多选题One of the remote branch offices of Certkiller branch is running a Windows Server 2008 having ready only domain controller (RODC) installed.For security reasons you don’t want some critical credentials like (passwords, encryption keys) to be stored on RODC. What should you do so that these credentials are not replicated to any RODC’s in the forest()AConfigure RODC filtered attribute set on the serverBConfigure RODC filtered set on the server that holds Schema Operations Master role.CDelegate local administrative permissions for an RODC to any domain user without granting that user any user rights for the domainDConfigure forest functional level server for Windows server 2008 to configure filteredattribute set.ENone of the above

多选题
One of the remote branch offices of Certkiller branch is running a Windows Server 2008 having ready only domain controller (RODC) installed.For security reasons you don’t want some critical credentials like (passwords, encryption keys) to be stored on RODC. What should you do so that these credentials are not replicated to any RODC’s in the forest()
A

Configure RODC filtered attribute set on the server

B

Configure RODC filtered set on the server that holds Schema Operations Master role.

C

Delegate local administrative permissions for an RODC to any domain user without granting that user any user rights for the domain

D

Configure forest functional level server for Windows server 2008 to configure filteredattribute set.

E

None of the above


参考解析

解析: 暂无解析

相关考题:

You are the administrator of Ezonexam.com's network.Ezonexam has several branch offices. Each branch office has a Windows 2000 Server computer with Service Pack 2 installed. Each branch office also has a technical support department. You want to configure the remote Windows 2000 Server computers so that whenever a new driver becomes available from Microsoft, the branch offices are notified automatically when the administrator logs on to the server.What should you do?A.Install Windows UpdateB.Install the Windows 2000 Resource Kit.C.Configure System File Checker to notify the branch offices.D.Configure Window File Protection to notify the branch offices.

You are the network administrator for The company contains of a main office and five branch offices. Network servers are installed in each office. All servers run 2003The technical support stuff is located in the main office. Users in the branch office do not have the Log on locally right on local servers.Servers in the branch office collect auditing information.You need the ability to review the ability to review the auditing information located on each branch office server while you are working at the main office. You also need to save the auditing information on each branch office server on the local hard drive.Which two actions should you perform?() (Each correct answer presents part of the solution. Choose two.)A. From the Security Configuration and Analysis snap-in save the appropriate .inf file on the local hard drive.B. Solicit Remote Assistance from each branch office server.C. From Computer Management open Event Viewer, save the appropriate .evt file on the local hard driveD. Run secedit.exe, specify the appropriate parameterE. Establish a Remote Desktop client session with each branch office server

Certkiller .com boosts a main office and 20 branch offices. Configured as a separate site, each branch office has a Read-Only Domain Controller (RODC) server installed.  Users in remote offices complain that they are unable to log on to their accounts.  What should you do to make sure that the cached credentials for user accounts are only stored in their local branch office RODC server()A、Open the RODC computer account security tab and set Allow on the Receive as permission only for the users that are unable to log on to their accountsB、Add a password replication policy to the main Domain RODC and add user accounts in the security groupC、Configure a unique security group for each branch office and add user accounts to the respective security group. Add the security groups to the password replication allowed group on the main RODC serverD、Configure and add a separate password replication policy on each RODC computer account

Your company has an Active Directory domain. The company has a main office and a branch office. Both the offices have domain controllers that run Active Directory-integrated DNS zones. All client computers are configured to use the local domain controllers for DNS resolution. The domain controllers at the branch office location are configured as Read-Only Domain Controllers (RODC). You change the IP address of an exisiting server named SRV2 in the main office. You need the branch office DNS servers to reflect the change immediately. What should you do?() A、 Run the dnscmd /ZoneUpdateFromDs command on the branch office servers.B、 Run the dnscmd /ZoneUpdateFromDs command on a domain controller in the main office.C、 Change the domain controllers at the branch offices from RODCs to standard domain controllers.D、 Decrease the Minimum (default) TTL option to 15 minutes on the Start of Authority (SOA) record for thezone.

You work as the enterprise exchange administrator at TestKing.com. TestKing.com makes use of Microsoft Exchange Server messaging solution. The TestKing.com network consists of a single ActiveDirectory forest that contains a single named testking.com. TestKing.com has its headquartets in Chicago and 15 branch offices around the globe, which are configured as Active Directory sites. The branch offices of Testking.com are connected to the Chicagooffices and directly to the Internet. For the future, all the branch offices should have Exchange Server 2010 Hub Transport server that hasfollowing characteristics: 1. The Internet connections of the branch offices should be used to send e-mail. 2. The e-mail messages from the branch offices to the Chicago offices should go via a WAN link. 3. The branch offices should not use the WAN link to send e-mail to via the Internet 4. Administrative overhead should be reduced. What should you do?()A、The best option is to use 10 Send connectors at every office.B、The best option is to use one SMTP site link at every office.C、The best option is to use one Send connector at every office.D、The best option is to use two Send connectors at every office.

