单选题Your company has an Active Directory domain. You have a two-tier PKI infrastructure that  contains an offline root CA and an online issuing CA. The Enterprise certification authority is  running Windows Server 2008 R2.   You need to ensure users are able to enroll new certificates.     What should you do()ARenew the Certificate Revocation List (CRL) on the root CA . Copy the CRL to the CertEnroll folder on the issuing CBRenew the Certificate Revocation List (CRL) on the issuing CA . Copy the CRL to the SystemCertificates folder in thCImport the root CA certificate into the Trusted Root Certification Authorities store on all client workstations.DImport the issuing CA certificate into the Intermediate Certification Authorities store on all client workstations.

单选题
Your company has an Active Directory domain. You have a two-tier PKI infrastructure that  contains an offline root CA and an online issuing CA. The Enterprise certification authority is  running Windows Server 2008 R2.   You need to ensure users are able to enroll new certificates.     What should you do()
A

Renew the Certificate Revocation List (CRL) on the root CA . Copy the CRL to the CertEnroll folder on the issuing C

B

Renew the Certificate Revocation List (CRL) on the issuing CA . Copy the CRL to the SystemCertificates folder in th

C

Import the root CA certificate into the Trusted Root Certification Authorities store on all client workstations.

D

Import the issuing CA certificate into the Intermediate Certification Authorities store on all client workstations.


参考解析

解析: 暂无解析

相关考题:

Your company has a branch office that is configured as a separate Active Directory site and has an Actrve Directory domain controller. The Active Directory site requires a local Global Catalog server to support a new application. You need to configure the domain controller as a Global Catalog server. Which tool should you use()A、The Dcpromo.exe utilityB、The Server Manager consoleC、The Computer Management consoleD、The Active Directory Sites and Services consoleE、The Actrve Directory Domains and Trusts console

Your company has an Active Directory domain. All computers are members of the domain. Your networkcontains an internal Web site that uses Integrated Windows Authentication. From a computer that runs Windows 7, you attempt to connect to the Web site and are prompted for authentication. You verify that youruser account has permission to access the Web site. You need to ensure that you are automaticallyauthenticated when you connect to the Web site.  What should you do?()A、Create a complex password for your user account.B、Open Credential Manager and modify your credentials.C、Add the URL of the Web site to the Trusted sites zone.D、Add the URL of the Web site to the Local intranet zone.

Your company has a branch office that is configured as a separate Active Directory site and has  an Active Directory domain controller.     The Active Directory site requires a local Global Catalog server to support a new application.     You need to configure the domain controller as a Global Catalog server.     Which tool should you use()A、The Dcpromo.exe utilityB、The Server Manager consoleC、The Computer Management consoleD、The Active Directory Sites and Services consoleE、The Active Directory Domains and Trusts console

Your network consists of a single Active Directory domain. All domain controllers run Windows Server2008 R2. Your company and an external partner plan to collaborate on a project. The external partner has an Active Directory domain that contains Windows Server 2008 R2 domain controllers. You need to design a collaboration solution that meets the following requirements:   èAllows users to prevent sensitive documents from being forwarded to untrusted recipients or from being  printed.   èAllows users in the external partner organization to access the protected content to which they have been granted rights.   èSends all inter-organizational traffic over port 443.   èMinimizes the administrative effort required to manage the external users. What should you include in your design?()A、Establish a federated trust between your company and the external partner. Deploy a Windows Server 2008 R2 server that has Microsoft SharePoint Foundation 2010 installed.B、Establish a federated trust between your company and the external partner. Deploy a Windows Server 2008 R2 server that runs Microsoft SharePoint 2010 and that has the Active Directory Rights  Management Services (AD?RMS) role installed.C、Establish an external forest trust between your company and the external partner. Deploy a Windows Server 2008 R2 server that has the Active Directory Certificate Services server role installed. Implement Encrypting File System (EFS).D、Establish an external forest trust between your company and the external partner. Deploy a Windows Server 2008 R2 server that has the Active Directory Rights Management Service (AD?RMS)role installed  and Microsoft SharePoint Foundation 2010 installed.

Your company has an Active Directory domain. You install a new domain controller in the domain. Twenty users report that they are unable to log on to the domain. You need to register the SRV records. Which command should you run on the new domain controller()A、Run the netsh interface reset command.B、Run the ipconfig /flushdns command.C、Run the dnscmd /EnlistDirectoryPartition command.D、Run the sc stop netlogon command followed by the sc start netlogon command.

