieve information from the bios of each domain controller. Which format should you use to write the query()