多选题Your company uses Active Directory integrated DNS. USers require access to the internet. You run a network capture. You notice the DNS server is sending DNS name resolution queries to a server named f. root-servers.net.You need to prevent the DNS server from sending queries to f.root-servers.net The server must be able to resolve names for internet hosts. Which two actions should you perform? ()AEnable forwarding to your ISPs DNS servers.BDisable the root hints on the DNS serverCDisable the netmask ordering option on the DNS serverDConfigure Reverse Lookup zones for the IP subnets on the network

多选题
Your company uses Active Directory integrated DNS. USers require access to the internet. You run a network capture. You notice the DNS server is sending DNS name resolution queries to a server named f. root-servers.net.You need to prevent the DNS server from sending queries to f.root-servers.net The server must be able to resolve names for internet hosts. Which two actions should you perform? ()
A

Enable forwarding to your ISPs DNS servers.

B

Disable the root hints on the DNS server

C

Disable the netmask ordering option on the DNS server

D

Configure Reverse Lookup zones for the IP subnets on the network


参考解析

解析: 暂无解析

相关考题:

Your company has an Active Directory forest. All domain controllers run the DNS Server server role.The company plans to decommission the WINS service.You need to enable forest-wide single name resolution.What should you do?()A. Enable WINS-R lookup in DNS.B. Create Service Location (SRV) records for the single name resources.C. Create an Active Directory-integrated zone named LegacyWINS. Create host (A) records for the single name resources.D. Create an Active Directory-integrated zone named GlobalNames. Create host (A) records for the single name resources.

Your company has a single active directory domain. The company network is protected by a firewall. Remote users connect to your network through a VPN server by using PPTP. When the users try to connect to the VPN server, they receive the following error message: Error 721: The remote computer is not responding. You need to ensure that users can establish a VPN connection. What should you do? ()A、Open port 1423 on the firewallB、Open port 1723 on the firewallC、Open port 3389 on the firewallD、Open port 6000 on the firewall

Your network consists of a single Active Directory domain. All domain controllers run Windows Server2008 R2. Your company and an external partner plan to collaborate on a project. The external partner has an Active Directory domain that contains Windows Server 2008 R2 domain controllers. You need to design a collaboration solution that meets the following requirements:   èAllows users to prevent sensitive documents from being forwarded to untrusted recipients or from being  printed.   èAllows users in the external partner organization to access the protected content to which they have been granted rights.   èSends all inter-organizational traffic over port 443.   èMinimizes the administrative effort required to manage the external users. What should you include in your design?()A、Establish a federated trust between your company and the external partner. Deploy a Windows Server 2008 R2 server that has Microsoft SharePoint Foundation 2010 installed.B、Establish a federated trust between your company and the external partner. Deploy a Windows Server 2008 R2 server that runs Microsoft SharePoint 2010 and that has the Active Directory Rights  Management Services (AD?RMS) role installed.C、Establish an external forest trust between your company and the external partner. Deploy a Windows Server 2008 R2 server that has the Active Directory Certificate Services server role installed. Implement Encrypting File System (EFS).D、Establish an external forest trust between your company and the external partner. Deploy a Windows Server 2008 R2 server that has the Active Directory Rights Management Service (AD?RMS)role installed  and Microsoft SharePoint Foundation 2010 installed.

You need to relocate the existing user and computer objects in your company to different  organizational units.     What are two possible ways to achieve this goal()A、Run the Dsmod utility.B、Run the Active Directory Migration Tool (ADMT).C、Run the Active Directory Users and Computers utility.D、Run the move-item command in the Microsoft Windows PowerShell utility.

Your company has a single Active Directory directory service forest with three domains. You plan to modify the Active Directory schema. You need to identify the schema master for the forest.  What should you do?()A、 Run the regsvr32 schmmgmt.dll command. Use the Active Directory Domains and Trusts snap-in. B、 Run the regsvr32 schmmgmt.dll command. Use the Active Directory Users and Computers snap-in. C、 Use the Dsget command-line tool.D、 Use the Dsquery command-line tool.

Your company has a single Active Directory Domain Services (AD DS) domain named PassGuide.com that uses Active Directory-integrated DNS. You deploy the Key Management Service (KMS) on a Windows 7 computer. You need to ensure that Windows 7 client computers can locate the KMS host and perform activation.   Which two actions should you perform?()A、Deploy a Windows Server 2008 KMS host.B、Grant the KMS server the Full Control permission on the _vlmcs._tcp.PassGuide.com DNS record.C、Grant the KMS server the Full Control permission on the _msdcs._tcp.PassGuide.com DNS zone.D、Create and deploy a GPO firewall rule to allow RPC traffic through TCP port 1688 on the client computers.

