You are an enterprise administrator for Cer-tech .com. The corporate network of the company consists of asingle Active Directory domain. All the servers on the network run Windows Server 2008. The network consists of a server called Server01 that has the Terminal Services role is installed on it. You have recentlydeployed a remote application called APP1 on the Terminal server. You need to ensure that the company’ssecurity policy that states that users should not be allowed to copy and paste information to a localcomputer during a Terminal Services session,requirements must be met while configuring Terminal Services. Which of the following options would you choose to accomplish this task?()A、In the RDP-Tcp Client setting properties for the server,disable the Drive option.B、In the RDP Settings for the published application,deselects the Clipboard option.C、Enable the Use temporary folders per session option.D、Change the Security Encryption Level to FIPS Compliant.

You are an enterprise administrator for Cer-tech .com. The corporate network of the company consists of asingle Active Directory domain. All the servers on the network run Windows Server 2008. The network consists of a server called Server01 that has the Terminal Services role is installed on it. You have recentlydeployed a remote application called APP1 on the Terminal server. You need to ensure that the company’ssecurity policy that states that users should not be allowed to copy and paste information to a localcomputer during a Terminal Services session,requirements must be met while configuring Terminal Services. Which of the following options would you choose to accomplish this task?()

  • A、In the RDP-Tcp Client setting properties for the server,disable the Drive option.
  • B、In the RDP Settings for the published application,deselects the Clipboard option.
  • C、Enable the Use temporary folders per session option.
  • D、Change the Security Encryption Level to FIPS Compliant.

相关考题:

You are an enterprise administrator for Cer-tech .com. The corporate network of the company consists ofan Active Directory domain. All the servers on the network run Windows Server 2008. The network runs aTerminal server named Server02 to enable remote users to run commonly required applications from theirterminal. You have recently been asked to deploy a Terminal Services application called App1 on Server02. To deploy the application, you first confirmed from the application vendor that the applicationcan be deployed in a Terminal Services environment. The features of App1 are that it does not use Microsoft Windows Installer packages for installation and makes changes to the current user registry duringinstallation. Which of the following options would you choose to install the application to support multipleuser sessions?()A、Run the change user /install command on Server02B、Install the applicationC、Run the change user /execute command on Server02D、Run the change logon /disable command on Server02

You are the network administrator for . The network consists of a single Active Directory domain. All domain controllers run Windows Server 2003, and all client computers run Windows XP Professional. TestKing acquires a subsidiary. You receive a comma delimited file that contains the names of all user accounts at the subsidiary. You need to import these accounts into your domain. Which command should you use?()A、ldifdeB、csvdeC、ntdsutil with the authoritative restore optionD、dsadd user

You are an enterprise administrator for Cer-tech .com. The company runs Windows Server 2008 on all theservers on the network. One of the servers,Server01 has the Web Server (IIS) role installed and all theWeb Server role services on it. Which of the following features would you configure on the server toprovide a user the ability to administer a website?()A、Configure .Net Users feature on Server01B、Configure.Net Roles feature on Server01C、Configure IIS Manager Permissions feature on Server01D、Configure Authentication feature on Server01

You are the network administrator for your company. The network consists of a single Active Directory domain. All servers run Windows Server 2003. You need to update six high-visibility servers with critical updates by using Windows Server Update Services (WSUS). You approve all of the updates. You need to ensure that the updates are applied within one hour. What should you do?()A、On the WSUS server, type the gpupdate /force command at the command prompt.B、On the WSUS server, type the wuauclt /detectnow command at the command prompt.C、On each of the six servers, type the gpupdate /force command at the command prompt.D、On each of the six servers, type the wuauclt /detectnow command at the command prompt.

ou are the network administrator for your company. The network consists of a single Active Directory domain. All servers run Windows Server 2003. All client computers run Windows XP Professional.Two of the servers on the network contain highly confidential documents. The company’s written security policy states that all network connections with these servers must be encrypted by using an IPSec policy.You place the two servers in an organizational unit (OU) named SecureServers. You configure a Group Policy object (GPO) that requires encryption for all connections. You assign the GPO to the SecureServers OU.  You need to verify that users are connecting to the two servers by using encrypted connections.   What should you do?()A、Run the net view command.B、Run the gpresult command.C、Use the IP Security Monitor console.D、Use the IPSec Policy Management console.

