多选题Your company has an Active Directory forest. The company has branch offices in three locations.   Each location has an organizational unit.   You need to ensure that the branch office administrators are able to create and apply GPOs only to their  respective organizational units.    Which two actions should you perform()AAdd the user accounts of the branch office administrators to the Group Policy Creator Owners Group.BModify the Managed By tab in each organizational unit to add the branch office administrators to their  respective organizational units.CRun the Delegation of Control Wizard and delegate the right to link GPOs for the domain to the branch  office administrators.DRun the Delegation of Control Wizard and delegate the right to link GPOs for their branch  organizational units to the branch office administrators.

多选题
Your company has an Active Directory forest. The company has branch offices in three locations.   Each location has an organizational unit.   You need to ensure that the branch office administrators are able to create and apply GPOs only to their  respective organizational units.    Which two actions should you perform()
A

Add the user accounts of the branch office administrators to the Group Policy Creator Owners Group.

B

Modify the Managed By tab in each organizational unit to add the branch office administrators to their  respective organizational units.

C

Run the Delegation of Control Wizard and delegate the right to link GPOs for the domain to the branch  office administrators.

D

Run the Delegation of Control Wizard and delegate the right to link GPOs for their branch  organizational units to the branch office administrators.


参考解析

解析: 暂无解析

相关考题:

Your company has an Active Directory forest. All domain controllers run the DNS Server server role.The company plans to decommission the WINS service.You need to enable forest-wide single name resolution.What should you do?()A. Enable WINS-R lookup in DNS.B. Create Service Location (SRV) records for the single name resources.C. Create an Active Directory-integrated zone named LegacyWINS. Create host (A) records for the single name resources.D. Create an Active Directory-integrated zone named GlobalNames. Create host (A) records for the single name resources.

Your company has a branch office that is configured as a separate Active Directory site and has an Actrve Directory domain controller. The Active Directory site requires a local Global Catalog server to support a new application. You need to configure the domain controller as a Global Catalog server. Which tool should you use()A、The Dcpromo.exe utilityB、The Server Manager consoleC、The Computer Management consoleD、The Active Directory Sites and Services consoleE、The Actrve Directory Domains and Trusts console

Your company has a branch office that is configured as a separate Active Directory site and has  an Active Directory domain controller.     The Active Directory site requires a local Global Catalog server to support a new application.     You need to configure the domain controller as a Global Catalog server.     Which tool should you use()A、The Dcpromo.exe utilityB、The Server Manager consoleC、The Computer Management consoleD、The Active Directory Sites and Services consoleE、The Active Directory Domains and Trusts console

Your network consists of a single Active Directory domain. All domain controllers run Windows Server2008 R2. Your company and an external partner plan to collaborate on a project. The external partner has an Active Directory domain that contains Windows Server 2008 R2 domain controllers. You need to design a collaboration solution that meets the following requirements:   èAllows users to prevent sensitive documents from being forwarded to untrusted recipients or from being  printed.   èAllows users in the external partner organization to access the protected content to which they have been granted rights.   èSends all inter-organizational traffic over port 443.   èMinimizes the administrative effort required to manage the external users. What should you include in your design?()A、Establish a federated trust between your company and the external partner. Deploy a Windows Server 2008 R2 server that has Microsoft SharePoint Foundation 2010 installed.B、Establish a federated trust between your company and the external partner. Deploy a Windows Server 2008 R2 server that runs Microsoft SharePoint 2010 and that has the Active Directory Rights  Management Services (AD?RMS) role installed.C、Establish an external forest trust between your company and the external partner. Deploy a Windows Server 2008 R2 server that has the Active Directory Certificate Services server role installed. Implement Encrypting File System (EFS).D、Establish an external forest trust between your company and the external partner. Deploy a Windows Server 2008 R2 server that has the Active Directory Rights Management Service (AD?RMS)role installed  and Microsoft SharePoint Foundation 2010 installed.

Your company has a single Active Directory directory service forest with three domains. You plan to modify the Active Directory schema. You need to identify the schema master for the forest.  What should you do?()A、 Run the regsvr32 schmmgmt.dll command. Use the Active Directory Domains and Trusts snap-in. B、 Run the regsvr32 schmmgmt.dll command. Use the Active Directory Users and Computers snap-in. C、 Use the Dsget command-line tool.D、 Use the Dsquery command-line tool.

