Your network contains an Active Directory domain. The domain is configured as shown in the following table:
Active Directory site Domain controllers Main DC1 and DC2 Branch1 DC3 Branch2 None
Users in Branch2 sometimes authenticate to a domain controller in Branch1.
You need to ensure that users in Branch2 only authenticate to the domain controllers in Main.
What should you do()
A.On DC3, set the AutoSiteCoverage value to 0.
B.On DC3, set the AutoSiteCoverage value to 1.
C.On DC1 and DC2, set the AutoSiteCoverage value to 0.
D.On DC1 and DC2, set the AutoSiteCoverage value to 1.
您可能感兴趣的试卷
你可能感兴趣的试题
Your company has a main office and a branch office.
You discover that when you disable IPv4 on a computer in the branch office, the computer authenticates by using a domain controller in the main office. You need to ensure that IPv6-only computers authenticate to domain controllers in the same site.
What should you do()
A.Configure the NTDS Site Settings object.
B.Create Active Directory subnet objects.
C.Create Active Directory Domain Services connection objects.
D.Install an Intra-Site Automatic Tunnel Addressing Protocol (ISATAP) router.
You need to ensure that domain controllers only replicate between domain controllers in adjacent sites.
What should you configure from Active Directory Sites and Services()
A.From the IP properties, select Ignore all schedules.
B.From the IP properties, select Disable site link bridging.
C.From the NTDS Settings object, manually configure the Active Directory Domain Services connection objects.
D.From the properties of the NTDS Site Settings object, configure the Inter-Site Topology Generator for each site.
Your network contains an Active Directory forest. The forest contains multiple sites.
You need to enable universal group membership caching for a site.
What should you do()
A.From Active Directory Sites and Services, modify the NTDS Settings.
B.From Active Directory Sites and Services, modify the NTDS Site Settings.
C.From Active Directory Users and Computers, modify the properties of all universal groups used in the site.
D.From Active Directory Users and Computers, modify the computer objects for the domain controllers in the site.
Your company has a main office and 50 branch offices. Each office contains multiple subnets.
You need to automate the creation of Active Directory subnet objects.
What should you use()
A.the Dsadd tool
B.the Netsh tool
C.the New-ADObject cmdlet
D.the New-Object cmdlet
Your company has a main office and a branch office. The main office contains two domain controllers.
You create an Active Directory site named BranchOfficeSite. You deploy a domain controller in the branch office, and then add the domain controller to the BranchOfficeSite site.
You discover that users in the branch office are randomly authenticated by either the domain controller in the branch office or the domain controllers in the main office.
You need to ensure that the users in the branch office always attempt to authenticate to the domain controller in the branch office first.
What should you do()
A.Create organizational units (OUs).
B.Create Active Directory subnet objects.
C.Modify the slow link detection threshold.
D.Modify the Location attribute of the computer objects.
Your network contains two Active Directory forests. One forest contains two domains named contoso.com and na.contoso.com. The other forest contains a domain named nwtraders.com. A forest trust is configured between the two forests.
You have a user named User1 in the na.contoso.com domain. User1 reports that he fails to log on to a computer in the nwtraders.com domain by using the user name NA\User1.
Other users from na.contoso.com report that they can log on to the computers in the nwtraders.com domain.
You need to ensure that User1 can log on to the computer in the nwtraders.com domain.
What should you do()
A.Enable selective authentication over the forest trust.
B.Create an external one-way trust from na.contoso.com to nwtraders.com.
C.Instruct User1 to log on to the computer by using his user principal name (UPN).
D.Instruct User1 to log on to the computer by using the user name nwtraders\User1.
Your network contains an Active Directory forest. The forest contains a single domain. You want to access resources in a domain that is located in another forest.
You need to configure a trust between the domain in your forest and the domain in the other forest.
What should you create()
A.an incoming external trust
B.an incoming realm trust
C.an outgoing external trust
D.an outgoing realm trust
Your network contains an Active Directory domain named contoso.com. All domain controllers run Windows Server 2008 R2. The functional level of the domain is Windows Server 2008 R2.
