Your network contains an Active Directory domain named contoso.com. The network contains client computers that run either Windows Vista or Windows 7. Active Directory Rights Management Services (AD RMS) is deployed on the network.
You create a new AD RMS template that is distributed by using the AD RMS pipeline. The template is updated every month.
You need to ensure that all the computers can use the most up-to-date version of the AD RMS template. You want to achieve this goal by using the minimum amount of administrative effort.
What should you do()
A.Upgrade all of the Windows Vista computers to Windows 7.
B.Upgrade all of the Windows Vista computers to Windows Vista Service Pack 2 (SP2).
C.Assign the Microsoft Windows Rights Management Services (RMS) Client Service Pack 2 (SP2) to all users by usin
D.Assign the Microsoft Windows Rights Management Services (RMS) Client Service Pack 2 (SP2) to all computers by
您可能感兴趣的试卷
你可能感兴趣的试题
Your network contains two Active Directory forests named contoso.com and adatum.com. Active Directory Rights Management Services (AD RMS) is deployed in contoso.com. An AD RMS trusted user domain (TUD) exists between contoso.com and adatum.com.
From the AD RMS logs, you discover that some clients that have IP addresses in the adatum.com forest are authenticating as users from contoso.com.
You need to prevent users from impersonating contoso.com users.
What should you do()
A.Configure trusted e-mail domains.
B.Enable lockbox exclusion in AD RMS.
C.Create a forest trust between adatum.com and contoso.com.
D.Add a certificate from a third-party trusted certification authority (CA).
Your network contains a single Active Directory domain. Active Directory Rights Management Services (AD RMS) is deployed on the network.
A user named User1 is a member of only the AD RMS Enterprise Administrators group. You need to ensure that User1 can change the service connection point (SCP) for the AD RMS installation. The solution must minimize the administrative rights of User1.
To which group should you add User1()
A.AD RMS Auditors
B.AD RMS Service Group
C.Domain Admins
D.Schema Admins
Your network contains an Active Directory domain. The domain contains a server named Server1.
Server1 runs Windows Server 2008 R2.
You need to mount an Active Directory Lightweight Directory Services (AD LDS) snapshot from Server1.
What should you do()
A.Run ldp.exe and use the Bind option.
B.Run diskpart.exe and use the Attach option.
C.Run dsdbutil.exe and use the snapshot option.
D.Run imagex.exe and specify the /mount parameter.
Your network contains a server named Server1 that runs Windows Server 2008 R2. On Server1, you create an Active Directory Lightweight Directory Services (AD LDS) instance named Instance1.
You connect to Instance1 by using ADSI Edit.
You run the Create Object wizard and you discover that there is no User object class. You need to ensure that you can create user objects in Instance1.
What should you do()
A.Run the AD LDS Setup Wizard.
B.Modify the schema of Instance1.
C.Modify the properties of the Instance1 service.
D.Install the Remote Server Administration Tools (RSAT).
Your network contains a server named Server1 that runs Windows Server 2008 R2. You create an Active Directory Lightweight Directory Services (AD LDS) instance on Server1.
You need to create an additional AD LDS application directory partition in the existing instance.
Which tool should you use()
A.Adaminstall
B.Dsadd
C.Dsmod
D.Ldp
Your network contains two standalone servers named Server1 and Server2 that have Active Directory Lightweight Directory Services (AD LDS) installed.
Server1 has an AD LDS instance.
You need to ensure that you can replicate the instance from Server1 to Server2.
What should you do on both servers()
A.Obtain a server certificate.
B.Import the MS-User.ldf file.
C.Create a service user account for AD LDS.
D.Register the service location (SRV) resource records.
Your network contains an Active Directory domain. The domain contains three domain controllers.
One of the domain controllers fails.
Seven days later, the help desk reports that it can no longer create user accounts. You need to ensure that the help desk can create new user accounts.
Which operations master role should you seize()
A.domain naming master
B.infrastructure master
C.primary domain controller (PDC) emulator
D.RID master
E.schema master
Your network contains an Active Directory forest. The forest contains two domains named contoso.com and woodgrovebank.com.
