单选题You have a Windows Server 2008 R2 Enterprise Root CA . Security policy prevents port 443 and port 80 from being opened on domain controllers and on the issuing CA . You need to allow users to request certificates from a Web interface. You install the Active Directory Certificate Services (AD CS) server role. What should you do next()AConfigure the Online Responder Role Service on a member server.BConfigure the Online Responder Role Service on a domain controller.CConfigure the Certificate Enrollment Web Service role service on a member server.DConfigure the Certificate Enrollment Web Service role service on a domain controller.
单选题
You have a Windows Server 2008 R2 Enterprise Root CA . Security policy prevents port 443 and port 80 from being opened on domain controllers and on the issuing CA . You need to allow users to request certificates from a Web interface. You install the Active Directory Certificate Services (AD CS) server role. What should you do next()
A
Configure the Online Responder Role Service on a member server.
B
Configure the Online Responder Role Service on a domain controller.
C
Configure the Certificate Enrollment Web Service role service on a member server.
D
Configure the Certificate Enrollment Web Service role service on a domain controller.
参考解析
解析:
暂无解析
相关考题:
Your company has an Active Directory domain. All servers run Windows Server 2008 R2. Your company uses an Enterprise Root certification authority (CA) and an Enterprise Intermediate CA. The Enterprise Intermediate CA certificate expires. You need to deploy a new Enterprise Intermediate CA certificate to all computers in the domain. What should you do()A、Import the new certificate into the Intermediate Certification Store on the Enterprise Root CA server.B、Import the new certificate into the Intermediate Certification Store on the Enterprise Intermediate CA server.C、Import the new certificate into the Intermediate Certification Store in the Default Domain Controllers group policy object.D、Import the new certificate into the Intermediate Certification Store in the Default Domain group policy object.
Your network consists of a single Active Directory domain. All servers run Windows Server 2003 Service Pack 2 (SP2). You have a server named Server1. Server1 is configured as an enterprise root certification authority (CA). You perform a complete backup of Server1 that includes the system state. Server1 fails. You install a new server named Server1. You need to recover the enterprise root CA. What should you do? ()A、Restore the system state backup.B、Restore the %systemroot%/system32/certsrv folder.C、From the Certificates snap-in, import the enterprise root CA certificate.D、From the Certificates snap-in, import the enterprise root CA certificate revocation list (CRL).
You plan to deploy Exchange Server 2010 on a new server. The server will be a member of a database availability group. You need to identify the operating system that can be installed on the server to support Exchange Server 2010. Your solution must minimize costs. Which operating system should you identify()? A、Windows Server 2003 R2 Standard EditionB、Windows Server 2008 R2 Standard EditionC、Windows Server 2003 Service Pack 2 (SP2) Enterprise EditionD、Windows Server 2008 Service Pack 2 (SP2) Enterprise Edition
You have a Windows Server 2008 R2 Enterprise Root certification authority (CA). You need to grant members of the Account Operators group the ability to only manage Basic EFS certificates. You grant the Account Operators group the Issue and Manage Certificates permission on the CA . Which three tasks should you perform next()A、Enable the Restrict Enrollment Agents option on the CA .B、Enable the Restrict Certificate Managers option on the CA .C、Add the Basic EFS certificate template for the Account Operators group.D、Grant the Account Operators group the Manage CA permission on the CA .E、Remove all unnecessary certificate templates that are assigned to the Account Operators group.
You have a Windows Server 2008 R2 that has the Active Directory Certificate Services server role installed. You need to minimize the amount of time it takes for client computers to download a certificate revocation list (CRL). What should you do()A、Install and configure an Online Responder.B、Install and configure an additional domain controller.C、Import the Root CA certificate into the Trusted Root Certification Authorities store on all client workstations.D、Import the Issuing CA certificate into the Trusted Root Certification Authorities store on all client workstations.
Your network contains an Active Directory forest. The forest contains two domains. You have a standalone root certification authority (CA). On a server in the child domain, you run the Add Roles Wizard and discover that the option to select an enterprise CA is disabled. You need to install an enterprise subordinate CA on the server. What should you use to log on to the new server()A、an account that is a member of the Certificate Publishers group in the child domainB、an account that is a member of the Certificate Publishers group in the forest root domainC、an account that is a member of the Schema Admins group in the forest root domainD、an account that is a member of the Enterprise Admins group in the forest root domain
You have two servers named Server1 and Server2. Both servers run Windows Server 2008 R2. Server1 is configured as an enterprise root certification authority (CA). You install the Online Responder role service on Server2. You need to configure Server1 to support the Online Responder. What should you do()A、Import the enterprise root CA certificate.B、Configure the Certificate Revocation List Distribution Point extension.C、Configure the Authority Information Access (AIA) extension.D、Add the Server2 computer account to the CertPublishers group.
You need to recommend a Windows Server 2008 R2 server configuration that meets the following requirements: èSupports the installation of Microsoft SQL Server 2008 èProvides redundancy for SQL services if a single server fails What should you recommend?() A、Install a Server Core installation of Windows Server 2008 R2 Enterprise on two servers. Configure the servers in a failover cluster.B、Install a full installation of Windows Server 2008 R2 Standard on two servers. Configure Network Load Balancing on the two servers.C、Install a full installation of Windows Server 2008 R2 Enterprise on two servers. Configure Network Load Balancing on the two servers.D、Install a full installation of Windows Server 2008 R2 Enterprise on two servers. Configure the servers in a failover cluster.