Your company has an Active Directory forest. The company has servers that run Windows Server   2008 R2 and client computers that run Windows 7. The domain uses a set of GPO administrative  templates that have been approved to support regulatory compliance requirements.   Your partner company has an Active Directory forest that contains a single domain. The company has  servers that run Windows Server 2008 R2 and client computers that run Windows 7.   You need to configure your partner companys domain to use the approved set of administrative  templates.   What should you do()A、Use the Group Policy Management Console (GPMC) utility to back up the GPO to a file. In each site,  import the GPO to the default domain policy.B、Copy the ADMX files from your companys PDC emulator to the PolicyDefinitions folder on the partner  companys PDC emulator.C、Copy the ADML files from your companys PDC emulator to the PolicyDefinitions folder on thepartner  companys PDC emulator.D、Download the conf.adm, system.adm, wuau.adm, and inetres.adm files from the Microsoft Updates  Web site. Copy the ADM files to the PolicyDefinitions folder on the partner companys PDC emulator.

You have an Exchange Server 2010 organization.  Your company has a relationship with another company.  The partner company has an Exchange Server 2010 organization.  You need to recommend a security solution to meet the following requirements:  .Ensure that all e-mail delivery between your servers and the partner companys servers is encrypted .Ensure that all communication between your servers and the partner companys servers is authenticated What should you include in the solution?()A、Active Directory Rights Management Services (AD RMS)B、Domain SecurityC、Forms-based AuthenticationD、Secure/Multipurpose Internet Mail Extensions (S/MIME)

Your company has three Active Directory domains in a single forest. You install a new Active Directory enabled application. The application ads new user attributes to the Active Directory schema. You discover that the Active Directory replication traffic to the Global Catalogs has increased. You need to prevent the new attributes from being replicated to the Global Catalog. You must achieve this goal without affecting application functionality. What should you do()A、Change the replication interval for the DEFAULTIPSITELINK object to 9990.B、Change the cost for the DEFAULTIPSITELINK object to 9990.C、Make the new attributes in the Active Directory as defunct.D、Modify the properties in the Active Directory schema for the new attributes.

You are a security administrator for your company. The network consists of three Active Directory domains. All Active Directory domains are running at a Windows Server 2003 mode functionality level.    Employees in the editorial department of your company need access to resources on file servers that are in each of the Active Directory domains. Each Active Directory domain in the company contains at least one editorial department employee user account.    You need to create a single group named Company Editors that contains all editorial department employee user accounts and that has access to the resources on file server computers.  What should you do?()A、 Create a global distribution group in the forest root domain and name it Company Editors.B、 Create a global security group in the forest root domain and name it Company Editors.C、 Create a universal distribution group in the forest root domain and name it Company Editors. D、 Create a universal security group in the forest root domain and name it Company Editors.

Your company has a main office and 40 branch offices. Each branch office is configured as a  separate Active Directory site that has a dedicated read-only domain controller (RODC). An  RODC server is stolen from one of the branch offices.     You need to identify the user accounts that were cached on the stolen RODC server.     Which utility should you use()A、Dsmod.exeB、Ntdsutil.exeC、Active Directory Sites and ServicesD、Active Directory Users and Computers

Your company has a main office and a branch office. The company has a single-domain Active Directory forest. The main office has two domain controllers named DC1 and DC2 that run Windows Server 2008. The branch office has a Windows Server 2008 read-only domain controller (RODC) named DC3. All domain controllers hold the DNS Server role and are configured as Active Directory-integrated zones. The DNS zones only allow secure updates. You need to enable dynamic DNS updates on DC3. What should you do()A、Run the Ntdsutil.exe  DS Behavior commands on DC3.B、Run the Dnscmd.exe /ZoneResetType command on DC3.C、Reinstall Active Directory Domain Services on DC3 as a writable domain controller.D、Create a custom application directory partition on DC1. Configure the partition to store Active Directory- integrated zones.

