Your network contains an Active Directory domain. The domain contains several domain controllers.
All domain controllers run Windows Server 2008 R2.
You need to restore the Default Domain Controllers Policy Group Policy object (GPO) to the Windows Server 2008 R2 default settings.
What should you do()
A.Run dcgpofix.exe /target:dc.
B.Run dcgpofix.exe /target:domain.
C.Delete the link for the Default Domain Controllers Policy, and then run gpupdate.exe /sync.
D.Delete the link for the Default Domain Controllers Policy, and then run gpupdate.exe /force.
您可能感兴趣的试卷
你可能感兴趣的试题
Your network contains a single Active Directory domain. The functional level of the forest is Windows Server 2008. The functional level of the domain is Windows Server 2008 R2.
All DNS servers run Windows Server 2008. All domain controllers run Windows Server 2008 R2.
You need to ensure that you can enable the Active Directory Recycle Bin.
What should you do()
A.Change the functional level of the forest.
B.Change the functional level of the domain.
C.Modify the Active Directory schema.
D.Modify the Universal Group Membership Caching settings.
Your network contains a single Active Directory domain. A domain controller named DC2 fails.
You need to remove DC2 from Active Directory.
Which two actions should you perform()
A.At the command prompt, run dcdiag.exe /fix.
B.At the command prompt, run netdom.exe remove dc2.
C.From Active Directory Sites and Services, delete DC2.
D.From Active Directory Users and Computers, delete DC2.
Your network contains a single Active Directory domain.
You need to create an Active Directory Domain Services snapshot.
What should you do()
A.Use the Ldp tool.
B.Use the NTDSUtil tool.
C.Use the Wbadmin tool.
D.From Windows Server Backup, perform a full backup.
Your network contains a single Active Directory domain. The functional level of the forest is Windows Server 2008 R2.
You need to enable the Active Directory Recycle Bin.
What should you use()
A.the Dsmod tool
B.the Enable-ADOptionalFeature cmdlet
C.the Ntdsutil tool
D.the Set-ADDomainMode cmdlet
Your network contains an Active Directory domain. All servers run Windows Server 2008 R2.
You need to audit the deletion of registry keys on each server.
What should you do()
A.From Audit Policy, modify the Object Access settings and the Process Tracking settings.
B.From Audit Policy, modify the System Events settings and the Privilege Use settings.
C.From Advanced Audit Policy Configuration, modify the System settings and the Detailed Tracking settings.
D.From Advanced Audit Policy Configuration, modify the Object Access settings and the Global Object Access Auditin
You need to create a Password Settings object (PSO).
Which tool should you use()
A.Active Directory Users and Computers
B.ADSI Edit
C.Group Policy Management Console
D.Ntdsutil
You create a Password Settings object (PSO).
You need to apply the PSO to a domain user named User1.
What should you do()
A.Modify the properties of the PSO.
B.Modify the account options of the User1 account.
C.Modify the security settings of the User1 account.
D.Modify the password policy of the Default Domain Policy Group Policy object (GPO).
You configure and deploy a Group Policy object (GPO) that contains AppLocker settings.
You need to identify whether a specific application file is allowed to run on a computer.
Which Windows PowerShell cmdlet should you use()
A.Get-AppLockerFileInformation
B.Get-GPOReport
C.Get-GPPermissions
D.Test-AppLockerPolicy
Your network contains an Active Directory domain named contoso.com.
You need to create a central store for the Group Policy Administrative templates.
What should you do()
A.Run dfsrmig.exe /createglobalobjects.
B.Run adprep.exe /domainprep /gpprep.
C.Copy the %SystemRoot%\PolicyDefinitions folder to the \\contoso.com\SYSVOL\contoso.com\Policies folder.
D.Copy the %SystemRoot%\System32\GroupPolicy folder to the \\contoso.com\SYSVOL\contoso.com\Policies folder
Your network contains an Active Directory domain. All domain controllers run Windows Server 2008 R2. Client computers run either Windows 7 or Windows Vista Service Pack 2 (SP2).
You need to audit user access to the administrative shares on the client computers.
What should you do()
A.Deploy a logon script that runs Icacls.exe.
B.Deploy a logon script that runs Auditpol.exe.
C.From the Default Domain Policy, modify the Advanced Audit Policy Configuration.
D.From the Default Domain Controllers Policy, modify the Advanced Audit Policy Configuration.
最新试题
Your network contains an Active Directory domain. The domain contains 1000 user accounts. You have a list that contains the mobile phone number of each user You need to add the mobile number of each user to Active Directory. What should you do()
Your network contains a single Active Directory domain named contoso.com. An administrator accidentally deletes the _msdsc.contoso.com zone. You recreate the _msdsc.contoso.com zone. You need to ensure that the _msdsc.contoso.com zone contains all of the required DNS records. What should you do on each domain controller()
Your network contain 10 domain controller that run Windows Server R2. The network contain a member server that is configured to collect all of events that occur on the domain controllers. Your need to ensure that administrators are notified when a specific event occurs on any of the domain controllers. You want to achive the goal by using the minimum amount effort. What should you do()
What should you do()
You have an enterprise subordinate certification authority (CA). The CA is configured to use a hardware security module. You need to back up Active Directory Certificate Services on the CA. Which command should you run()
Your network contains an Active Directory domain named contoso.com. Contoso.com contains three servers.The servers are configure as shown in the following table. Server name Server roel Service Server1 Certification authority (CA) Server2 Certificate Enrollment Web Service Server3 Certificate Enrollment Policy Web Service You need to ensure that users can manually enroll and renew their certificates by using the Certificate Enrollment Web Service. Which two actions should you perform()
You have an enterprise subordinate certification authority (CA). You have a custom certificate template that has a key length of 1,024 bits. The template is enabled for autoenrollment. You increase the template key length to 2,048 bits. You need to ensure that all current certificate holders automatically enroll for a certificate that uses the new template. Which console should you use()
Your network contains three Active Directory forest named Forest1, Forest2, and Forest3. Each forest contains three domains. A two-way forest trust exists between Forest1 and Forest2. A two-way forest trust exists between Forest2 and Forest3. You need to configure the forest to meet the following requirements Users in Forest3 must be able to access resources in Forest1. Users in Forest1 must be able to access resources in Forest3. The number of trusts must be minimized. What should you do()
Your network contains an Active Directory domain. A user named User1 takes a leave of absence for one year. You need to restrict access to the User1 user account while User1 is away. What should you do()
You have an enterprise subordinate certification authority (CA). You have a group named Group1. You need to allow members of Group1 to publish new certificate revocation lists. Members of Group1 must not be allowed to revoke certificates. What should you do()