单选题All client computers on your company network run Windows 7 and are members of an Active Directory Domain Services domain. AppLocker is configured to allow only approved applications to run. Employees with standard user account permissions are able to run applications that install into the user profile folder. You need to prevent standard users from running unauthorized applications. What should you do?()ACreate Executable Rules by selecting the Create Default Rules option.BCreate Windows Installer Rules by selecting the Create Default Rules option.CCreate the following Windows Installer Rule.Deny C Everyone - %OSDRIVE%/Users//Downloads/*DCreate the following Executable Rule.Deny - Everyone - %OSDRIVE%/Users//Documents/*
单选题
All client computers on your company network run Windows 7 and are members of an Active Directory Domain Services domain. AppLocker is configured to allow only approved applications to run. Employees with standard user account permissions are able to run applications that install into the user profile folder. You need to prevent standard users from running unauthorized applications. What should you do?()
A
Create Executable Rules by selecting the Create Default Rules option.
B
Create Windows Installer Rules by selecting the Create Default Rules option.
C
Create the following Windows Installer Rule.Deny C Everyone - %OSDRIVE%/Users/
D
Create the following Executable Rule.Deny - Everyone - %OSDRIVE%/Users/
参考解析
解析:
暂无解析
相关考题:
All client computers on your company network run Windows 7 and are members of an Active Directory Domain Services domain. Your company policy requires that all unnecessary services be disabled on the computers. The Sales department staff has been provided with new mobile broadband adapters that use the Global System for Mobile Communications (GSM) technology. You need to ensure that portable computers can connect to the broadband GSM network. Which service should be enabled on the portable computers?()A.WLAN AutoConfigB.WWAN AutoConfigC.Computer BrowserD.Portable Device Enumerator Service
Your network consists of a single Active Directory domain. All servers run Windows Server 2003 Service Pack 2 (SP2).You need to provide a user named User1 the required permissions to reset passwords in the domain. What should you do?()A、Install and run the Security Configuration Wizard (SCW).B、From the Authorization Manager snap-in, modify the authorization store type.C、From Active Directory Sites and Services, run the Delegation of Control Wizard.D、From Active Directory Users and Computers, run the Delegation of Control Wizard.
Your network consists of a single Active Directory domain. All servers run Windows Server 2003 Service Pack 2 (SP2). All client computers run Windows XP Professional Service Pack 3 (SP3). You need to ensure that locked out user accounts remain locked out until an administrator unlocks the accounts. What should you do? ()A、In the Default Domain Policy, set the Account lockout duration to 0.B、In the Default Domain Policy, set the Account lockout duration to 99999.C、From Active Directory Users and Computers, select the Account is trusted for delegation option for all user accounts.D、From Active Directory Users and Computers, select the Account is sensitive and cannot be delegated option for all user accounts.
Your company has a main office and four br anch offices. You have an Active Directory Domain Services (AD DS) domain. All servers run Windows Server 2008 R2. All client computers run Windows 7. You virtualize applications by using Microsoft Application Virtualization (App - V). You need to ensure tha t all users access virtualized applications from their local branch office, and allow for active upgrades. Which should you install in each branch office?()A、a server with the File Services role installedB、a server with the Web Server (IIS) role installedC、Microsoft System Center Configuration Manager 2007 R2D、Microsoft System Center Application Virtualization Streaming Server
You are the domain administrator for your company's Active Directory domain. All servers run Windows Server 2003. All client computers run Windows XP Professional and have the latest service pack installed. You manage a server that has Windows Server Update Services (WSUS) installed. The latest updates were synchronized and approved for installation on the client computers. You need to configure the client computers to download and automatically install the approved updates from the WSUS server. What should you do? ()A、On the client computers, open the System Properties dialog box. On the Automatic Updates tab, configure the client computers to update automatically every day.B、Create a Group Policy object (GPO) that has the appropriate Automatic Updates settings configured. Apply the GPO to an organizational unit (OU) that includes the client computers.C、In Active Directory Users and Computers, modify the settings for the client computer accounts. Configure the Managed By property to specify the WSUS server account.D、Create a local group on the WSUS server. Assign the group the Allow - Read and the Allow - Write permissions for the WSUSContent folder on the WSUS server. Add all the users of the client computers to the local group.
Your network consists of a single Active Directory domain. You have a domain controller and a member server that run Windows Server 2008 R2. Both servers are configured as DNS servers. Client computers run either Windows XP Service Pack 3 or Windows 7. You have a standard primary zone on the domain controller. The member server hosts a secondary copy of the zone.You need to ensure that only authenticated users are allowed to update host (A) records in the DNS zone. What should you do first()A、On the member server, add a conditional forwarder.B、On the member server, install Active Directory Domain Services.C、Add all computer accounts to the DNSUpdateProxy group.D、Convert the standard primary zone to an Active Directory-integrated zone.