Your company has a main office and three branch offices. The company has an Active Directory forest that has a single domain. Each office has one domain controller. Each office is configured as an Active Directory site. All sites are connected with the DEFAULTIPSITELINK object. You need to decrease the replication latency between the domain controllers. What should you do()A、Decrease the cost between the connection objects.B、Decrease the replication interval for all connection objects.C、Decrease the replication interval for the DEFAUL TIPSITELINK object.D、Decrease the replication schedule for the DEFAUL TIPSITELINK object.

Your company has an Active Directory forest. All domain controllers run the DNS server role. The company plans to decommission the WINS service. You need to enable forest-wide single name resolution. What should you do?()A、Enable WINS-R lookup in DNSB、Create Service Locator (SRV) records for the single name resourcesC、Create an Active Directory-Integrated zone named LegacyWINS. Create host (A) records for the single name resourcesD、Create an Active Directory-integrated zone named GlobalNames. Create host (A) records for the single name resources

单选题Your company has a branch office that is configured as a separate Active Directory site and has an Actrve Directory domain controller. The Active Directory site requires a local Global Catalog server to support a new application. You need to configure the domain controller as a Global Catalog server. Which tool should you use()AThe Dcpromo.exe utilityBThe Server Manager consoleCThe Computer Management consoleDThe Active Directory Sites and Services consoleEThe Actrve Directory Domains and Trusts console

单选题Your company has an Active Directory forest. The company has servers that run Windows Server 2008 amd client computers that run Windows Vista. The domain uses a set of GPO administrative templates that have been approved to support regulatory compliance requirements. Your partner company has an Active Directory forest that contains a single domain, The company has servers that run Windows Server 2008 and client computers that run Windows Vista. You need to configure your partner company’s domain to use the approved set of administrative templates. What should you do()AUse the Group Policy Management Console (GPMC) utility to back up the GPO to a file. In each site, import the GPO to the default domain policy.BCopy the ADMX files from your company’s PDC emulator to the PolicyDefinitions folder on the partner company’s PDC emulatorCCopy the ADML files from your company’s PDC emulator to the PolicyDefinitions folder on the partner company’s PDC emulatorDDownload the conf.adm, system.adm, wuau.adm, and inetres.adm files from the Microsoft Updates Web site. Copy the ADM files to the PolicyDefinitions folder on thr partner company’s emulator.

单选题Your company has a single domain named contoso.com. The contoso.com DNS zone is Active Directoryintegrated. Your partner company has a single domain named partner.com. The partner.com DNS zone is Active Directory-integrated. The IP Addresses of the DNS servers in the partner domain will change. You need to ensure name resolution for users in contoso.com to resources in partner.com on each DNS server in contoso.com. What should you do?()ACreate a stub zone for partner.com on each DNS server in contoso.comBConfigure the zone replication scope for partner.com to replicate to all DNS servers in the forestCConfigure an application directory partition in the contoso.com forest. Enlist all DNS servers in the contoso.com forest in the partitionDConfigure an application directory partition in the partner forest. Enlist all DNS servers in the partner forest in the partition.

单选题Your company has a single domain named contoso.com. the contoso.com DNS zone is active directory-integrated. Your partner company has a single domain named partner.com. the partner.com. DNS zone is active directory-integrated. The IP addresses to the DNS servers in the partner domain will change. You need to ensure name resolution for users in contoso.com to resources in partner.com on each DNS server in contoso.com. what should you do?()ACreate a stub zone for partner.com on each DNS server in contoso.com.BConfigure the zone replication scope for partner.com to replicate to all DNS servers In the forest.CConfigure an application directory partition in the contoso.com forest. Enlist all DNS servers in the contoso.com forest in the partition.DConfigure an application directory partition in the partner forest. Enlist all DNS servers in the partner forest in the partition.

单选题Your company has a single Active Directory directory service forest with three domains. You plan to modify the Active Directory schema. You need to identify the schema master for the forest.  What should you do?()A Run the regsvr32 schmmgmt.dll command. Use the Active Directory Domains and Trusts snap-in. B Run the regsvr32 schmmgmt.dll command. Use the Active Directory Users and Computers snap-in. C Use the Dsget command-line tool.D Use the Dsquery command-line tool.

