Your network contains an Active Directory domain. The domain contains two domain controllers named DC1 and DC2. DC1 hosts a standard primary DNS zone for the domain. Dynamic updates are enabled on the zone. DC2 hosts a standard secondary DNS zone for the domain. You need to configure DNS to allow only secure dynamic updates. What should you do first()A、On DC1 and DC2, configure a trust anchor.B、On DC1 and DC2, configure a connection security rule.C、On DC1, configure the zone transfer settings.D、On DC1, configure the zone to be stored in Active Directory.
Your network contains an Active Directory domain. The domain contains two domain controllers named DC1 and DC2. DC1 hosts a standard primary DNS zone for the domain. Dynamic updates are enabled on the zone. DC2 hosts a standard secondary DNS zone for the domain. You need to configure DNS to allow only secure dynamic updates. What should you do first()
- A、On DC1 and DC2, configure a trust anchor.
- B、On DC1 and DC2, configure a connection security rule.
- C、On DC1, configure the zone transfer settings.
- D、On DC1, configure the zone to be stored in Active Directory.
相关考题:
Ezonexam.com's network contains two domain controllers and approximately 500 client computers. The domain controllers run Windows 2000 Server. The client computers run Windows 2000 Professional. The majority of users have mobile computers. Users in Ezonexam often travel with their mobile computer for extended periods of time and do not have remote access to Ezonexam.com's network.You want to configure the domain controllers so that DNS only contains entries for computers that are active on the network. You also want to ensure that when users return you do not have to manually create or delete DNS entries.How should you configure the DNS servers?A.Configure both domain controllers with Active Directory integrated primary zones for the domain and enable secure dynamic updates for the zone.B.Configure both domain controllers with Active Directory integrated primary zones for the domain and the secure cache against pollution option for the zone.C.Configure both domain controllers with Active Directory integrated primary zones for the domain and enable scavenging and dynamic updates for the zone.D.Configure both domain controllers with standard primary zones for the domain and enable scavenging for the zone.E.Configure one server with a standard primary zone for the domain, and configure at least one server with an Active Directory integrated primary zone.
You have a single Active Directory domain. AlI domain controllers run Windows Server 2008 and are configured as DNS servers. The domain contains one Active Directory-integrated DNS zone. You need to ensure that outdated DNS records are automatically removed from the DNS zone. What should you do()A、From the properties of the zone, enable scavenging.B、From the properties of the zone, disable dynamic updates.C、From the properties of the zone, modify the TTL of the SOA record.D、From the command prompt, run ipconfig /flushdns.
Your company, Contoso, Ltd., has a main office and a branch office. The offices are connected by a WAN link. Contoso has an Active Directory forest that contains a single domain named ad.contoso.com. The ad.contoso.com domain contains one domain controller named DC1 that is located in the main office. DC1 is configured as a DNS server for the ad.contoso.com DNS zone. This zone is configured as a standard primary zone. You install a new domain controller named DC2 in the branch office. You install DNS on DC2. You need to ensure that the DNS service can update records and resolve DNS queries in the event that a WAN link fails. What should you do()A、Create a new stub zone named ad.contoso.com on DC2.B、Configure the DNS server on DC2 to forward requests to DC1.C、Create a new secondary zone named ad.contoso.com on DC2.D、Convert the ad.contoso.com zone on DC1 to an Active Directory-integrated zone.
our network consists of a single Active Directory domain. You have a domain controller and a member server that run Windows Server 2008 R2. Both servers are configured as DNS servers. Client computers run either Windows XP Service Pack 3 or Windows 7. You have a standard primary zone on the domain controller. The member server hosts a secondary copy of the zone. You need to ensure that only authenticated users are allowed to update host (A) records in the DNS zone. What should you do first()A、On the member server, add a conditional forwarder.B、On the member server, install Active Directory Domain Services.C、Add all computer accounts to the DNSUpdateProxy group.D、Convert the standard primary zone to an Active Directory-integrated zone.