You have a custom attribute named Attibute1 in Active Directory. Attribute1 is associated to User objects.
You need to ensure that Attribute1 is replicated to the global catalog.
What should you do()
A.In Active Directory Sites and Services, configure the NTDS Settings.
B.In Active Directory Sites and Services, configure the universal group membership caching.
C.From the Active Directory Schema snap-in, modify the properties of the User class schema object.
D.From the Active Directory Schema snap-in, modify the properties of the Attibute1 classschema attribute.
Your network contains an Active Directory domain. The functional level of the domain is Windows Server 2003. The domain contains five domain controllers that run Windows Server 2008 and five domain controllers that run Windows Server 2008 R2.
You need to ensure that SYSVOL is replicated by using Distributed File System Replication (DFSR).
What should you do first()
A.Run dfsrdiag.exe Pollad.
B.Run dfsrmig.exe /SetGlobalState 0.
C.Upgrade all domain controllers to Windows Server 2008 R2.
D.Raise the functional level of the domain to Windows Server 2008.
Your network contains a single Active Directory domain that has two sites named Site1 and Site2. Site1 has two domain controllers named DC1 and DC2. Site2 has two domain controllers named DC3 and DC4. DC3 fails.
You discover that replication no longer occurs between the sites. You verify the connectivity between DC4 and the domain controllers in Site1. On DC4, you run repadmin.exe /kcc.
Replication between the sites continues to fail.
You need to ensure that Active Directory data replicates between the sites.
What should you do()
A.From Active Directory Sites and Services, modify the properties of DC3.
B.From Active Directory Sites and Services, modify the NTDS Site Settings of Site2.
C.From Active Directory Users and Computers, modify the location settings of DC4.
D.From Active Directory Users and Computers, modify the delegation settings of DC4.
最新试题
Your network contains an Active Directory forest. The forest contains an Acitve Directory site for a remote office. The remote site contains a read-only domain controller (RODC). You need to configure the RODC to store only the password of users in the remote site. What should you do()
Your network contains an Active Directory domain named contoso.com. The domain contains five domain controllers.You add a logoff script to an existing Group Policy object (GPO). You need to verify that each domain controller successfully replicates the updated group policy. Which two objects should you verify on each domain controller()
Your network contains an Active Directory forest. All domain controllers run Windows Server 2008 Standard. The functional level of the domain is Windows Server 2003. You have a certification authority (CA). The relevant servers in the domain are configured as shown in the following table: Server name Operating system Server role Server1 Windows Server 2003 Enterprise root CA Server2 Windows Server 2008 Enterprise subordinate CA Server3 Windows Server 2008 R2 Web Server You need to ensure that you can install the Active Directory Certificate Services (AD CS) Certificate Enrollment Web Service on the network. What should you do()
Your network contains an Active Directory forest. The forest contains two domains. You have a standalone root certification authority (CA). On a server in the child domain, you run the Add Roles Wizard and discover that the option to select an enterprise CA is disabled. You need to install an enterprise subordinate CA on the server. What should you use to log on to the new server()
What should you do()
You have an enterprise subordinate certification authority (CA). The CA is configured to use a hardware security module. You need to back up Active Directory Certificate Services on the CA. Which command should you run()
You have an enterprise subordinate certification authority (CA). You have a custom certificate template that has a key length of 1,024 bits. The template is enabled for autoenrollment. You increase the template key length to 2,048 bits. You need to ensure that all current certificate holders automatically enroll for a certificate that uses the new template. Which console should you use()
You have an enterprise subordinate certification authority (CA) configured for key archival. Three key recovery agent certificates are issued. The CA is configured to use two recovery agents. You need to ensure that all of the recovery agent certificates can be used to recover all new private keys. What should you do()
You have a domain controller named Server1 that runs Windows Server 2008 R2. You need to determine the size of the Active Directory database on Server1. What should you do()
Your network contains a single Active Directory domain named contoso.com. An administrator accidentally deletes the _msdsc.contoso.com zone. You recreate the _msdsc.contoso.com zone. You need to ensure that the _msdsc.contoso.com zone contains all of the required DNS records. What should you do on each domain controller()