单项选择题

Your company has an Active Directory domain. The main office has a DNS server named DNS1  that is configured with Active Directory-integrated DNS. The branch office has a DNS server  named DNS2 that contains a secondary copy of the zone from DNS1. The two offices are  connected with an unreliable WAN link.    
You add a new server to the main office. Five minutes after adding the server, a user from the  branch office reports that he is unable to connect to the new server. You need to ensure that the  user is able to connect to the new server.    
What should you do()

A.Clear the cache on DNS2.
B.Reload the zone on DNS1.
C.Refresh the zone on DNS2.
D.Export the zone from DNS1 and import the zone to DNS2.


您可能感兴趣的试卷

你可能感兴趣的试题

2.单项选择题

Your network consists of a single Active Directory domain. The domain contains 10 domain  controllers. The domain controllers run Windows Server 2008 R2 and are configured as DNS  servers.    
You plan to create a new Active Directory-integrated zone. 
You need to ensure that the new zone is only replicated to four of your domain controllers.    
What should you do first()

A.Create a new delegation in the ForestDnsZones application directory partition.
B.Create a new delegation in the DomainDnsZones application directory partition.
C.From the command prompt, run dnscmd and specify the /enlistdirectorypartition parameter.
D.From the command prompt, run dnscmd and specify the /createdirectorypartition parameter.

3.单项选择题

Your network consists of a single Active Directory domain. All domain controllers run Windows  Server 2008 R2 and are configured as DNS servers.    
A domain controller named DC1 has a standard primary zone for contoso.com. A domain  controller named DC2 has a standard secondary zone for contoso.com. 
You need to ensure that the replication of the contoso.com zone is encrypted. You must not lose  any zone data.    
What should you do()

A.On both servers, modify the interface that the DNS server listens on.
B.Convert the primary zone into an Active Directory-integrated zone. Delete the secondary zone.
C.Convert the primary zone into an Active Directory-integrated stub zone. Delete the secondary zone.
D.Configure the zone transfer settings of the standard primary zone. Modify the Master Servers lists on the secondary

7.单项选择题

Contoso, Ltd. has an Active Directory domain named ad.contoso.com. Fabrikam, Inc. has an  Active Directory domain named intranet.fabrikam.com.    
Fabrikam’s security policy prohibits the transfer of internal DNS zone data outside the Fabrikam  network.    
You need to ensure that the Contoso users are able to resolve names from the intranet.fabrikam.com domain.  
What should you do()

A.Create a new stub zone for the intranet.fabrikam.com domain.
B.Configure conditional forwarding for the intranet.fabrikam.com domain.
C.Create a standard secondary zone for the intranet.fabrikam.com domain.
D.Create an Active Directory-integrated zone for the intranet.fabrikam.com domain.

8.单项选择题

Your network consists of an Active Directory forest that contains one domain named  contoso.com.    
All domain controllers run Windows Server 2008 R2 and are configured as DNS servers. You  have two Active Directory-integrated zones: contoso.com and nwtraders.com.  
You need to ensure a user is able to modify records in the contoso.com zone. You must prevent  the user from modifying the SOA record in the nwtraders.com zone.    
What should you do()

A.From the DNS Manager console, modify the permissions of the contoso.com zone.
B.From the DNS Manager console, modify the permissions of the nwtraders.com zone.
C.From the Active Directory Users and Computers console, run the Delegation of Control Wizard.
D.From the Active Directory Users and Computers console, modify the permissions of the Domain Controllers organiz

最新试题

What should you do() 

题型:单项选择题

You create a new Active Directory domain. The functional level of the domain is Windows Server  2008 R2.  The domain contains five domain controllers. You need to monitor the replication of the group  policy template files. Which tool should you use()

题型:单项选择题

You need to receive an e-mail message whenever a domain user account is locked out.    Which tool should you use()

题型:单项选择题

You have an enterprise subordinate certification authority (CA). You have a custom Version 3  certificate template.    Users can enroll for certificates based on the custom certificate template by using the Certificates  console.    The certificate template is unavailable for Web enrollment. You need to ensure that the certificate  template is available on the Web enrollment pages.    What should you do()

题型:单项选择题

Your network contains an Active Directory forest. All domain controllers run Windows Server  2008 Standard. The functional level of the domain is Windows Server 2003. You have a  certification authority (CA).  The relevant servers in the domain are configured as shown in the following table:    Server name  Operating system  Server role  Server1  Windows Server 2003  Enterprise root CA  Server2  Windows Server 2008  Enterprise subordinate CA  Server3  Windows Server 2008 R2  Web Server  You need to ensure that you can install the Active Directory Certificate Services (AD CS)  Certificate Enrollment Web Service on the network.    What should you do()

题型:单项选择题

Your network contains an Active Directory forest. The forest contains an Acitve Directory site for a  remote office. The remote site contains a read-only domain controller (RODC).    You need to configure the RODC to store only the password of users in the remote site.    What should you do()

题型:单项选择题

Your network contains an Active Directory domain that contains five domain controllers. You have  a management computer that runs Windows 7.  From the Windows 7 computer, you need to view all account logon failures that occur in the  domain.    The information must be consolidated on one list.  Which command should you run on each domain controller()

题型:单项选择题

You have an enterprise subordinate certification authority (CA). You have a custom certificate  template that has a key length of 1,024 bits. The template is enabled for autoenrollment.    You increase the template key length to 2,048 bits.  You need to ensure that all current certificate holders automatically enroll for a certificate that  uses the new template.    Which console should you use()

题型:单项选择题

Your network contains three Active Directory forest named Forest1, Forest2, and Forest3. Each  forest contains three domains.  A two-way forest trust exists between Forest1 and Forest2. A two-way forest trust exists between  Forest2 and Forest3.     You need to configure the forest to meet the following requirements    Users in Forest3 must be able to access resources in Forest1.  Users in Forest1 must be able to access resources in Forest3.  The number of trusts must be minimized.    What should you do()

题型:单项选择题

You have an enterprise subordinate certification authority (CA) configured for key archival. Three  key recovery agent certificates are issued.  The CA is configured to use two recovery agents.    You need to ensure that all of the recovery agent certificates can be used to recover all new  private keys.    What should you do()

题型:单项选择题