单选题You deploy a new Active Directory Federation Services (AD FS) federation server.   You request new certificates for the AD FS federation server.   You need to ensure that the AD FS federation server can use the new certificates.   To which certificate store should you import the certificates()AComputerBIIS Admin Service service accountCLocal AdministratorDWorld Wide Web Publishing Service service account

单选题
You deploy a new Active Directory Federation Services (AD FS) federation server.   You request new certificates for the AD FS federation server.   You need to ensure that the AD FS federation server can use the new certificates.   To which certificate store should you import the certificates()
A

Computer

B

IIS Admin Service service account

C

Local Administrator

D

World Wide Web Publishing Service service account


参考解析

解析: 暂无解析

相关考题:

You deploy an Active Directory Federation Services (AD FS) Federation Service Proxy on a  server named Server1.   You need to configure the Windows Firewall on Server1 to allow external users to authenticate by  using AD FS.     Which inbound TCP port should you allow on Server1()A、88B、135C、443D、445

Your network contains an internal network and a perimeter network. The internal network contains an Active Directory forest. The forest contains a single domain.  You plan to deploy 10 Edge Transport servers on the perimeter network.  You need to recommend a solution for the Edge Transport server deployment. The solution must meet the following requirements: .Allow administrators to apply a single security policy to all Edge Transport servers .Reduce the administrative overhead that is required to manage servers .Minimize the attack surface of the internal network What should you recommend?()A、Implement Network Policy and Access Services (NPAS).B、Implement Active Directory Federation Services (AD FS).C、Create a new Active Directory domain in the internal forest, and then join all Edge Transport servers to the new domain.D、Create an Active Directory forest in the perimeter network, and then join all Edge Transport servers to the new domain.

You have an Exchange Server 2010 organization.  Your company acquires another company that has an Exchange Server 2010 organization.  You need to recommend a solution for the Exchange Server 2010 organization to meet the followingrequirements:  .All users must be able to view the global address lists (GALs) for both organizations.All users must be able to view free/busy information for users in both organizations  What should you include in the solution?()A、.Implement Active Directory Federation Services (AD FS) .Run the Microsoft Exchange Inter-Organization Replication toolB、.Implement Microsoft Identity Lifecycle Manager (ILM) 2007 .Create a two-way cross-forest trust between both organizationsC、.Create a federation trust between both organizations .Implement Microsoft Identity Lifecycle Manager (ILM) 2007 .Run the New Organization Relationship wizardD、.Create a two-way cross-forest trust between both organizations .Implement Active Directory Federation Services (AD FS).Run the Microsoft Exchange Inter-Organization Replication tool

Your network contains a single Active Directory domain.  You have an Exchange Server 2010 organization that contains a Hub Transport server named Hub1. Hub1 receives all e-mail messages that are sent to your organization from the Internet.  A new company security policy states that domain-joined servers must not be accessible directly from theInternet.  You need to create a message hygiene solution to meet the following requirements: .Comply with the new security policy .Minimize the amount of spam that is delivered to the internal Exchange servers in the organization  What should you do first?()A、Deploy an Edge Transport server, and then configure EdgeSync synchronization.B、Deploy a new Hub Transport server, and then install the anti-spam transport agents.C、Deploy a new Hub Transport server, and then deploy Active Directory Federation Services (AD FS).D、Deploy an Edge Transport server, and then disable Active Directory Lightweight Directory Services(AD LDS).

You are designing a plan to migrate an existing application to Windows Azure.  The application must use the existing Active Directory Domain Services (AD DS) domain. You need to recommend an approach for joining Windows Azure virtual machines to the domain.  What should you recommend?()A、 Install the Active Directory Certificate Services (AD CS) root certificate into the Enterprise Trust certificate store on each virtual machine.B、 Configure Windows Azure Connect.C、 Configure Windows Azure AppFabric Access Control.D、 Install Active Directory Federation Services (AD FS) in the existing domain.

Your network contains an Active Directory domain named contoso.com. The domain contains a   server named Server1. The Active Directory Federation Services (AD FS) role is installed on Server1. Contoso.com is defined as an account store.   A partner company has a Web-based application that uses AD FS authentication. The partner company  plans to provide users from contoso.com access to the Web application.   You need to configure AD FS on contoso.com to allow contoso.com users to be authenticated by the   partner company.   What should you create on Server1()A、a new applicationB、a resource partnerC、an account partnerD、an organization claim

Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1. Server1 has the Active Directory Federation Services (AD FS) role installed.   You have an application named App1 that is configured to use Server1 for AD FS authentication. You deploy a new server named Server2. Server2 is configured as an AD FS 2.0 server.  You need to ensure that App1 can use Server2 for authentication.   What should you do on Server2()A、Add an attribute store.B、Create a relying party trust.C、Create a claims provider trust.D、Create a relaying provider trust.