You are the network administrator for The company contains of a main office and five branch offices. Network servers are installed in each office. All servers run 2003 The technical support stuff is located in the main office. Users in the branch office do not have the "Log on locally" right on local servers. Servers in the branch office collect auditing information. You need the ability to review the ability to review the auditing information located on each branch office server while you are working at the main office. You also need to save the auditing information on each branch office server on the local hard drive. Which two actions should you perform?() (Each correct answer presents part of the solution. Choose two.)A、From the Security Configuration and Analysis snap-in save the appropriate .inf file on the local hard drive.B、Solicit Remote Assistance from each branch office server.C、From Computer Management open Event Viewer, save the appropriate .evt file on the local hard driveD、Run secedit.exe, specify the appropriate parameterE、Establish a Remote Desktop client session with each branch office server

Your company has a main office and 50 branch offices. Each office is configured as an Active Directory site. Each branch office site contains a domain controller.  The main office site contains all the global catalog servers in the forest. Each branch office contains a WAN link that connects to the main office.  You need to plan the deployment of new Mailbox servers to meet the following requirements: .Ensure that users in the branch offices can access their mailboxes if their local domain controller fails .Deploy the minimum number of Exchange servers What should you include in the plan?()A、One Mailbox server in each office and global catalog servers in each branch officeB、One Mailbox server in each office and Universal Group Membership Caching in each branch officeC、One Mailbox server in each branch office onlyD、Multiple Mailbox servers in the main office only

Your company has an Active Directory forest. The company has branch offices in three locations.  Each location has an organizational unit.     You need to ensure that the branch office administrators are able to create and apply GPOs only  to their respective organizational units.     Which two actions should you perform()A、Add the user accounts of the branch office administrators to the Group Policy Creator Owners Group.B、Modify the Managed By tab in each organizational unit to add the branch office administrators to their respective orgC、Run the Delegation of Control Wizard and delegate the right to link GPOs for the domain to the branch office adminD、Run the Delegation of Control Wizard and delegate the right to link GPOs for their branch organizational units to the

You are designing a site topology for the new Active Directory environment. What should you do?()A、Create one site for all offices. Place the subnets for the four branch offices and the Sydney main office in this site.  B、Create two sites: one site for the four branch offices and one site for the Sydney main office. Place the subnets for the branch offices in one site. Place the subnet for the Sydney main office in the other site.  C、Create three sites: one site for the four branch offices, one site for the Sydney main office, and one site for the Sydney satellite offices.  D、Create four sites: one for the Melbourne and Perth branch offices, one site for the Berlin and Paris branch offices, one site for the Sydney main office, and one site for the Sydney satellite offices.  E、Create five sites; one site for the Melbourne branch office, one site for the Perth branch office, one site for the Berlin branch office, one site for the Paris branch office, and one site for the Sydney main office. Place the subnets for each branch office and the Sydney main office in their respective sites.

Your company has a main office and two branch offices.Domain controllers in the main office host an Active Directory-integrated zone.The DNS servers in the branch offices host a secondary zone for the domain and use the main office DNS servers as their DNS Master servers for the zone.The company adds a new branch office. You add a member server named Branch3 and install the DNS Server server role on the server. You configure a secondary zone for the domain. The zone transfer fails.You need to configure DNS to provide zone data to the DNS server in the new branch office.What should you do?()A、Run dnscmd by using the ZoneResetMasters option.B、Run dnscmd by using the ZoneResetSecondaries option.C、Add the new DNS server to the Zone Transfers tab on one of the DNS servers in the main office.D、Add the new DNS server to the DNSUpdateProxy Global security group in Active Directory Users and Computers.

Your company has an Active Directory forest. The company has branch offices in three locations.   Each location has an organizational unit.   You need to ensure that the branch office administrators are able to create and apply GPOs only to their  respective organizational units.    Which two actions should you perform()A、Add the user accounts of the branch office administrators to the Group Policy Creator Owners Group.B、Modify the Managed By tab in each organizational unit to add the branch office administrators to their  respective organizational units.C、Run the Delegation of Control Wizard and delegate the right to link GPOs for the domain to the branch  office administrators.D、Run the Delegation of Control Wizard and delegate the right to link GPOs for their branch  organizational units to the branch office administrators.