You are an enterprise administrator for Cer-tech .com. The corporate network of the company consists of asingle Active Directory domain. All the servers on the network run Windows Server 2008 and all the clientcomputers run Windows XP Service Pack 2 (SP2). All computers are members of the domain. The networkruns a server named Server01 on which the Terminal Services role and the Terminal Services Web Accessrole are installed. The Network Level Authentication is enabled on the server. The Terminal Services WebAccess role uses Active Directory Domain Services (AD DS). You have been assigned the task to deployand publish an application called App1 on Server01. Which of the following options would you choose toensure that the users can launch App1 on Server01 from the Terminal Services Web Access Web page?()A、Publish App1 on Server01 as a Microsoft Windows Installer package. Distribute the Windows Installer package to the users.B、Install the Terminal Services Gateway (TS Gateway) role on Server01 and then reconfigure the remoteapplication publishing for App1 to reflect the change.C、Disable publishing to AD DS for the App1.D、Install the Remote Desktop Client 6.1 application on the client computers.

You are the network administrator for your company. The network consists of a single Active Directory domain. All servers run Windows Server 2003. All client computers run Windows XP Professional.You install Windows Server Update Services (WSUS) on a network server named Server1. When you attempt to synchronize Server1 with the Windows Update servers, you receive an error message. You open Internet Explorer and verify that you can communicate with an external Web site by using the proxy server. You need to ensure that Server1 can communicate with the Windows Update servers.  What should you do on Server1?()A、Restart the IIS administration tool.B、Configure the Internet Explorer settings to bypass the proxy server.C、In the WSUS options, configure authentication to the proxy server.D、Install the ISA Firewall Client.

You are the network administrator for your company. The network consists of a single Active Directory domain. The domain contains Windows Server 2003 computers and Windows XP Professional computers.  You configure a server named Server1 to be a file server. The written company security policy states that you must analyze network traffic that is sent to and from all file servers.You need to capture file-transfer network traffic that is being sent to and from Server1. You install Network Monitor Tools from a Windows Server 2003 product CD-ROM on a server named Server2, which is on the same network segment as Server1.You run Network Monitor on Server2. However, Network Monitor captures only network traffic that is sent to and from Server2. You need to capture all network traffic that is sent to and from Server1.  What should you do?()A、Install the Network Monitor driver on Server1. Run Network Monitor on Server2 to capture network traffic.B、Open Network Monitor on Server2 and create a capture filter to enable the capture of all protocols. Run Network Monitor to capture network traffic.C、Install Network Monitor Tools on Server1. Run Network Monitor to capture network traffic.D、Open Network Monitor on Server2 and increase the capture buffer from 1 MB to 20 MB in size. Run Network Monitor to capture network traffic.

You are an enterprise administrator for Cer-tech .com. The corporate network of the company consists ofan Active Directory domain. All the servers on the network run Windows Server 2008. The network runsTerminal services to enable remote users to run commonly required applications from their terminal. A remote user logged on to the Terminal Server, required some help on the application he wanted to run.However,when you connect to the Terminal Server session,you cannot operate any applications. Which of the following options would you choose to ensure that you can assist any user on the Terminal Server?()A、From the Terminal Server, run the Chguserver /execute command and then reconnect to the session.B、In the RDP-Tcp Properties on the Terminal Server, enable the Use remote control option with default user settings.C、In the RDP-Tcp Properties on the Terminal Server, enable the Use remote control with the following settings option and then configure the Level of control policy setting to Interact with the session. Ask the user to log off and log back on.D、From the Terminal Server, run the Tscon /v command and then reconnect to the session.

You are the network administrator for your company. The network consists of a single Active Directory domain. All computers on the network are members of the domain. All servers run Windows Server 2003 and all client computers run Windows XP Professional.  You are planning a security update infrastructure.   You need to find out which computers are exposed to known vulnerabilities. You need to collect the information on existing vulnerabilities for each computer every night. You want this process to occur automatically.  What should you do? ()A、 Schedule the secedit command to run every night.B、 Schedule the mbsacli.exe command to run every night.C、 Install Microsoft Baseline Security Analyzer (MBSA) on one of the servers. Configure Automatic Updates on all other computers to use that server.D、 Install Software Update Services (SUS) on one of the servers. Configure the SUS server to update every night.

