单项选择题

Your network contains an Active Directory domain. The domain contains two sites named Site1  and Site2. Site1 contains four domain controllers. Site2 contains a read-only domain controller  (RODC). You add a user named User1 to the Allowed RODC Password Replication Group. The  WAN link between Site1 and Site2 fails.    
User1 restarts his computer and reports that he is unable to log on to the domain. The WAN link  is restored and User1 reports that he is able to log on to the domain. You need to prevent the  problem from reoccurring if the WAN link fails.    
What should you do()

A.Create a Password Settings object (PSO) and link the PSO to User1’s user account.
B.Create a Password Settings object (PSO) and link the PSO to the Domain Users group.
C.Add the computer account of the RODC to the Allowed RODC Password Replication Group.
D.Add the computer account of User1’s computer to the Allowed RODC Password Replication Group.


您可能感兴趣的试卷

你可能感兴趣的试题

2.单项选择题

Your company has a main office and a branch office. The branch office contains a read-only  domain controller named RODC1.    
You need to ensure that a user named Admin1 can install updates on RODC1. The solution must  prevent Admin1 from logging on to other domain controllers.    
What should you do()

A.Run ntdsutil.exe and use the Roles option.
B.Run dsmgmt.exe and use the Local Roles option.
C.From Active Directory Sites and Services, modify the NTDS Site Settings.
D.From Active Directory Users and Computers, add the user to the Server Operators group.

3.单项选择题

Your network contains an Active Directory Rights Management Services (AD RMS) cluster. You  have several custom policy templates. The custom policy templates are updated frequently.    
Some users report that it takes as many as 30 days to receive the updated policy templates. You  need to ensure that users receive the updated custom policy templates within seven days.    
What should you do()

A.Modify the registry on the AD RMS servers.
B.Modify the registry on the users’ computers.
C.Change the schedule of the AD RMS Rights Policy Template Management (Manual) scheduled task.
D.Change the schedule of the AD RMS Rights Policy Template Management (Automated) scheduled task.

5.单项选择题

Active Directory Rights Management Services (AD RMS) is deployed on your network. Users who have Windows Mobile 6 devices report that they cannot access documents that are protected by  AD RMS.  
You need to ensure that all users can access AD RMS protected content by using Windows  Mobile 6 devices. 
What should you do()

A.Modify the security of the ServerCertification.asmx file.
B.Modify the security of the MobileDeviceCertification.asmx file.
C.Enable anonymous authentication for the _wmcs virtual directory.
D.Enable anonymous authentication for the certification virtual directory.

9.单项选择题

Your network contains an Active Directory domain. The domain contains a server named  Server1.  
Server1 runs Windows Server 2008 R2.  
You need to mount an Active Directory Lightweight Directory Services (AD LDS) snapshot from  Server1.    
What should you do()

A.Run ldp.exe and use the Bind option.
B.Run diskpart.exe and use the Attach option.
C.Run dsdbutil.exe and use the snapshot option.
D.Run imagex.exe and specify the /mount parameter.

最新试题

Your network contains three Active Directory forest named Forest1, Forest2, and Forest3. Each  forest contains three domains.  A two-way forest trust exists between Forest1 and Forest2. A two-way forest trust exists between  Forest2 and Forest3.     You need to configure the forest to meet the following requirements    Users in Forest3 must be able to access resources in Forest1.  Users in Forest1 must be able to access resources in Forest3.  The number of trusts must be minimized.    What should you do()

题型:单项选择题

Your network contains an Active Directory domain named contoso.com. Contoso.com contains a  member server that runs Windows Serever 2008 Standart.  You need to install an enterprise subordinate certification authority (CA) that support private key  archival. You must achieve this goal by using the minimum amount of administrative effort.What do you do first()

题型:单项选择题

You have an enterprise subordinate certification authority (CA). You have a custom certificate  template that has a key length of 1,024 bits. The template is enabled for autoenrollment.    You increase the template key length to 2,048 bits.  You need to ensure that all current certificate holders automatically enroll for a certificate that  uses the new template.    Which console should you use()

题型:单项选择题

You need to receive an e-mail message whenever a domain user account is locked out.    Which tool should you use()

题型:单项选择题

Your network contains an Active Directory domain. The domain contains 1000 user accounts.  You have a list that contains the mobile phone number of each user  You need to add the mobile number of each user to Active Directory.    What should you do()

题型:单项选择题

Your network contains an Active Directory forest. The forest contains two domain controllers. The  domain controllers are configured as shown in the following table. All client computers run Windows 7.    You need to ensure that all client computers in the domain keep the same time as an external  time server.    What should you do()

题型:单项选择题

Your network contains an Active Directory domain that contains five domain controllers. You have  a management computer that runs Windows 7.  From the Windows 7 computer, you need to view all account logon failures that occur in the  domain.    The information must be consolidated on one list.  Which command should you run on each domain controller()

题型:单项选择题

What should you do() 

题型:单项选择题

Your network contains an Active Directory domain named contoso.com. Contoso.com contains  three servers.The servers are configure as shown in the following table.    Server name   Server roel Service  Server1                          Certification authority (CA)  Server2                         Certificate Enrollment Web Service  Server3                          Certificate Enrollment Policy Web Service  You need to ensure that users can manually enroll and renew their certificates by using the  Certificate Enrollment Web Service.    Which two actions should you perform()

题型:多项选择题

Your network contains an Active Directory forest. All domain controllers run Windows Server  2008 Standard. The functional level of the domain is Windows Server 2003. You have a  certification authority (CA).  The relevant servers in the domain are configured as shown in the following table:    Server name  Operating system  Server role  Server1  Windows Server 2003  Enterprise root CA  Server2  Windows Server 2008  Enterprise subordinate CA  Server3  Windows Server 2008 R2  Web Server  You need to ensure that you can install the Active Directory Certificate Services (AD CS)  Certificate Enrollment Web Service on the network.    What should you do()

题型:单项选择题