Your company has a main office and 40 branch offices. Each branch office is configured as a  separate Active Directory site that has a dedicated read-only domain controller (RODC). An  RODC server is stolen from one of the branch offices.     You need to identify the user accounts that were cached on the stolen RODC server.     Which utility should you use()A、Dsmod.exeB、Ntdsutil.exeC、Active Directory Sites and ServicesD、Active Directory Users and Computers

You are the systems engineer for your company. The network consists of a single Active Directory domain. The company has a main office and two branch offices. All servers run Windows Server 2003. All client computers run either Windows XP Professional or Windows 2000 Professional.   Each branch office maintains a dedicated 256-Kbps connection to the main office. Each office also maintains a T1 connection to the Internet. Each office has a Microsoft Internet Security and Acceleration (ISA) Server 2000 computer, which provides firewall and proxy services on the Internet connection. Each branch office contains one domain controller and five servers that are not domain controllers. There is minimal administrative staff at the branch offices.  A new company policy states that all servers must now be remotely administered by administrators in the main office. The policy states that all remote administration connections must be authenticated by the domain and that all traffic must be encrypted. The policy also states that the remote administration traffic must never be carried in clear text across the Internet.   You choose to implement remote administration by enabling Remote Desktop connections on all servers on the network. You decide to use the Internet-connected T1 lines for remote administration connectivity between offices.   Because administrative tasks might require simultaneous connections to multiple servers across the network, you need to ensure that administrators do not lose connections to servers in one office when they attempt to connect to servers in another office.   What should you do? ()A、 Configure Routing and Remote Access on one server in each branch office. Create L2TP/IPSec VPN ports on these servers. Create new VPN connections on the administrators’ computers to connect to the VPN servers in the branch offices.B、 Configure a VPN server in each branch office. Create connections that use IPSec Authentication Header (AH) in tunnel mode from the main office connect to VPN servers in the branch offices.C、 Configure a local L2TP/IPSec VPN connection on the ISA Server 2000 firewall computer in the main office. Configure the ISA Server 2000 firewall computers at the branch offices as remote L2TP/IPSec VPN servers.D、 Configure a local PPTP VPN connection on the ISA Server 2000 firewall computers in each branch office. Configure the ISA Server 2000 firewall computer at the main office as a remote PPTP VPN server.

多选题You are the network administrator for The company contains of a main office and five branch offices. Network servers are installed in each office. All servers run 2003 The technical support stuff is located in the main office. Users in the branch office do not have the "Log on locally" right on local servers. Servers in the branch office collect auditing information. You need the ability to review the ability to review the auditing information located on each branch office server while you are working at the main office. You also need to save the auditing information on each branch office server on the local hard drive. Which two actions should you perform?() (Each correct answer presents part of the solution. Choose two.)AFrom the Security Configuration and Analysis snap-in save the appropriate .inf file on the local hard drive.BSolicit Remote Assistance from each branch office server.CFrom Computer Management open Event Viewer, save the appropriate .evt file on the local hard driveDRun secedit.exe, specify the appropriate parameterEEstablish a Remote Desktop client session with each branch office server

单选题Your company has a main office and 10 branch offices. Each branch office has an Active   Directory site that contains one domain controller. Only domain controllers in the main office are  configured as Global Catalog servers.     You need to deactivate the Universal Group Membership Caching option on the domain  controllers in the branch offices.   At which level should you deactivate the Universal Group Membership Caching option()ASiteBServerCDomainDConnection object

多选题Your company has a single active directory domain. The company has a main office and three branch offices. The domain controller in the main office runs windows 2008 server and provides DNS for the main office and all of the branch offices.Each branch office runs windows server 2008. Users in the branch offices report that it takes a long time to access network resources. You confirm that there are no problems with WAN connectivity or bandwidth. You need to ensure that users in the branch offices are able to access network resources as quickly as possible. Which two actions should you perform? ()AConfigure a standard primary zone in each of the branch offices.BConfigure a forwarders that point to the DNS server in the main office.CConfigure a secondary zone in each of the branch offices that users the main office DNS server as a master.DInstall DNS servers in each of the branch offices.