All client computers on your company network run Windows 7 and are members of an Active Directory Domain Services domain. Employees using portable computers report that they get connected to a coffee shop wireless network from the company conference room. You need to ensure that the employees connect to the company wireless network by default from anywhere within the company premises. What should you do?()A、Configure the Network authentication (Shared mode) setting.B、Apply a Wireless Network Policy to set the network type to WPA-PSK.C、Apply a Wireless Network Policy to automatically connect to the company wireless network.D、Apply a Wireless Network Policy to set the company wireless network as the preferred network.
You are the domain administrator for your company's Active Directory domain. All client computers run Windows 2000 Professional. You recently deployed 10 new servers that run Windows Server 2003. You placed the servers in a new organizational unit (OU) named W2K3Servers. Anne is another network administrator. You need to configure the appropriate permissions to allow Anne to manage the new servers by using Terminal Services from her client computer. You need to assign Anne only the permissions she needs to perform her job. What should you do?()A、Add Anne's user account to the local Power Users group on each server that runs Windows Server 2003.B、Add Anne's user account to the Remote Desktop Users group on each server that runs Windows Server 2003.C、Assign Anne's user account the Allow - Read and the Allow - Write permissions for the W2K3Servers OU.D、Configure the Managed By property for the W2K3Servers OU to Anne's user account.
Your company’s network has client computers that run Windows 7. When a user attempts to log on to the domain from a computer named Client1,she receives the following message: The system cannot log you on to this domain because the system’s computer account in its primary domain is missing or the password on that account is incorrect. You need to ensure that the user can log on to the domain from Client1. What should you do?()A、Disjoin and rejoin Client1 to the domain.B、Add the computer account for Client1 to the Domain Computers Active Directory group.C、Reset the account password for Client1 through Active Directory Users and Computers.D、Reset the account password for the user through Active Directory Users and Computers.
All client computers on your company network run Windows 7 and are members of an Active Directory Domain Services domain. AppLocker is configured to allow only approved applications to run. Employees with standard user account permissions are able to run applications that install into the user profile folder. You need to prevent standard users from running unauthorized applications. What should you do?()A、Create Executable Rules by selecting the Create Default Rules option.B、Create Windows Installer Rules by selecting the Create Default Rules option.C、Create the following Windows Installer Rule.Deny C Everyone - %OSDRIVE%/Users//Downloads/*D、Create the following Executable Rule.Deny - Everyone - %OSDRIVE%/Users//Documents/*
All client computers on your company network run Windows 7 and are members of an Active Directory Domain Services domain. Your company policy requires that all unnecessary services be disabled on the computers. The Sales department staff has been provided with new mobile broadband adapters that use the Global System for Mobile Communications (GSM) technology. You need to ensure that portable computers can connect to the broadband GSM network. Which service should be enabled on the portable computers?()A、WLAN AutoConfigB、WWAN AutoConfigC、Computer BrowserD、Portable Device Enumerator Service
You are the network administrator for The network consists of a single Active Directory domain named All network servers run Windows Server 2003. Three thousand client computers run Windows 2000 Professional, and 1,500 client computers run Windows XP Professional. A new employee named Dr King is hired to assist you in installing Windows XP Professional on 150 new client computers. You need to ensure that Dr King has only the minimum permissions required to add new computer accounts to the domain and to own the accounts that he creates. Dr King must not be able to delete computer accounts. What should you do?()A、Add Dr King's user account to the Server Operators group.B、Add Dr King's user account to the Account Operators group.C、Use the Delegation of Control Wizard to permit Dr King's user account to create new computer objects in the Computers container.D、Create a Group Policy object (GPO) and link it to the domain. Configure the GPO to permit Dr King's user account to add client computers to the domain.
You are the network administrator for your company. The network consists of a single Active Directorydomain. All network servers run Windows Server 2003. Three thousand client computers run Windows 2000Professional, and 1,500 client computers run Windows XP Professional.A new employee named Peter is hired to assist you in installing Windows XP Professional on 150 new client computers.You need to ensure that Peter has only the minimum permissions required to add new computer accounts to the domain and to own the accounts that he creates. Peter must not be able to delete computer accounts.What should you do()?A、Add Peter's user account to the Server Operators group.B、Add Peter's user account to the Account Operators group.C、Use the Delegation of Control Wizard to permit Peter's user account to create new computer objects in the Computers container.D、Create a Group Policy object (GPO) and link it to the domain. Configure the GPO to permit Peter's user account to add client computers to the domain.