You have an Exchange Server 2010 organization.  Your company has a relationship with another company.  The partner company has an Exchange Server 2010 organization.  You need to recommend a security solution to meet the following requirements:  .Ensure that all e-mail delivery between your servers and the partner companys servers is encrypted .Ensure that all communication between your servers and the partner companys servers is authenticated What should you include in the solution?()A、Active Directory Rights Management Services (AD RMS)B、Domain SecurityC、Forms-based AuthenticationD、Secure/Multipurpose Internet Mail Extensions (S/MIME)

Your company has an Active Directory domain. The company has two domain controllers named  DC1 and DC2. DC1 holds the schema master role.   DC1 fails. You log on to Active Directory by using the administrator account. You are not able to  transfer the schema master role.     You need to ensure that DC2 holds the schema master role.     What should you do()A、Register the Schmmgmt.dll. Start the Active Directory Schema snap-in.B、Configure DC2 as a bridgehead server.C、On DC2, seize the schema master role.D、Log off and log on again to Active Directory by using an account that is a member of the Schema Admins group. St

Your company has three Active Directory domains in a single forest. You install a new Active Directory enabled application. The application ads new user attributes to the Active Directory schema. You discover that the Active Directory replication traffic to the Global Catalogs has increased. You need to prevent the new attributes from being replicated to the Global Catalog. You must achieve this goal without affecting application functionality. What should you do()A、Change the replication interval for the DEFAULTIPSITELINK object to 9990.B、Change the cost for the DEFAULTIPSITELINK object to 9990.C、Make the new attributes in the Active Directory as defunct.D、Modify the properties in the Active Directory schema for the new attributes.

Your company has a single Active Directory domain. The domain runs at the functional level of Windows Server 2003. You install the DHCP service on a server named DHCP1. You attempt to start the DHCP service, but it does not start. You need to ensure that the DHCP service starts. What should you do?()A、Restart DHCP1B、Configure a scope on DHCP1C、Activate the scope on DHCP1D、Authorize DHCP1 in the Active Directory domain

Your company has a main office and three branch offices. The company has an Active Directory forest that has a single domain. Each office has one domain controller. Each office is configured as an Active Directory site. All sites are connected with the DEFAULTIPSITELINK object. You need to decrease the replication latency between the domain controllers. What should you do()A、Decrease the cost between the connection objects.B、Decrease the replication interval for all connection objects.C、Decrease the replication interval for the DEFAUL TIPSITELINK object.D、Decrease the replication schedule for the DEFAUL TIPSITELINK object.

单选题Your company has an Active Directory domain. The company has two domain controllers named DC1   and DC2. DC1 holds the schema master role.    DC1 fails. You log on to Active Directory by using the administrator account. You are not able to transfer  the schema master role.    You need to ensure that DC2 holds the schema master role.  What should you do()ARegister the Schmmgmt.dll. Start the Active Directory Schema snap-in.BConfigure DC2 as a bridgehead server.COn DC2, seize the schema master role.DLog off and log on again to Active Directory by using an account that is a member of the Schema  Admins group. Start the Active Directory Schema snap-in.

单选题Your company has an Active Directory domain. A user attempts to log on to a computer that was turned off for twelve weeks. The administrator receives an error message that authentication has failed. You need to ensure that the user is able to log on to the computer. What should you do()ARun the netdom TRUST /reset command.BRun the netsh command with the set and machine options.CRun the Active Directory Users and Computers console to disable, and then enable the computer account.DReset the computer account. Disjoin the computer from the domain, and then rejoin the computer to the domain.

单选题Your company has an Active Directory domain. The company has two domain controllers named DC1 and DC2. DC1 holds the Schema Master role DC1 fails You log on to Actrve Directory by using the administrator account. You are not able to transfer the Schema Master operations role. You need to ensure that DC2 holds the Schema Master role. What should you do()ARegister the Schmmgmt.dll. Start the Active Directory Schema snap-in.BConfigure DC2 as a bridgehead serverCOn DC2, seize the Schema Master roleDLog off and log on again to Active Directory by using an account that is a member of the Schema Administrators group. Start the Actrve Directory Schema snap-in.

单选题Your company has an Active Directory domain. You log on to the domain controller. The Active Directory Schema snap-in is not available in the Microsoft Management Console (MMC). You need to access the Actrve Directory Schema snap-in. What should you do()ARegister Schmmgml.dll.BLog off and log on again by using an account that is a member of the Schema Administrators group.CUse the Ntdsutil.exe command to connect to the Schema Master operations master and open the schema for writing.DAdd the Active Directory Lightweight Directory Services (AD LDS) role to the domain controller by using Server Manager.