Your network contains a single Active Directory domain named contoso.com. The domain contains two domain controllers named DC1 and DC2 that run Windows Server 2008 R2. DC1 hosts a primary zone for contoso.com. DC2 hosts a secondary zone for contosto.com. On DC1, you change the zone to an Active Directory-integrated zone and configure the zone to accept secure dynamic updates only. You need to ensure that DC2 can accept secure dynamic updates to the contoso.com zone. Which command should you run()A、dnscmd.exe dc2.contoso.com /createdirectorypartition dns.contoso.comB、dnscmd.exe dc2.contoso.com /zoneresettype contoso.com /dsprimaryC、dnslint.exe /qlD、repadmin.exe /syncall /force
Your network contains an Active Directory domain named contoso.com. The domain contains two domain controllers named DC1 and DC2 that run Windows Server 2008 R2.DC1 hosts a primary zone for contoso.com. DC2 hosts a secondary zone for contosto.com.You need to ensure that DNS zone data is encrypted when the data replicates across the network. DC2 must provide authoritative responses to client computers.What should you do?()A、Configure the contoso.com zone to use DNSSECB、Create a new delegation in the contoso.com zoneC、Modify the zone transfer settings of the contoso.com zoneD、Convert the contoso.com zone to an Active Directory-integrated zone
Your network consists of a single Active Directory domain named contoso.com. All servers run Windows Server 2003 Service Pack 2 (SP2). The domain has two domain controllers named DC1 and DC2. Both domain controllers are DNS servers. Windows Support Tools is installed on both domain controllers. The contoso.com DNS zone is Active Directory-integrated. You need to verify that the contoso.com zone has replicated between DC1 and DC2. What should you do?()A、On DC1 and DC2, open Event Viewer and review the DNS server log.B、On DC1, open the DNS snap-in. From the properties of the contoso.com zone, review the Zone Transfer settings.C、On DC1 and DC2, open the DNS snap-in. From the properties of the contoso.com zone, review the Monitoring settings.D、From Active Directory Replication Monitor, connect to DC1. Under the DC=DomainDnsZones,DC=contoso,DC=com directory partition, review the status of Default-First-Site/DC2.
Your network consists of a single Active Directory domain. You have a domain controller and a member server that run Windows Server 2008 R2. Both servers are configured as DNS servers. Client computers run either Windows XP Service Pack 3 or Windows 7. You have a standard primary zone on the domain controller. The member server hosts a secondary copy of the zone.You need to ensure that only authenticated users are allowed to update host (A) records in the DNS zone. What should you do first()A、On the member server, add a conditional forwarder.B、On the member server, install Active Directory Domain Services.C、Add all computer accounts to the DNSUpdateProxy group.D、Convert the standard primary zone to an Active Directory-integrated zone.
Your network contains a single Active Directory domain named contoso.com. The functional level of the domain is Windows 2000 mixed.You have a domain controller named DC1 that runs Windows Server 2003 Service Pack 2 (SP2). DC1 hosts a standard primary zone for contoso.com.You need to ensure that only computers in the contoso.com domain can register host records in the contoso.com zone. What should you do? ()A、Convert contoso.com to a secondary zone. B、Convert contoso.com to an Active Directory-integrated zone. Set dynamic updates for the zone to Secure only. C、Convert contoso.com to an Active Directory-integrated zone. Set dynamic updates for the zone to Nonsecure and secure. D、Change the domain functional level to Windows Server 2003. Set dynamic updates for the zone to Nonsecure and secure.
Your network contains a single Active Directory domain named contoso.com. The functional level of the domain is Windows 2000 mixed. You have a domain controller named DC1 that runs Windows Server 2003 Service Pack 2 (SP2). DC1 hosts a standard primary zone for contoso.com. You need to ensure that only computers in the contoso.com domain can register host records in the contoso.com zone. What should you do?()A、Convert contoso.com to a secondary zone.B、Convert contoso.com to an Active Directory-integrated zone. Set dynamic updates for the zone to Secure only.C、Convert contoso.com to an Active Directory-integrated zone. Set dynamic updates for the zone to Nonsecure and secure.D、Change the domain functional level to Windows Server 2003. Set dynamic updates for the zone to Nonsecure and secure.
Your network contains an Active Directory domain named contoso.com. The domain contains a domain controller named DC1. DC1 hosts a standard primary zone for contoso.com. You discover that non-domain member computers register records in the contoso.com zone. You need to prevent the non-domain member computers from registering records in the contoso.com zone. All domain member computers must be allowed to register records in the contoso.com zone. What should you do first()A、Configure a trust anchor.B、Run the Security Configuration Wizard (SCW).C、Change the contoso.com zone to an Active Directory-integrated zone.D、Modify the security settings of the %SystemRoot%/System32/Dns folder.
Your network consists of an Active Directory forest named contoso.com. All servers run Windows Server 2008 All domain controllers are configured as DNS servers. The contoso.com DNS zone is stored in the ForestDnsZones Active Directory application partition. You have a member server that contains a standard primary DNS zone for dev.contoso.com. You need to ensure that all domain controllers can resolve names for dev.contoso.com. What should you do()A、Create a NS record in the contoso,com zone.B、Create a delegation in the contoso,com zone.C、Create a standard secondary zone on a Global Catalog server.D、Modify the properties of the SOA record in the contoso.com zone.