You have two servers named Server1 and Server2. Both servers run Windows Server 2008. Server1 is configured as an enterprise root certification authority (CA). You install the Online Responder role service on Server2. You need to configure Server1 to support the Online Responder. What should you do()A、Import the enterprise root CA certificate.B、Configure the Certificate Distribution Point (CDP) extension.C、Configure the Authority Information Access (AIA) extension.D、Add the Server2 computer account to the CertPublishers group.
Your network contains an Active Directory forest. All domain controllers run Windows Server 2008 Standard. The functional level of the domain is Windows Server 2003. You have a certification authority (CA). The relevant servers in the domain are configured as shown in the following table: Server name Operating system Server role Server1 Windows Server 2003 Enterprise root CA Server2 Windows Server 2008 Enterprise subordinate CA Server3 Windows Server 2008 R2 Web Server You need to ensure that you can install the Active Directory Certificate Services (AD CS) Certificate Enrollment Web Service on the network. What should you do()A、Upgrade Server1 to Windows Server 2008 R2.B、Upgrade Server2 to Windows Server 2008 R2.C、Raise the functional level of the domain to Windows Server 2008.D、Install the Windows Server 2008 R2 Active Directory Schema updates.
单选题Your network contains an Active Directory forest. All domain controllers run Windows Server 2008 Standard. The functional level of the domain is Windows Server 2003. You have a certification authority (CA). The relevant servers in the domain are configured as shown in the following table. Server name Operating system Server role Server1 Windows Server 2003 Enterprise root CA Server2 Windows Server 2008 Enterprise subordinate CA Server3 Windows Server 2008 R2 Web Server You need to ensure that you can install the Active Directory Certificate Services (AD CS) Certificate Enrollment Web Service on the network. What should you do()AUpgrade Server1 to Windows Server 2008 R2.BUpgrade Server2 to Windows Server 2008 R2.CRaise the functional level of the domain to Windows Server 2008.DInstall the Windows Server 2008 R2 Active Directory Schema updates.
单选题You have an enterprise root certification authority (CA) that runs Windows Server 2008 R2. You need to ensure that you can recover the private key of a certificate issued to a Web server. What should you do()AFrom the ca, run the Get-PfxCertificate cmdlet.BFrom the Web server, run the Get-PfxCertificate cmdlet.CFrom the ca, run the certutil.exe tool and specify the -exportpfx parameter.DFrom the Web server, run the certutil.exe tool and specify the -exportpfx parameter.
单选题You plan to deploy a fault-tolerant virtual infrastructure based on Hyper-V. The virtual infrastructure will include a two-node Hyper-V host cluster that will contain eight virtual machines (VMs). All of the VMs will run Windows Server 2008 R2 Standard. If one of the nodes fails, the VMs must continue to run on the other node. You need to identify the minimum number and the type of licenses required for the planned deployment. What should you identify?()Atwo Windows Server 2008 R2 Enterprise licenses and eight Windows Server 2008 R2 Standard licensesBtwo Windows Server 2008 R2 Enterprise licenses and four Windows Server 2008 R2 Standard licensesCfour Windows Server 2008 R2 Enterprise licensesDeight Windows Server 2008 R2 Standard licenses
单选题Your network contains an Active Directory domain. You have a server named Server1 that runs Windows Server 2008 R2. Server1 is an enterprise root certification authority (CA). You have a client computer named Computer1 that runs Windows 7. You enable automatic certificate enrollment for all client computers that run Windows 7. You need to verify that the Windows 7 client computers can automatically enroll for certificates. Which command should you run on Computer1()Acertreq.exe retrieveBcertreq.exe submitCcertutil.exe getkeyDcertutil.exe pulse
单选题You plan to deploy three Hyper-V servers named Server1 Server2, and Server3. Server1 will host three virtual machines (VMs), Server2 will host two VMs, and Server3 will host five VMs. All of the VMs will run Windows Server 2008 R2 Standard. You need to identify the minimum number and the type of licenses required for the planned deployment. The solution must minimize software costs. What should you identify?()AThree Windows Server 2008 R2 Enterprise licenses and one Windows Server 2008 R2 Standard licenseBThree Windows Server 2008 R2 Enterprise licensesCThree Windows Server 2008 R2 Standard licensesDThree Windows Server 2008 R2 Enterprise licenses and 10 Windows Server 2008 R2 Standard licenses
多选题You have two servers named Server1 and Server2. Both servers run Windows Server 2008. Server1 is configured as an Enterprise Root certification authority (CA). You install the Online Responder role service on Server2. You need to configure Server2 to issue certificate revocation lists (CRL) for the enterprise root CA. Which two tasks should you perform()AImport the enterprise root CA certificate.BImport the OCSP Response Signing certificate.CAdd the Server1 computer account to the CertPublishers group.DSet the Startup Type of the Certificate Propagation service to Automatic.