单选题You are the network administrator for your company. The network consists of a single Active Directorydomain. All network servers run Windows Server 2003. Three thousand client computers run Windows 2000Professional, and 1,500 client computers run Windows XP Professional.A new employee named Peter is hired to assist you in installing Windows XP Professional on 150 new client computers.You need to ensure that Peter has only the minimum permissions required to add new computer accounts to the domain and to own the accounts that he creates. Peter must not be able to delete computer accounts.What should you do()?AAdd Peter's user account to the Server Operators group.BAdd Peter's user account to the Account Operators group.CUse the Delegation of Control Wizard to permit Peter's user account to create new computer objects in the Computers container.DCreate a Group Policy object (GPO) and link it to the domain. Configure the GPO to permit Peter's user account to add client computers to the domain.
单选题You are the network administrator for The network consists of a single Active Directory domain named All network servers run Windows Server 2003. Three thousand client computers run Windows 2000 Professional, and 1,500 client computers run Windows XP Professional. A new employee named Dr King is hired to assist you in installing Windows XP Professional on 150 new client computers. You need to ensure that Dr King has only the minimum permissions required to add new computer accounts to the domain and to own the accounts that he creates. Dr King must not be able to delete computer accounts. What should you do?()AAdd Dr King's user account to the Server Operators group.BAdd Dr King's user account to the Account Operators group.CUse the Delegation of Control Wizard to permit Dr King's user account to create new computer objects in the Computers container.DCreate a Group Policy object (GPO) and link it to the domain. Configure the GPO to permit Dr King's user account to add client computers to the domain.
单选题Your company has an Active Directory Rights Management Services (AD RMS) server. Users have Windows Vista computers. An Active Directory domain is configured at the Windows Server 2003 functional level. You need to configure AD RMS so that users are able to protect their documents. What should you do()AInstall the AD RMS client 2.0 on each client computer.BAdd the RMS service account to the local administrators group on the AD RMS server.CEstablish an e-mail account in Active Directory Domain Services (AD DS) for each RMS user.DUpgrade the Active Directory domain to the functional level of Windows Server 2008.
单选题Your network consists of a single Active Directory domain. All servers run Windows Server 2003 Service Pack 2 (SP2).You need to provide a user named User1 the required permissions to reset passwords in the domain. What should you do?()AInstall and run the Security Configuration Wizard (SCW).BFrom the Authorization Manager snap-in, modify the authorization store type.CFrom Active Directory Sites and Services, run the Delegation of Control Wizard.DFrom Active Directory Users and Computers, run the Delegation of Control Wizard.
单选题All client computers on your company network run Windows 7 and are members of an Active Directory Domain Services domain. Employees using portable computers report that they get connected to a coffee shop wireless network from the company conference room. You need to ensure that the employees connect to the company wireless network by default from anywhere within the company premises. What should you do?()AConfigure the Network authentication (Shared mode) setting.BApply a Wireless Network Policy to set the network type to WPA-PSK.CApply a Wireless Network Policy to automatically connect to the company wireless network.DApply a Wireless Network Policy to set the company wireless network as the preferred network.
单选题Your network consists of a single Active Directory domain. You have a domain controller and a member server that run Windows Server 2008 R2. Both servers are configured as DNS servers. Client computers run either Windows XP Service Pack 3 or Windows 7. You have a standard primary zone on the domain controller. The member server hosts a secondary copy of the zone.You need to ensure that only authenticated users are allowed to update host (A) records in the DNS zone. What should you do first()AOn the member server, add a conditional forwarder.BOn the member server, install Active Directory Domain Services.CAdd all computer accounts to the DNSUpdateProxy group.DConvert the standard primary zone to an Active Directory-integrated zone.
单选题You are the network administrator for The network consists of a single Active Directory domain named All network servers run Windows Server 2003. All client computers run Windows XP Professional and have the latest service pack installed. There are 500 client computers. You manage a server that has Software Update Services (SUS) installed. The latest updates were synchronized and approved for installation on the client computers. You need to configure the client computers to download the approved updates. What should you do?()ACreate a text file named Auto-Update.ini. Configure the correct Automatic Updates settings in the file. Copy and paste the file into the Systemroot folder on all client computers.BCreate a GPO that has the appropriate Automatic Updates settings configured. Apply the GPO to the client computers that you to need to configure.CIn Active Directory Users and Computers, modify the settings for the client computer accounts. Configure the Managed By property to specify the SUS server account.DCreate a local group on the SUS server. Assign the group the Allow - Read and the Allow - Write permissions for the AutoUpdate folder on the SUS server. Add all the users of the client computers to the local group.
单选题Your company’s network has client computers that run Windows 7. When a user attempts to log on to the domain from a computer named Client1,she receives the following message: The system cannot log you on to this domain because the system’s computer account in its primary domain is missing or the password on that account is incorrect. You need to ensure that the user can log on to the domain from Client1. What should you do?()ADisjoin and rejoin Client1 to the domain.BAdd the computer account for Client1 to the Domain Computers Active Directory group.CReset the account password for Client1 through Active Directory Users and Computers.DReset the account password for the user through Active Directory Users and Computers.
