单项选择题

Your company has a main office and 40 branch offices. Each branch office is configured as a  separate Active Directory site that has a dedicated read-only domain controller (RODC). An  RODC server is stolen from one of the branch offices.    
You need to identify the user accounts that were cached on the stolen RODC server.    
Which utility should you use()

A.Dsmod.exe
B.Ntdsutil.exe
C.Active Directory Sites and Services
D.Active Directory Users and Computers


您可能感兴趣的试卷

你可能感兴趣的试题

2.单项选择题

Your company has an Active Directory Rights Management Services (AD RMS) server. Users  have Windows Vista computers. An Active Directory domain is configured at the Windows Server  2003 functional level.    
You need to configure AD RMS so that users are able to protect their documents.    
What should you do()

A.Install the AD RMS client 2.0 on each client computer.
B.Add the RMS service account to the local administrators group on the AD RMS server.
C.Establish an e-mail account in Active Directory Domain Services (AD DS) for each RMS user.
D.Upgrade the Active Directory domain to the functional level of Windows Server 2008.

3.单项选择题

Your company has a server that runs Windows Server 2008 R2. The server runs an instance of  Active Directory Lightweight Directory Services (AD LDS).    
You need to replicate the AD LDS instance on a test computer that is located on the network.    
What should you do()

A.Run the repadmin /kcc  command on the test computer.
B.Create a naming context by running the Dsmgmt command on the test computer.
C.Create a new directory partition by running the Dsmgmt command on the test computer.
D.Create and install a replica by running the AD LDS Setup wizard on the test computer.

4.单项选择题

Your company has a server that runs an instance of Active Directory Lightweight Directory  Services (AD LDS).    
You need to create new organizational units in the AD LDS application directory partition.    
What should you do()

A.Use the Active Directory Users and Computers snap-in to create the organizational units on the AD LDS application
B.Use the ADSI Edit snap-in to create the organizational units on the AD LDS application directory partition.
C.Use the dsadd OU  command to create the organizational units.
D.Use the dsmod OU  command to create the organizational units.

6.单项选择题

Your company has an Active Directory domain. The company has two domain controllers named  DC1 and DC2. DC1 holds the schema master role.  
DC1 fails. You log on to Active Directory by using the administrator account. You are not able to  transfer the schema master role.    
You need to ensure that DC2 holds the schema master role.    
What should you do()

A.Register the Schmmgmt.dll. Start the Active Directory Schema snap-in.
B.Configure DC2 as a bridgehead server.
C.On DC2, seize the schema master role.
D.Log off and log on again to Active Directory by using an account that is a member of the Schema Admins group. St

8.单项选择题

Your company has an Active Directory domain.    
You log on to the domain controller. The Active Directory Schema snap-in is not available in the  Microsoft Management Console (MMC).  
You need to access the Active Directory Schema snap-in.    
What should you do()

A.Register Schmmgmt.dll.
B.Log off and log on again by using an account that is a member of the Schema Admins group.
C.Use the Ntdsutil.exe command to connect to the schema master operations master and open the schema for writing
D.Add the Active Directory Lightweight Directory Services (AD/LDS) role to the domain controller by using Server Man

9.单项选择题

Your company has an Active Directory forest. Not all domain controllers in the forest are  configured as Global Catalog Servers. Your domain structure contains one root domain and one  child domain.
You modify the folder permissions on a file server that is in the child domain. You discover that  some Access Control entries start with S-1-5-21... and that no account name is listed.
You need to list the account names. 
What should you do()

A.Move the RID master role in the child domain to a domain controller that holds the Global Catalog.
B.Modify the schema to enable replication of the friendlynames attribute to the Global Catalog.
C.Move the RID master role in the child domain to a domain controller that does not hold the Global Catalog.
D.Move the infrastructure master role in the child domain to a domain controller that does not hold the Global Catalog

最新试题

You create a new Active Directory domain. The functional level of the domain is Windows Server  2003.    The domain contains five domain controllers that run Windows Server 2008 R2.    You need to monitor the replication of the group policy template files.    Which tool should you use()

题型:单项选择题

Your network contains two Active Directory forests named contoso.com and    nwtraders.com. A  two-way forest trust exists between contoso.com and nwtraders.com. The forest trust is  configured to use selective authentication.  Contoso.com contains a server named Server1. Server1 contains a shared folder named  Marketing. Nwtraders.com contains a global group named G_Marketing. The Change share  permission and the Modify NTFS permissions for the Marketing folder are assignes to the  G_Marketing group.  Members of G_Marketing report that they cannot accesss the Marketing folder.  You need to ensure that the G_Marketing members can accesss the folder from the network.    What should you do()

题型:单项选择题

Your network contains an Active Directory domain named contoso.com. Contoso.com contains a  member server that runs Windows Serever 2008 Standart.  You need to install an enterprise subordinate certification authority (CA) that support private key  archival. You must achieve this goal by using the minimum amount of administrative effort.What do you do first()

题型:单项选择题

You have a domain controller named Server1 that runs Windows Server 2008 R2.    You need to determine the size of the Active Directory database on Server1.    What should you do()

题型:单项选择题

You have an enterprise subordinate certification authority (CA) configured for key archival. Three  key recovery agent certificates are issued.  The CA is configured to use two recovery agents.    You need to ensure that all of the recovery agent certificates can be used to recover all new  private keys.    What should you do()

题型:单项选择题

Your network contains an Active Directory forest. The forest contains two domains. You have a  standalone root certification authority (CA).    On a server in the child domain, you run the Add Roles Wizard and discover that the option to  select an enterprise CA is disabled.    You need to install an enterprise subordinate CA on the server.    What should you use to log on to the new server()

题型:单项选择题

You have an enterprise subordinate certification authority (CA). The CA is configured to use a  hardware security module.  You need to back up Active Directory Certificate Services on the CA.    Which command should you run()

题型:单项选择题

Your network contains an Active Directory domain. All domain controller run Windows Server  2003.    You replace all domain controllers with domain controllers that run Windows Server 2008 R2.    You raise the functional level of the domain to Windows Server 2008 R2.    You need to minimize the amount of SYSVOL replication traffic on the network.    What should you do()

题型:单项选择题

Your company has four offices.  The network contains a single Active Directory domain.  Each office has domain controller. Each office has an organitational unit (OU) that contains the  user accounts for the users in that office.  In each office, support technicians perform basic troubleshooting for the users in their respective  office.  You need to ensure that the support technicians can reset the password for the user accounts in  their respective office only. The solution must prevent the thechnicians from creating user  accounts.  What shoul you do()

题型:单项选择题

Your network contains an Active Directory domain named contoso.com. Contoso.com contains  three servers.The servers are configure as shown in the following table.    Server name   Server roel Service  Server1                          Certification authority (CA)  Server2                         Certificate Enrollment Web Service  Server3                          Certificate Enrollment Policy Web Service  You need to ensure that users can manually enroll and renew their certificates by using the  Certificate Enrollment Web Service.    Which two actions should you perform()

题型:多项选择题