The functional level of the forest is Windows Server 2008. You have a member server named Server1 that runs Windows Server 2008. You need to ensure that you can add Server1 to contoso.com as a domain controller.
What should you run before you promote Server1()
A.dcpromo.exe /CreateDCAccount
B.dcpromo.exe /ReplicaOrNewDomain:replica
C.Set-ADDomainMode -Identity contoso.com -DomainMode Windows2008Domain
D.Set-ADForestMode -Identity contoso.com -ForestMode Windows2008R2Forest
You have a DNS zone that is stored in a custom application directory partition.
You install a new domain controller.
You need to ensure that the custom application directory partition replicates to the new domain controller.
What should you use()
A.the Active Directory Administrative Center console
B.the Active Directory Sites and Services console
C.the DNS Manager console
D.the Dnscmd tool
Your network contains a single Active Directory forest. The forest contains two domains named contoso.com and sales.contoso.com. The domain controllers are configured as shown in the following table:
Server name Domain
DNS zones hosted
DC1 contoso.com contoso.com
DC2 contoso.com contoso.com
DC3 sales.contoso.com sales.contoso.com
DC4 sales.contoso.com sales.contoso.com
All domain controllers run Windows Server 2008 R2. All zones are configured as Active Directory-
integrated zones.
You need to ensure that contoso.com records are available on DC3.
Which command should you run()
A.dnscmd.exe DC1.contoso.com /ZoneChangeDirectoryPartition contoso.com /domain
B.dnscmd.exe DC1.contoso.com /ZoneChangeDirectoryPartition contoso.com /forest
C.dnscmd.exe DC3.contoso.com /ZoneChangeDirectoryPartition contoso.com /domain
D.dnscmd.exe DC3.contoso.com /ZoneChangeDirectoryPartition contoso.com /forest
最新试题
Your network contains an Active Directory domain named contoso.com. Contoso.com contains a member server that runs Windows Serever 2008 Standart. You need to install an enterprise subordinate certification authority (CA) that support private key archival. You must achieve this goal by using the minimum amount of administrative effort.What do you do first()
Your network contains an Active Directory domain. A user named User1 takes a leave of absence for one year. You need to restrict access to the User1 user account while User1 is away. What should you do()
What should you do()
You create a new Active Directory domain. The functional level of the domain is Windows Server 2003. The domain contains five domain controllers that run Windows Server 2008 R2. You need to monitor the replication of the group policy template files. Which tool should you use()
Your network contains an Active Directory forest. The forest contains two domains. You have a standalone root certification authority (CA). On a server in the child domain, you run the Add Roles Wizard and discover that the option to select an enterprise CA is disabled. You need to install an enterprise subordinate CA on the server. What should you use to log on to the new server()
Your network contains an Active Directory domain. The domain contains a group named Group1. The minimum password lenght for the domain is set to six characters. you need to ensure that the passwords for all users in Group1 are at least 10 characters long. All other users must be able to use passwords that are six characters long. What should you do first()
Your network contains an Active Directory domain named contoso.com. You have a management computer named Computer1 that runs Windows 7. You need to forward the logon events of all the domain controllers in contoso.com to Computer1. All new domain controllers must be dynamically added to the subscription. What should you do()
Your network contain 10 domain controller that run Windows Server R2. The network contain a member server that is configured to collect all of events that occur on the domain controllers. Your need to ensure that administrators are notified when a specific event occurs on any of the domain controllers. You want to achive the goal by using the minimum amount effort. What should you do()
You have an enterprise subordinate certification authority (CA) configured for key archival. Three key recovery agent certificates are issued. The CA is configured to use two recovery agents. You need to ensure that all of the recovery agent certificates can be used to recover all new private keys. What should you do()
You have Active Directory Certificate Services (AD CS) deployed. You create a custom certificate template. You need to ensure that all of the users in the domain automatically enroll for a certificate based on the custom certificate template. Which two actions should you perform()