单选题Your network consists of a single Active Directory domain. All servers run Windows Server 2003 Service Pack 2 (SP2). All client computers run Windows XP Professional Service Pack 3 (SP3). You need to ensure that locked out user accounts remain locked out until an administrator unlocks the accounts. What should you do? ()AIn the Default Domain Policy, set the Account lockout duration to 0.BIn the Default Domain Policy, set the Account lockout duration to 99999.CFrom Active Directory Users and Computers, select the Account is trusted for delegation option for all user accounts.DFrom Active Directory Users and Computers, select the Account is sensitive and cannot be delegated option for all user accounts.
单选题You are the domain administrator for your company's Active Directory domain. All servers run Windows Server 2003. All client computers run Windows XP Professional and have the latest service pack installed. You manage a server that has Windows Server Update Services (WSUS) installed. The latest updates were synchronized and approved for installation on the client computers. You need to configure the client computers to download and automatically install the approved updates from the WSUS server. What should you do? ()AOn the client computers, open the System Properties dialog box. On the Automatic Updates tab, configure the client computers to update automatically every day.BCreate a Group Policy object (GPO) that has the appropriate Automatic Updates settings configured. Apply the GPO to an organizational unit (OU) that includes the client computers.CIn Active Directory Users and Computers, modify the settings for the client computer accounts. Configure the Managed By property to specify the WSUS server account.DCreate a local group on the WSUS server. Assign the group the Allow - Read and the Allow - Write permissions for the WSUSContent folder on the WSUS server. Add all the users of the client computers to the local group.
单选题You are the domain administrator for your company's Active Directory domain. All client computers run Windows 2000 Professional. You recently deployed 10 new servers that run Windows Server 2003. You placed the servers in a new organizational unit (OU) named W2K3Servers. Anne is another network administrator. You need to configure the appropriate permissions to allow Anne to manage the new servers by using Terminal Services from her client computer. You need to assign Anne only the permissions she needs to perform her job. What should you do? ()AAdd Anne's user account to the local Power Users group on each server that runs Windows Server 2003.BAdd Anne's user account to the Remote Desktop Users group on each server that runs Windows Server 2003.CAssign Anne's user account the Allow - Read and the Allow - Write permissions for the W2K3Servers OU.DConfigure the Managed By property for the W2K3Servers OU to Anne's user account.
单选题All client computers on your company network run Windows 7 and are members of an Active Directory Domain Services domain. AppLocker is configured to allow only approved applications to run. Employees with standard user account permissions are able to run applications that install into the user profile folder. You need to prevent standard users from running unauthorized applications. What should you do?()ACreate Executable Rules by selecting the Create Default Rules option.BCreate Windows Installer Rules by selecting the Create Default Rules option.CCreate the following Windows Installer Rule.Deny C Everyone - %OSDRIVE%/Users//Downloads/*DCreate the following Executable Rule.Deny - Everyone - %OSDRIVE%/Users//Documents/*
单选题All client computers on your company network run Windows 7 and are members of an Active Directory Domain Services domain. Your company policy requires that all unnecessary services be disabled on the computers. The Sales department staff has been provided with new mobile broadband adapters that use the Global System for Mobile Communications (GSM) technology. You need to ensure that portable computers can connect to the broadband GSM network. Which service should be enabled on the portable computers?()AWLAN AutoConfigBWWAN AutoConfigCComputer BrowserDPortable Device Enumerator Service
单选题Your company has a main office and four branch offices. You have an Active Directory Domain Services (AD DS) domain. All servers run Windows Server 2008 R2.All client computers run Windows 7. You virtualize applications by using Microsoft Application Virtualization (App-V). You need to ensure that all users access virtualized applications from their local branch office, and allow for active upgrades. Which should you install in each branch office?()Aa server with the File Services role installedBa server with the Web Server (IIS) role installedCMicrosoft System Center Configuration Manager 2007 R2DMicrosoft System Center Application Virtualization Streaming Server
单选题You are the domain administrator for your company's Active Directory domain. All client computers run Windows 2000 Professional. You recently deployed 10 new servers that run Windows Server 2003. You placed the servers in a new organizational unit (OU) named W2K3Servers. Anne is another network administrator. You need to configure the appropriate permissions to allow Anne to manage the new servers by using Terminal Services from her client computer. You need to assign Anne only the permissions she needs to perform her job. What should you do? ()AAdd Anne's user account to the local Power Users group on each server that runs Windows Server 2003.BAdd Anne's user account to the Remote Desktop Users group on each server that runs Windows Server 2003.CAssign Anne's user account the Allow - Read and the Allow - Write permissions for the W2K3Servers OU.DConfigure the Managed By property for the W2K3Servers OU to Anne's user account.