单选题You are a security administrator for your company. The network consists of three Active Directory domains. All Active Directory domains are running at a Windows Server 2003 mode functionality level.    Employees in the editorial department of your company need access to resources on file servers that are in each of the Active Directory domains. Each Active Directory domain in the company contains at least one editorial department employee user account.    You need to create a single group named Company Editors that contains all editorial department employee user accounts and that has access to the resources on file server computers.  What should you do?()A Create a global distribution group in the forest root domain and name it Company Editors.B Create a global security group in the forest root domain and name it Company Editors.C Create a universal distribution group in the forest root domain and name it Company Editors. D Create a universal security group in the forest root domain and name it Company Editors.

单选题Your company has an Active Directory forest. All domain controllers run the DNS Server server role.The company plans to decommission the WINS service.You need to enable forest-wide single name resolution.What should you do?()AEnable WINS-R lookup in DNS.BCreate Service Location (SRV) records for the single name resources.CCreate an Active Directory-integrated zone named LegacyWINS. Create host (A) records for the single name resources.DCreate an Active Directory-integrated zone named GlobalNames. Create host (A) records for the single name resources.

单选题Your company has an Active Directory forest. The company has servers that run Windows Server  2008 R2 and client computers that run Windows 7. The domain uses a set of GPO administrative  templates that have been approved to support regulatory compliance requirements.     Your partner company has an Active Directory forest that contains a single domain. The company  has servers that run Windows Server 2008 R2 and client computers that run Windows 7.     You need to configure your partner company’s domain to use the approved set of administrative  templates.   What should you do()AUse the Group Policy Management Console (GPMC) utility to back up the GPO to a file. In each site, import the GPBCopy the ADMX files from your company’s PDC emulator to the PolicyDefinitions folder on the partner company’s PDCCCopy the ADML files from your company’s PDC emulator to the PolicyDefinitions folder on the partner company’s PDC DDownload the conf.adm, system.adm, wuau.adm, and inetres.adm files from the Microsoft Updates Web site.

单选题Your company has a branch office that is configured as a separate Active Directory site and has an  Active Directory domain controller.   The Active Directory site requires a local Global Catalog server to support a new application.  You need to configure the domain controller as a Global Catalog server.  Which tool should you use()AThe Dcpromo.exe utilityBThe Server Manager consoleCThe Computer Management consoleDThe Active Directory Sites and Services consoleEThe Active Directory Domains and Trusts console

单选题Your company has a single Active Directory directory service forest with multiple domains. The  company has a main office with 1,000 users and a single branch office with 500 users. Each office is aseparate Active Directory site. The main office Active Directory site has two domain controllers with Global  Catalog services. Company employees must be able to work in both offices. You need to plan the  placement and configuration of domain controllers.  What should you do?()A Deploy two additional domain controllers in the main office Active Directory site.B Deploy global catalog servers in the branch office Active Directory site.C Enable change notification on the site link between the main office Active Directory site and the branch office Active Directory site.D Disable change notification on the site link between the main office Active Directory site and the branch office Active Directory site.

多选题Your company has a single Active Directory directory service forest. All user accounts are located in  the Users container. You need to create a number of organizational units (OUs) that will be used to store  user accounts.  What are two possible ways to achieve this goal?()AUse the Active Directory Sites and Services snap-in.BUse the Active Directory Users and Computers snap-in.CUse the Dsadd command-line tool with the OU parameter.DUse the Dsmod command-line tool with the OU parameter.

单选题Your company has a single domain named contoso.com. The contoso.com DNS zone is Active Directory-integrated. Your partner company has a single domain named partner.com. The partner.com DNS zone is Active Directory-integrated. The IP addresses of the DNS servers in the partner domain will change. You need to ensure name resolution for users in contoso.com to resources in partner.com. What should you do?()ACreate a stub zone for partner.com on each DNS server in contoso.com.BConfigure the Zone Replication Scope for partner.com to replicate to all DNS servers in the forest.CConfigure an application directory partition in the contoso.com forest. Enlist all DNS servers in the contoso.com forest in the partition.DConfigure an application directory partition in the partner forest. Enlist all DNS servers in the partner forest in the partition.