单选题Your company has an Active Directory domain.     You log on to the domain controller. The Active Directory Schema snap-in is not available in the  Microsoft Management Console (MMC).   You need to access the Active Directory Schema snap-in.     What should you do()ARegister Schmmgmt.dll.BLog off and log on again by using an account that is a member of the Schema Admins group.CUse the Ntdsutil.exe command to connect to the schema master operations master and open the schema for writingDAdd the Active Directory Lightweight Directory Services (AD/LDS) role to the domain controller by using Server Man

单选题Your company has an Active Directory forest. The company has servers that run Windows Server  2008 R2 and client computers that run Windows 7. The domain uses a set of GPO administrative  templates that have been approved to support regulatory compliance requirements.     Your partner company has an Active Directory forest that contains a single domain. The company  has servers that run Windows Server 2008 R2 and client computers that run Windows 7.     You need to configure your partner company’s domain to use the approved set of administrative  templates.   What should you do()AUse the Group Policy Management Console (GPMC) utility to back up the GPO to a file. In each site, import the GPBCopy the ADMX files from your company’s PDC emulator to the PolicyDefinitions folder on the partner company’s PDCCCopy the ADML files from your company’s PDC emulator to the PolicyDefinitions folder on the partner company’s PDC DDownload the conf.adm, system.adm, wuau.adm, and inetres.adm files from the Microsoft Updates Web site.

单选题Your company has a single Active Directory directory service domain. All servers in your environment run Windows Server 2003. All domain controllers run Active DirectoryCintegrated DNS. You create several static host (A) resource records. You need to verify that the DNS server is sending the correct host records to all client computers.  Which command-line tool should you use?()A netshB tracertC ntdsutilD nslookup

单选题Your company has a branch office that is configured as a separate Active Directory site and has an  Active Directory domain controller.   The Active Directory site requires a local Global Catalog server to support a new application.  You need to configure the domain controller as a Global Catalog server.  Which tool should you use()AThe Dcpromo.exe utilityBThe Server Manager consoleCThe Computer Management consoleDThe Active Directory Sites and Services consoleEThe Active Directory Domains and Trusts console

单选题Your company has an Active Directory forest that contains a single domain. The domain member   server has an Active Directory Federation Services (AD FS) server role installed.   You need to configure AD FS to ensure that AD FS tokens contain information from the Active Directory  domain.   What should you do()AAdd and configure a new account store.BAdd and configure a new account partner.CAdd and configure a new resource partner.DAdd and configure a Claims-aware application.

单选题Your company has an Active Directory domain. You log on to the domain controller. The Active Directory Schema snap-in is not available in the Microsoft Management Console (MMC). You need to access the Active Directory Schema snap-in. What should you do()ARegister Schmmgmt.dll.BLog off and log on again by using an account that is a member of the Schema Administrators group.CUse the Ntdsutil.exe command to connect to the Schema Master operations master and open the schema for writing.DAdd the Active Directory Lightweight Directory Services (AD LDS) role to the domain controller by using Server Manager.

单选题Your company has an Active Directory domain. The company has purchased 100 new computers. You want to deploy the computers as members of the domain. You need to create the computer accounts in an organizational unit. What should you do()ARun the csvde f computers.csv command.BRun the ldifde f computers.ldf command.CRun the dsadd computer  command.DRun the dsmod computer  command.

单选题Your company has a single Active Directory directory service forest with multiple domains. The  company has a main office with 1,000 users and a single branch office with 500 users. Each office is aseparate Active Directory site. The main office Active Directory site has two domain controllers with Global  Catalog services. Company employees must be able to work in both offices. You need to plan the  placement and configuration of domain controllers.  What should you do?()A Deploy two additional domain controllers in the main office Active Directory site.B Deploy global catalog servers in the branch office Active Directory site.C Enable change notification on the site link between the main office Active Directory site and the branch office Active Directory site.D Disable change notification on the site link between the main office Active Directory site and the branch office Active Directory site.

单选题Your company has a single Active Directory domain. The domain runs at the functional level of Windows Server 2003. You install the DHCP service on a server named DHCP1. You attempt to startthe DHCP service, but it does not start. You need to ensure that the DHCP service starts. What should you do?()ARestart DHCP1.BConfigure a scope on DHCP1.CActivate the scope on DHCP1.DAuthorize DHCP1 in the Active Directory domain.