单选题Your company’s network includes a main office and several branch offices.  The branch offices are connected to the main office by high-latency links.   All client computers run Windows 7 Enterprise, and all servers run Windows Server 2008 R2.  No servers are located in the branch offices.  Client computers in the branch offices frequently access a specific group of files on a file server named Server1.   These access requests consume significant amounts of bandwidth and reduce the speed of higher-priority traffic.   You need to reduce the bandwidth that is consumed by requests for frequently accessed files.   What should you do?()AConfigure BranchCache in Hosted Cache mode on client computers in the main office and the branch offices.BConfigure BranchCache in Distributed Cache mode on client computers in the main office and the branch offices.CEnable the BranchCache For Network Files role service on Server1. Configure BranchCache in Hosted Cache modon client computers in only the branch offices.DEnable the BranchCache For Network Files role service on Server1. Configure BranchCache in Distributed Cache mode on client computers in only the branch offices.

多选题Your company has a single Active Directory domain.The company has a main office and three branch offices. The domain controller in the main office runs Windows Server 2008 R2 and provides DNS for the main office and all of the branch offices. Each branch office contains a file server that runs Windows Server 2008 R2.Users in the branch offices report that it takes a long time to access network resources. You confirm that there are no problems with WAN connectivity or bandwidth.You need to ensure that users in the branch offices are able to access network resources as quickly as possible.Which two actions should you perform?()AConfigure a standard primary zone in each of the branch offices.BConfigure forwarders that point to the DNS server in the main office.CConfigure a secondary zone in each of the branch offices that uses the main office DNS server as a master.DInstall DNS servers in each of the branch offices.

单选题Your network contains several branch offices. All servers run Windows Server 2008 R2. Each branch office contains a domain controller and a file server.   The DHCP Server server role is installed on the branch office domain controllers. Each office has a branch office administrator.   You need to delegate the administration of DHCP to meet the following requirements: èAllow branch office administrators to manage DHCP scopes for their own office   èPrevent the branch office administrators from managing DHCP scopes in other offices èMinimize administrative effort. What should you do?()AIn the Active Directory domain, add the branch office administrators to the Server Operators built-in  local group.BIn the Active Directory domain,add the branch office administrators to the NetworkConfiguration Operators built-in local group.CIn each branch office, migrate the DHCP Server server role to the file server. On each fileserver, add the branch office administrator to the DHCP Administrators local group.D n each branch office, migrate the DHCP Server server role to the file server. In the Active Directory domain, add the branch office administrators to the DHCP Administrators domain local group.

单选题You work as the enterprise exchange administrator at TestKing.com. TestKing.com makes use of Microsoft Exchange Server messaging solution. The TestKing.com network consists of a single ActiveDirectory forest that contains a single named testking.com. TestKing.com has its headquartets in Chicago and 15 branch offices around the globe, which are configured as Active Directory sites. The branch offices of Testking.com are connected to the Chicagooffices and directly to the Internet. For the future, all the branch offices should have Exchange Server 2010 Hub Transport server that hasfollowing characteristics: 1. The Internet connections of the branch offices should be used to send e-mail. 2. The e-mail messages from the branch offices to the Chicago offices should go via a WAN link. 3. The branch offices should not use the WAN link to send e-mail to via the Internet 4. Administrative overhead should be reduced. What should you do?()AThe best option is to use 10 Send connectors at every office.BThe best option is to use one SMTP site link at every office.CThe best option is to use one Send connector at every office.DThe best option is to use two Send connectors at every office.

单选题You are designing an OU structure for IT staff at the branch offices. What should you do?()ACreate an OU for the NewApp Web servers. Assign the IT staff at the branch offices user rights to this OU.BCreate an OU for the NewApp data servers. Assign the IT staff at the branch offices user rights to this OU.CCreate an OU for the IT staff at each branch office. Place network administrators at the branch offices in these OUs.DCreate an OU for each branch office. Place local servers in the OU for their respective office. Assign the IT staff at the branch offices user rights to these OUs.

单选题You are an administrator in a company that has a Main Office and 5 branch offices.In every branch office exist a Hub Transport server, and only in Main Office exists an Edge server.You add a disclaimer to all internal and external e-mail messages sent by users in the company. You discover that e-mail messages sent from one of Branch Offices do not include the disclaimer.You need to ensure that all e-mail messages include disclaimer.What should you do?()ARestart Microsoft Exchange System AttendantBModify cache settings of Branch Offices Hub Transport ServerCForce Active Directory replication on the Branch Office Domain ControllerDExport all transport rules from the Hub Transport Server in Main Office import the transport rules in the branch office Hub Transport Server