Your network consists of a single Active Directory domain. All domain controllers run Windows Server 2008 R2 and are configured as DNS servers. A domain controller named DC1 has a standard primary zone for contoso.com. A domain controller named DC2 has a standard secondary zone for contoso.com. You need to ensure that the replication of the contoso.com zone is encrypted. You must not lose any zone data. What should you do()A、On both servers, modify the interface that the DNS server listens on.B、Convert the primary zone into an Active Directory-integrated zone. Delete the secondary zone.C、Convert the primary zone into an Active Directory-integrated stub zone. Delete the secondary zone.D、Configure the zone transfer settings of the standard primary zone. Modify the Master Servers lists on the secondary
Your company, Contoso, Ltd., has a main office and a branch office. The offices are connected by a WAN link. Contoso has an Active Directory forest that contains a single domain named ad.contoso.com. The ad. contoso.com domain contains one domain controller named DC1 that is located in the main office. DC1 is configured as a DNS server for the ad.contoso.com DNS zone. This zone is configured as a standardprimary zone. You install a new domain controller named DC2 in the branch office. You install DNS on DC2. You need to ensure that the DNS service can update records and resolve DNS queries in the event that a WAN link fails. What should you do() A、Create a new stub zone named ad.contoso.com on DC2.B、Configure the DNS server on DC2 to forward requests to DC1.C、Create a new standard secondary zone named ad.contoso.com on DC2.D、Convert the ad.contoso.com zone on DC1 to an Active Directory-integrated zone.
Your company has a main office and three branch offices. The network consists of a single Active Directory domain. Each office contains an Active Directory domain controller. You need to create a DNS infrastructure for the network that meets the following requirements: èThe DNS infrastructure must allow the client computers in each office to register DNS names within their. respective offices. èThe client computers must be able to resolve names for hosts in all offices. What should you do?()A、Create an Active Directory-integrated zone at the main office site.B、Create a standard primary zone at the main office site and at each branch office site.C、Create a standard primary zone at the main office site. Create a secondary zone at each branch office site.D、Create a standard primary zone at the main office site. Create an Active Directory-integrated stub zone at each branch office site.
Your network consists of a single Active Directory domain. All domain controllers run Windows Server 2008 and are configured as DNS servers. A domain controller named DC1 has a standard primary zone for contoso,com. A domain controller named DC2 has a standard secondary zone for contoso,com. You need to ensure that the replication of the contoso,com zone is encrypted. You must not lose any zone data. What should you do()A、On both servers, modify the interface that the DNS server listens on.B、Convert the primary zone into an Active Directory-integrated zone. Delete the secondary zone.C、Convert the primary zone into an Active Directory-integrated stub zone. Delete the secondary zone.D、Configure the zone transfer settings of the standard primary zone. Modify the Master Servers lists on the secondary zone.
Your network contains an Active Directory forest named contoso.com. You plan to add a new domain named nwtraders.com to the forest. All DNS servers are domain controllers. You need to ensure that the computers in nwtraders.com can update their Host (A) records on any of the DNS servers in the forest. What should you do()A、Add the computer accounts of all the domain controllers to the DnsAdmins group.B、Add the computer accounts of all the domain controllers to the DnsUpdateProxy group.C、Create a standard primary zone on a domain controller in the forest root domain.D、Create an Active Directory-integrated zone on a domain controller in the forest root domain.
单选题Your network contains an Active Directory domain. The domain contains two domain controllers named DC1 and DC2. DC1 hosts a standard primary DNS zone for the domain. Dynamic updates are enabled on the zone. DC2 hosts a standard secondary DNS zone for the domain. You need to configure DNS to allow only secure dynamic updates. What should you do first()AOn DC1 and DC2, configure a trust anchor.BOn DC1 and DC2, configure a connection security rule.COn DC1, configure the zone transfer settings.DOn DC1, configure the zone to be stored in Active Directory.
单选题Your network consists of a single Active Directory domain. All domain controllers run Windows Server 2008 R2 and are configured as DNS servers. A domain controller named DC1 has a standard primary Zone for contoso.com. A domain controller named DC2 has a standard secondary zone for contoso.com. You need to ensure that the replication of the contoso.com zone is encrypted. You must not lose any zone data. What should you do()AOn both servers, modify the interface that the DNS server listens on.BConvert the primary zone into an Active Directory-integrated zone. Delete the secondary zone. CConvert the primary zone into an Active Directory-integrated stub zone. Delete the secondary zone.DConfigure the zone transfer settings of the standard primary zone. Modify the Master Servers lists on the secondary zone.