单选题来自Active Directory目录中的不同GPO设置冲突时,()层次上的GPO优先权最高。A域B容器COUD子容器
单选题
来自Active Directory目录中的不同GPO设置冲突时,()层次上的GPO优先权最高。
A
域
B
容器
C
OU
D
子容器
参考解析
解析:
暂无解析
相关考题:
Your network contains an Active Directory domain named contoso.com. You have a starter Group Policy object (GPO) named GPO1 that contains more than 100 settings. You need to create a new starter GPO based on the settings in GPO1. You must achieve this goal by using the minimum amount of administrative effort. What should you do?()A、Run the New-GPStarterGPO cmdlet and the Copy-GPO cmdletB、Create a new starter GPO and manually configure the policy settings of the starter GPO.C、Right-click GPO1, and then click Back Up.Create a new starter GPO,Right-click the new GPO, and then click Restore from BackupD、Right-click GPO1, and then click Copy. Right-click Starter GPOs, and then click Paste
ertkiller.COM有一个名为Sales的组织单位的Active Directory域。 这个组织单位举办两个全球安全组名为“销售总监和销售主管。 Certkiller已指示你到桌面的限制,以“销售经理”组。然而,在桌面上的限制不应适用于销售集团。您创建一个GPO命名的桌面锁定,并链接到销售的组织单位。下一步你应该怎么做呢()A、销售总监拒绝应用组策略上的DesktopLockdown GPO的权限设置B、销售人员拒绝对DesktopLockdown GPO的权限应用组策略设置C、设置允许本地域中的用户DesktopLockdown的GPO应用组策略权限D、允许身份验证的用户应用组策略权限设置 DesktopLockdown的GPO
GPO怎样过滤()A、通过使用GPO和对象的Block Policy Inheritance和NoOverride设置来过滤GPOB、GPO按照顺序处理,通过前面处理的GPO的继承来过滤策略C、GPO完全不用过滤。它们依赖于策略继承,提供策略的过滤给Active Directory对象D、使用安全组和许可权的应用来应用GPO给Active Directory对象
只是使用GPO的一部分(例如User Configuration)时,为了有效地使用GPO,你应该做些什么()A、让没有使用的配置无效B、只应用GPO到需要应用的对象上C、一次只分配GPO到一个对象上;如果需要同样的GPO配置可以创建多个GPOD、限制应用到每一个GPO上的个体策略的数目。扩展个体策略设置到几个GPO上,以增加处理GPO的速度
当组策略之间发生冲突时,下列说法正确的是()。A、来自父域的GPO和来自子域的GPO设置冲突时,子容器的设置较后应用并发挥作用B、链接到同一容器的不同的GPO的设置发生冲突时,在容器属性对话框GPO列表中最高位置的GPO设置较后应用并发挥作用C、不管什么样的策略当他们发生冲突时,都不会生效D、跟组策略对象的级别有关,级别高的不生效,级别低的生效
你公司有一个Active Directory域。一个名为server1的服务器运行windows server 2008.server1上安装有终端服务服务器角色。一个名为server2的服务器运行windows server 2008.终端服务许可证服务角色安装在server2上。仅有10个终端服务器客户许可证可用。你需要限制同时连接到终端服务用户不超过10个。你应该怎么做?()A、创建一个组策略对象(GPO)。启用“设置终端服务许可证模式策略设置”,选择“每用户”选项。应用该GPO到server1上。B、创建一个组策略对象(GPO)。启用“设置终端服务许可证模式策略设置”,选择“每用户”选项。应用该GPO到server2上。C、创建一个组策略对象(GPO)。启用“设置终端服务许可证模式策略设置”,选择“每设备”选项。应用该GPO到server1上。D、创建一个组策略对象(GPO)。启用“设置终端服务许可证模式策略设置”,选择“每设备”选项。应用该GPO到server2上。
Your company has an Active Directory forest. Each branch office has an organizational unit and a child organizational unit named Sales. The Sales organizational unit contains all users and computers of the sales department. You need to install a Microsoft Office 2007 application only on the computers in the Sales organizational unit. You create a GPO named SalesApp GPO. What should you do next()A、Configure the GPO to assign the application to the computer account. Link the SalesAPP GPO to the domain.B、Configure the GPO to assign the application to the user account. Link the SalesAPP GPO to the Sales organizationC、Configure the GPO to publish the application to the user account. Link the SalesAPP GPO to the Sales organizationD、Configure the GPO to assign the application to the computer account. Link the SalesAPP GPO to the Sales organiz
You have a single Active Directory directory service domain. You back up your domain controllers on a nightly basis. You perform Group Policy backups on a nightly basis. A Group Policy object (GPO) is accidentally deleted. You need to restore the GPO. What should you do?()A、 Perform a nonauthoritative restore of the Active Directory database.B、 Perform an authoritative restore of the Active Directory database.C、 Select the Import Policy option in the Group Policy Object Editor.D、 Restore the GPO by using the Group Policy Management Console.