You are a network administrator for your company. The network consists of a single Active Directory domain. The domain contains three Windows Server 2003 domain controllers, 20 Windows Server 2003 member servers, and 750 Windows XP Professional computers. The domain is configured to use only Kerberos authentication for all server connections.A user reports that she receives an "Access denied" error message when she attempts to connect to one of the member servers. You want to test the functionality of Kerberos authentication on the user’s client computer.  Which command should you run from the command prompt on the user’s computer?()A、netshB、netdiagC、ktpassD、ksetup

You are the network administrator for TestKing.com. The network consists of a single Active Directory domain named testking.com. All network servers run Windows Server 2003. You place computer accounts for servers in OUs that are organized by server roles. You apply GPOs to these servers at the OU level. You need to add a new server to the domain. You need to ensure that the appropriate GPOs are applied to this server. What should you do?()A、Prestage a domain computer account for the new server in the appropriate OU. Join the server to the domain by using the prestaged computer account.B、On the server, add the domain name for the Active Directory domain to the DNS suffix setting. Join the server to the domain.C、Assign a user account the Allow - Create permission for the appropriate OU. Join the new server to the domain by using the user account.D、Join the new server to the Active Directory domain. On the new server, run the gpupdate /force command.

You are an enterprise administrator for Cer-tech .com. The corporate network of the company consists ofan Active Directory domain. All the servers on the network run Windows Server 2008. The network runs aTerminal server named Server02 to enable remote users to run commonly required applications from theirterminal. Which of the following options would you choose to prevent new sessions on the Terminal Server without affecting current user sessions?()A、Run Tskill /server: Server02/A commandB、Run Taskkill /S Server02 /fi "MODULES eq TermServerv" commandC、Run Change user /execute disable commandD、Run Change logon /disable command

You are an enterprise administrator for Cer-tech .com. The corporate network of the company consists of asingle Active Directory domain. All the servers on the network run Windows Server 2008. The networkconsists of two servers configured as follows: 1. Server01 (Member server): The Terminal Services role is installed. 2. Server02 (Test server in a workgroup environment): The Terminal Services Licensing role service isinstalled. You wanted to use Terminal Services Per User Client Access License (TS Per User CAL) mode onServer02. However, you were not able to enable the TS Per User CAL mode in the Terminal ServicesLicensing role service on Server02. Which of the following options would you choose to ensure that you can use TS Per User CAL mode onServer02?()A、Disjoin Server01 from the domain.B、Extend the schema to add attributes for Terminal Services Licensing.C、Join Server02 to the domain.D、Create a Group Policy object(GPO) that configures Server01 to use Server02 for licensing.

You network consists of a single Active Directory domain. All domain controllers run Windows Server 2008. You need to reset the Directory Services Recovery Mode (DSRM) password on a domain controller. What tool should you use()A、dsmodB、ntdsutilC、Local Users and Groups snap-inD、Active Directory Users and Computers snap-in

You are an enterprise administrator for Cer-tech .com. All the servers on the network run Windows Server2008. The network consists of a Server that has the Windows Server virtualization role service installed.You create a new virtual machine, installed Windows Server 2008 on it, and configure it to use the physicalnetwork card of the host server. After this installation and configuration the virtual machine, you wereunable to access network resources from the virtual machine. Which of the following options would youchoose to ensure that the virtual host can connect to the physical network?()A、Install the MS Loopback adapter on the virtual machine.B、Enable the Multipath I/O feature on the host server.C、Install Windows Server virtualization Guest Integration Components on the virtual machine.D、Install the MS Loopback adapter on the host server.E、None of the above

You are an enterprise administrator for Cer-tech .com. All the servers on the network run Windows Server2008. The network consists of a server called Server01 on which Windows SharePoint Services (WSS) roleis installed. A group of users need to access the WSS server. However, you want to restrict the users toview items, open items, and view versions on the WSS server. To accomplish this task, you created agroup called SPUsers that will access content on the WSS server. Which of the following permissionswould you configure for the SPUsers group to restrict the permissions of the group to viewing items,opening items,and viewing versions?()A、Limited AccessB、DesignC、ReadD、Contribute

You are an enterprise administrator for Cer-tech .com. The corporate network of the company consists ofan Active Directory domain. All the servers on the network run Windows Server 2008. The network runs aTerminal services role on a server to enable remote users to run commonly required applications from theirterminal. A Terminal Services application called App1 that runs on the server has suddenly stopped responding. Todiagnose the problem, you monitored the memory usage on the server for a week and discover that App1application has a memory leak. To resolve the problem, you first looked for a patch but that was not currently available. So you created a new resource-allocation policy in Microsoft Windows Server ResourceManager and configured a Process Matching Criteria named TrackMem for the application. Which of the following options would you choose to terminate the application when the application consumes more than half of the available memory on the server?()A、Configure the resource-allocation policy and set the maximum working set limit option to half theavailable memory on the server.B、Configure the resource-allocation policy and set the maximum committed memory option to half theavailable memory on the server.C、Set the new policy as a Profiling Policy.D、Set the new policy as a Managing Policy.