Your network consists of a single Active Directory domain. The domain contains a server named Server1 that runs Windows Server 2003 Service Pack 2 (SP2). Your company’s security policy states that domain users must be prevented from logging on to Server1 if a domain controller is unavailable. You disconnect Server1 from the network and discover that you can log on to Server1. You need to configure Server1 to comply with the company’s security policy. What should you do on Server1? ()A、From the local security policy, modify the Security Options.B、From the local security policy, modify the User Rights Assignment.C、From Active Directory Users and Computers, modify the properties of the Server1 account.D、From Active Directory Users and Computers, modify the properties of the Domain Computers group.

Your network contains an Active Directory domain named contoso.com. The domain contains a   server named Server1. The Active Directory Federation Services (AD FS) role is installed on Server1. Contoso.com is defined as an account store.   A partner company has a Web-based application that uses AD FS authentication. The partner company  plans to provide users from contoso.com access to the Web application.   You need to configure AD FS on contoso.com to allow contoso.com users to be authenticated by the   partner company.   What should you create on Server1()A、a new applicationB、a resource partnerC、an account partnerD、an organization claim

Your company has a main office and 40 branch offices. Each branch office is configured as a  separate Active Directory site that has a dedicated read-only domain controller (RODC). An  RODC server is stolen from one of the branch offices.     You need to identify the user accounts that were cached on the stolen RODC server.     Which utility should you use()A、Dsmod.exeB、Ntdsutil.exeC、Active Directory Sites and ServicesD、Active Directory Users and Computers

Your network contains an Active Directory forest.   You add an additional user principal name (UPN) suffix to the forest.   You need to modify the UPN suffix of all users. You want to achieve this goal by using the minimum  amount of administrative effort.   What should you use()A、the Active Directory Domains and Trusts consoleB、the Active Directory Users and Computers consoleC、the Csvde toolD、the Ldifde tool

Your company has an Active Directory forest. All domain controllers run the DNS server role. The company plans to decommission the WINS service. You need to enable forest-wide single name resolution. What should you do?()A、Enable WINS-R lookup in DNSB、Create Service Locator (SRV) records for the single name resourcesC、Create an Active Directory-Integrated zone named LegacyWINS. Create host (A) records for the single name resourcesD、Create an Active Directory-integrated zone named GlobalNames. Create host (A) records for the single name resources

Your network contains an Active Directory domain named contoso.com. Your company hires 500 temporary employees for the summer. The human resources department gives you a Microsoft Excel document that contains a list of the temporary employees. You need to automate the creation of user accounts for the 500 temporary employees. Which tool should you use?()A、The Add-Member cmdletB、ADSI EditC、The csvde.exe commandD、Active Directory Users and Computers

Your company has an Active Directory Rights Management Services (AD RMS) server. Users have   Windows Vista computers. An Active Directory domain is configured at the Windows Server 2003  functional level.   You need to configure AD?RMS so that users are able to protect their documents.  What should you do()A、Install the AD?RMS client 2.0 on each client computer.B、Add the RMS service account to the local administrators group on the AD RMS server.C、Establish an e-mail account in Active Directory Domain Services (AD DS) for each RMS user.D、Upgrade the Active Directory domain to the functional level of Windows Server 2008.

单选题Your company has a single domain named contoso.com. The contoso.com DNS zone is Active Directoryintegrated. Your partner company has a single domain named partner.com. The partner.com DNS zone is Active Directory-integrated. The IP Addresses of the DNS servers in the partner domain will change. You need to ensure name resolution for users in contoso.com to resources in partner.com on each DNS server in contoso.com. What should you do?()ACreate a stub zone for partner.com on each DNS server in contoso.comBConfigure the zone replication scope for partner.com to replicate to all DNS servers in the forestCConfigure an application directory partition in the contoso.com forest. Enlist all DNS servers in the contoso.com forest in the partitionDConfigure an application directory partition in the partner forest. Enlist all DNS servers in the partner forest in the partition.