Your network consists of Windows XP computers in a single Active Directory directory service domain. All computers are located in a single Active Directory site. You need to design and deploy a new Group Policy object (GPO) that automatically installs a custom application on computers. What are two possible ways to achieve this goal?()A、 Link the GPO to the domain and assign the application.B、 Link the GPO to the site and assign the application.C、 Link the GPO to the domain and publish the application.D、 Link the GPO to the site and publish the application.
单选题Your company has an Active Directory forest. The company has three locations. Each location has an organizational unit and a child organizational unit named Sales. The Sales organizational unit contains all users and computers of the sales department. The company plans to deploy a Microsoft Office 2007 application on all computers within the three Sales organizational units. You need to ensure that the Office 2007 application is installed only on the computers in the Sales organizational units. What should you do()ACreate a Group Policy Object (GPO) named SalesAPP GPO. Configure the GPO to assign the application to the cBCreate a Group Policy Object (GPO) named SalesAPP GPO. Configure the GPO to assign the application to the usCCreate a Group Policy Object (GPO) named SalesAPP GPO. Configure the GPO to publish the application to the uDCreate a Group Policy Object (GPO) named SalesAPP GPO. Configure the GPO to assign the application to the co
单选题Your network contains an Active Directory domain named contoso.com. You have a starter Group Policy object (GPO) named GPO1 that contains more than 100 settings. You need to create a new starter GPO based on the settings in GPO1. You must achieve this goal by using the minimum amount of administrative effort. What should you do?()ARun the New-GPStarterGPO cmdlet and the Copy-GPO cmdletBCreate a new starter GPO and manually configure the policy settings of the starter GPO.CRight-click GPO1, and then click Back Up.Create a new starter GPO,Right-click the new GPO, and then click Restore from BackupDRight-click GPO1, and then click Copy. Right-click Starter GPOs, and then click Paste
单选题公司有一个Active Directory域。公司运行终端服务。连接终端服务器的标准用户处于TSUsers组织单位(OU)中。管理用户处于TSAdmins OU中。没有其他用户连接到终端服务器。您需要确保只有TSAdmins OU的成员才能运行远程桌面协议文件,该怎么做?()A创建一个组策略对象 (GPO),该 GPO 将“远程桌面客户端连接”模板中的“允许来自未知发布者的 .rdp 文件”策略设置配置为“已禁用”。将该 GPO 应用到 TSUsers OU。B创建一个组策略对象 (GPO),该 GPO 将“远程桌面客户端连接”模板中的“允许来自有效发布者的 .rdp 文件和用户默认 .rdp 设置”策略设置配置为“已禁用”。将该 GPO 应用到 TSUsers OU。C创建一个组策略对象 (GPO),该 GPO 将“远程桌面客户端连接”模板中的“允许来自有效发布者的 .rdp 文件和用户默认 .rdp 设置”策略设置配置为“已启用”。将该 GPO 应用到 TSAdmins OU。D创建一个组策略对象 (GPO),该 GPO 将“远程桌面客户端连接”模板中的“指定表示受信任 .rdp 发布者的证书的 SHA1 指纹”策略设置配置为“已启用”。将该 GPO 应用到 TSAdmins OU。
多选题当组策略之间发生冲突时,下列说法正确的是()。A来自父域的GPO和来自子域的GPO设置冲突时,子容器的设置较后应用并发挥作用B链接到同一容器的不同的GPO的设置发生冲突时,在容器属性对话框GPO列表中最高位置的GPO设置较后应用并发挥作用C不管什么样的策略当他们发生冲突时,都不会生效D跟组策略对象的级别有关,级别高的不生效,级别低的生效
单选题公司有一个Active Directory域。名为 Server1的服务器运行Windows Server 2008。Server1上安装了“终端服务”角色和“终端服务Web访问”角色服务。您在Server1上安装了终端服务网关角色服务。您创建了终端服务连接授权策略。用户报告他们无法连接到Server1。您需要确保用户可以连接到Server1。该怎么做?()A在 Server1 上配置网络访问保护(NAP)。B在 Server1 上配置终端服务资源授权策略(RAP)。C创建一个终端服务组策略对象(GPO)。启用 GPO 中的“允许用户使用终端服务远程连接”设置。将该 GPO 链接到域。D创建一个终端服务组策略对象(GPO)。启用 GPO 中的“为 TS 漫游配置文件设置路径”设置。创建名为 TSUsers 的组织单位(OU)。将该 GPO 链接到 TSUsers OU。
多选题You have a single Active Directory directory service domain. All users are located in an organizational unit (OU) named ContosoUsers. All client computer accounts are located in an OU named ContosoComputers. You need to deploy a new application to all users. The application shortcut must be available the next time the users log on. What are two possible ways to achieve this goal?()ACreate a Group Policy object (GPO) to publish the application. Link the GPO to the ContosoComputers OU.BCreate a Group Policy object (GPO) to assign the application. Link the GPO to the ContosoComputers OU.CCreate a Group Policy object (GPO) to publish the application. Link the GPO to the ContosoUsers OU.DCreate a Group Policy object (GPO) to assign the application. Link the GPO to the ContosoUsers OU.
填空题组策略设置不发挥预期功能,常见冲突如下:()、()、禁用GPO节点、复制问题、域之间的GPO连接问题、()。