You deploy a new Active Directory Federation Services (AD FS) federation server.   You request new certificates for the AD FS federation server.   You need to ensure that the AD FS federation server can use the new certificates.   To which certificate store should you import the certificates()A、ComputerB、IIS Admin Service service accountC、Local AdministratorD、World Wide Web Publishing Service service account

You had installed an Active Directory Federation Services (AD FS) role on a Windows server 2008 in your organization. Now you need to test the connectivity of clients in the network to ensure that they can successfully reach the new Federation server and Federation server is operational. What should you do()A、Go to Services tab, and check if Active Directory Federation Services is runningB、In the event viewer, Applications, Event ID column look for event ID 674.C、Open a browser window, and then type the Federation Service URL for the new federation server. D、None of the above

Your network contains two servers named Server1 and Server2 that run Windows Server 2008 R2.   Server1 has the Active Directory Federation Services (AD FS) Federation Service role service installed.   You plan to deploy AD FS 2.0 on Server2.   You need to export the token-signing certificate from Server1, and then import the certificate to Server2.   Which format should you use to export the certificate()A、Base-64 encoded X.509 (.cer)B、Cryptographic Message Syntax Standard PKCS #7 (.p7b)C、DER encoded binary X.509 (.cer)D、Personal Information Exchange PKCS #12 (.pfx)

As an administrator at Certkiller.com, you have installed an Active Directory forest that has a single domain. You have installed an Active Directory Federation services (AD FS) on the domain member server.  What should you do to configure AD FS to make sure that AD FS token contains information from the active directory domain()A、Add a new account store and configure it.B、Add a new resource partner and configure itC、Add a new resource store and configure itD、Add a new administrator account on AD FS and configure itE、None of the above

单选题Your network contains a single Active Directory domain.  You have an Exchange Server 2010 organization that contains a Hub Transport server named Hub1. Hub1 receives all e-mail messages that are sent to your organization from the Internet.  A new company security policy states that domain-joined servers must not be accessible directly from theInternet.  You need to create a message hygiene solution to meet the following requirements: .Comply with the new security policy .Minimize the amount of spam that is delivered to the internal Exchange servers in the organization What should you do first?()ADeploy an Edge Transport server, and then configure EdgeSync synchronization.BDeploy a new Hub Transport server, and then install the anti-spam transport agents.CDeploy a new Hub Transport server, and then deploy Active Directory Federation Services (AD FS).DDeploy an Edge Transport server, and then disable Active Directory Lightweight Directory Services(AD  LDS).

多选题You are designing a Windows Azure web application.  All users authenticate by using their Active Directory Domain Services (AD DS) credentials.  You need to recommend an approach for enabling single sign-on for domain-authenticated users.   Which two actions should you recommend?()AUse Forms authenticationto generate claims.BUse Active Directory Federation Services (AD FS) to generate claims.CUse SqlMembershipProvider in the web application.DUse Windows Identity Foundation in the web application.

单选题Your company has an Active Directory forest that contains a single domain. The domain member   server has an Active Directory Federation Services (AD FS) server role installed.   You need to configure AD FS to ensure that AD FS tokens contain information from the Active Directory  domain.   What should you do()AAdd and configure a new account store.BAdd and configure a new account partner.CAdd and configure a new resource partner.DAdd and configure a Claims-aware application.

单选题You are designing a plan to migrate an existing application to Windows Azure.  The application must use the existing Active Directory Domain Services (AD DS) domain. You need to recommend an approach for joining Windows Azure virtual machines to the domain.  What should you recommend?()A Install the Active Directory Certificate Services (AD CS) root certificate into the Enterprise Trust certificate store on each virtual machine.B Configure Windows Azure Connect.C Configure Windows Azure AppFabric Access Control.D Install Active Directory Federation Services (AD FS) in the existing domain.

单选题Your network contains an Active Directory domain named contoso.com. The domain contains a  server named Server1. The Active Directory Federation Services (AD FS) role is installed on  Server1.     Contoso.com is defined as an account store.  A partner company has a Web-based application that uses AD FS authentication. The partner  company plans to provide users from contoso.com access to the Web application. You need to  configure AD FS on contoso.com to allow contoso.com users to be authenticated by the partner  company.     What should you create on Server1()Aa new applicationBa resource partnerCan account partnerDan organization claim