You are the network administrator for your company. The network consists of a single Active Directory domain.All servers run Windows Server 2003.You place computer accounts for servers in organizational units (OUs) that are organized by server roles. You apply Group Policy objects (GPOs) to these servers at the OU level.You need to add a new server to the domain. You need to ensure that the appropriate GPOs are applied to this server.What should you do? ()A、Prestage a domain computer account for the new server in the appropriate OU. Join the server to the domain by using the prestaged computer account.B、On the new server, add the domain name for the Active Directory domain to the DNS suffix setting. Join the server to the domain.C、Assign a user account the Allow - Create permission for the appropriate OU. Join the new server to the domain by using the user account.D、Join the new server to the Active Directory domain. On the new server, run the gpupdate /force command.

Your network consists of a single Active Directory domain. All domain controllers run Windows Server 2003 You upgrade all domain controllers to Windows Server 2008 You need to configure the Active Directory environment to support the application of multiple password policies What should you do()A、Create multiple Active Directory sites.B、On all domain controllers, run dcpromo /adv.C、On one domain controller, run dcpromo /adv.D、Raise the functional level of the domain to Windows Server 2008.

You are an enterprise administrator for Cer-tech .com. The corporate network consists of a single ActiveDirectory domain. The company runs Windows Server 2008 on all the servers on the network. One of theservers, Server01 has the Windows SharePoint Services (WSS) server role installed on it. Which of thefollowing options would you choose to configure WSS server in such a way that it allow users to createdistribution lists from a SharePoint site?()A、Modify the outgoing mail character set.B、Configure the SharePoint site to accept messages from authenticated users only.C、Enable the SharePoint Directory Management Service on Server0 1.D、Use the default Rights Management server in Active Directory Domain Services to configure the SharePoint site.

单选题You are an enterprise administrator for Cer-tech .com. The corporate network of the company consists ofan Active Directory domain. All the servers on the network run Windows Server 2008. The network runs aTerminal server named Server02 to enable remote users to run commonly required applications from theirterminal. Which of the following options would you choose to prevent new sessions on the Terminal Server without affecting current user sessions?()ARun Tskill /server: Server02/A commandBRun Taskkill /S Server02 /fi MODULES eq TermServerv commandCRun Change user /execute disable commandDRun Change logon /disable command

多选题You are an enterprise administrator for Cer-tech .com. The corporate network of the company consists ofan Active Directory domain. All the servers on the network run Windows Server 2008. The network runs aTerminal server named Server02 to enable remote users to run commonly required applications from theirterminal. You have recently been asked to deploy a Terminal Services application called App1 on Server02. To deploy the application, you first confirmed from the application vendor that the applicationcan be deployed in a Terminal Services environment. The features of App1 are that it does not use Microsoft Windows Installer packages for installation and makes changes to the current user registry duringinstallation. Which of the following options would you choose to install the application to support multipleuser sessions?()ARun the change user /install command on Server02BInstall the applicationCRun the change user /execute command on Server02DRun the change logon /disable command on Server02

单选题You are an enterprise administrator for Cer-tech .com. All the servers on the network run Windows Server2008. The network consists of a server called Server01 that runs Microsoft Hyper-V and hosts three virtualmachines. To fulfill a network requirement, you need to configure all of the virtual machines to connect toeach other. However, the company policy states that the virtual machines must not connect to the companynetwork. Which of the following options would you choose to ensure that all the virtual machines connect to eachother and you meet the company policy also?()AEnable the Enable virtual LAN identification option for each virtual machineBEnable the Enable virtual LAN identification option for each virtual machine and then set the connection to Host for the network interface cardCSet the Connection to None for the network interface cardDSelect the Not connected option for each virtual machine.

单选题You are the network administrator for your company. The network consists of a single Active Directory domain. All servers run Windows Server 2003. You need to update six high-visibility servers with critical updates by using Windows Server Update Services (WSUS). You approve all of the updates. You need to ensure that the updates are applied within one hour. What should you do?()AOn the WSUS server, type the gpupdate /force command at the command prompt.BOn the WSUS server, type the wuauclt /detectnow command at the command prompt.COn each of the six servers, type the gpupdate /force command at the command prompt.DOn each of the six servers, type the wuauclt /detectnow command at the command prompt.

单选题You network consists of a single Active Directory domain. All domain controllers run Windows Server 2008. You need to reset the Directory Services Recovery Mode (DSRM) password on a domain controller. What tool should you use()AdsmodBntdsutilCLocal Users and Groups snap-inDActive Directory Users and Computers snap-in