单选题Your company has a single domain named contoso.com. the contoso.com DNS zone is active directory-integrated. Your partner company has a single domain named partner.com. the partner.com. DNS zone is active directory-integrated. The IP addresses to the DNS servers in the partner domain will change. You need to ensure name resolution for users in contoso.com to resources in partner.com on each DNS server in contoso.com. what should you do?()ACreate a stub zone for partner.com on each DNS server in contoso.com.BConfigure the zone replication scope for partner.com to replicate to all DNS servers In the forest.CConfigure an application directory partition in the contoso.com forest. Enlist all DNS servers in the contoso.com forest in the partition.DConfigure an application directory partition in the partner forest. Enlist all DNS servers in the partner forest in the partition.

单选题Your company has a single Active Directory directory service forest with three domains. You plan to modify the Active Directory schema. You need to identify the schema master for the forest.  What should you do?()A Run the regsvr32 schmmgmt.dll command. Use the Active Directory Domains and Trusts snap-in. B Run the regsvr32 schmmgmt.dll command. Use the Active Directory Users and Computers snap-in. C Use the Dsget command-line tool.D Use the Dsquery command-line tool.

单选题Your company has an Active Directory forest. All domain controllers run the DNS Server server role.The company plans to decommission the WINS service.You need to enable forest-wide single name resolution.What should you do?()AEnable WINS-R lookup in DNS.BCreate Service Location (SRV) records for the single name resources.CCreate an Active Directory-integrated zone named LegacyWINS. Create host (A) records for the single name resources.DCreate an Active Directory-integrated zone named GlobalNames. Create host (A) records for the single name resources.

单选题Your company has a single Active Directory directory service domain. All servers in your environment run Windows Server 2003. All domain controllers run Active DirectoryCintegrated DNS. You create several static host (A) resource records. You need to verify that the DNS server is sending the correct host records to all client computers.  Which command-line tool should you use?()A netshB tracertC ntdsutilD nslookup

单选题Your company has a single Active Directory directory service forest with multiple domains. The  company has a main office with 1,000 users and a single branch office with 500 users. Each office is aseparate Active Directory site. The main office Active Directory site has two domain controllers with Global  Catalog services. Company employees must be able to work in both offices. You need to plan the  placement and configuration of domain controllers.  What should you do?()A Deploy two additional domain controllers in the main office Active Directory site.B Deploy global catalog servers in the branch office Active Directory site.C Enable change notification on the site link between the main office Active Directory site and the branch office Active Directory site.D Disable change notification on the site link between the main office Active Directory site and the branch office Active Directory site.

多选题Your company has a single Active Directory directory service forest. All user accounts are located in  the Users container. You need to create a number of organizational units (OUs) that will be used to store  user accounts.  What are two possible ways to achieve this goal?()AUse the Active Directory Sites and Services snap-in.BUse the Active Directory Users and Computers snap-in.CUse the Dsadd command-line tool with the OU parameter.DUse the Dsmod command-line tool with the OU parameter.

单选题Your network contains an Active Directory domain named contoso.com. The domain contains a  server named Server1. The Active Directory Federation Services (AD FS) role is installed on  Server1.     Contoso.com is defined as an account store.  A partner company has a Web-based application that uses AD FS authentication. The partner  company plans to provide users from contoso.com access to the Web application. You need to  configure AD FS on contoso.com to allow contoso.com users to be authenticated by the partner  company.     What should you create on Server1()Aa new applicationBa resource partnerCan account partnerDan organization claim

单选题Your company has a single domain named contoso.com. The contoso.com DNS zone is Active Directory-integrated. Your partner company has a single domain named partner.com. The partner.com DNS zone is Active Directory-integrated. The IP addresses of the DNS servers in the partner domain will change. You need to ensure name resolution for users in contoso.com to resources in partner.com. What should you do?()ACreate a stub zone for partner.com on each DNS server in contoso.com.BConfigure the Zone Replication Scope for partner.com to replicate to all DNS servers in the forest.CConfigure an application directory partition in the contoso.com forest. Enlist all DNS servers in the contoso.com forest in the partition.DConfigure an application directory partition in the partner forest. Enlist all DNS servers in the partner forest in the partition.

多选题Your company uses Active Directory-integrated DNS. Users require access to the Internet. You run a network capture. You notice the DNS server is sending DNS name resolution queries to a server named f.root-servers.net. You need to prevent the DNS server from sending queries to f.root-servers.net. The server must be able to resolve names for Internet hosts. Which two actions should you perform?()AEnable forwarding to your ISP¯s DNS serversBDisable the root hints on the DNS server.CDisable the netmask ordering option on the DNS server.DConfigure Reverse Lookup Zones for the IP subnets on the network.