You are an enterprise administrator for Cer-tech .com. The corporate network of the company consists ofan Active Directory domain. All the servers on the network run Windows Server 2008. The network runsTerminal services to enable remote users to run commonly required applications from their terminal. Anorganizational unit (OU) called TermSerUsers have been configured for the standard users who connect tothe Terminal Server and an OU called TermSerAdmin is configured for the administrative users. Besidesthese two types of users, no other user can connect to the Terminal Server. Which of the following optionswould you choose to ensure that only members of the TermSerAdmin OU can run the Remote DesktopProtocol files?()A、Create a GPO and disabled the Allow .rdp files from unknown publishers policy setting in the RemoteDesktop Client Connection template. Apply the GPO to the TermSerUsers OU.B、Create a GPO and enable the Allow .rdp files from valid publishers and users default.rdp settingspolicy setting in the Remote Desktop Client Connection template. Apply the GPO to the TermSerUsersOU.C、Create a GPO and enable the Allow .rdp files from valid publishers and users default.rdp settingspolicy setting in the Remote Desktop Client Connection template. Apply the GPO to the TermSerAdminOU.D、Create a GPO and enable the Specify SHA1 thumbprints of certificates representing trusted.rdppublishers policy setting in the Remote Desktop Client Connection template. Apply the GPO to theTermSerAdmin OU.

You are an enterprise administrator for Cer-tech .com. The corporate network of the company consists ofan Active Directory domain. All the servers on the network run Windows Server 2008. The network runsTerminal services to enable remote users to run commonly required applications from their terminal. Anorganizational unit (OU) called TermSerUsers have been configured for the standard users who connect tothe Terminal Server and an OU called TermSerAdmin is configured for the administrative users. Besidesthese two types of users, no other user can connect to the Terminal Server. Which of the following optionswould you choose to ensure that only members of the TermSerAdmin OU can run the Remote DesktopProtocol files?()

  • A、Create a GPO and disabled the Allow .rdp files from unknown publishers policy setting in the RemoteDesktop Client Connection template. Apply the GPO to the TermSerUsers OU.
  • B、Create a GPO and enable the Allow .rdp files from valid publishers and users default.rdp settingspolicy setting in the Remote Desktop Client Connection template. Apply the GPO to the TermSerUsersOU.
  • C、Create a GPO and enable the Allow .rdp files from valid publishers and users default.rdp settingspolicy setting in the Remote Desktop Client Connection template. Apply the GPO to the TermSerAdminOU.
  • D、Create a GPO and enable the Specify SHA1 thumbprints of certificates representing trusted.rdppublishers policy setting in the Remote Desktop Client Connection template. Apply the GPO to theTermSerAdmin OU.

相关考题:

You are an enterprise administrator for Cer-tech .com. The corporate network of the company consists ofan Active Directory domain. All the servers on the network run Windows Server 2008. The network runs aTerminal server named Server02 to enable remote users to run commonly required applications from theirterminal. You have recently been asked to deploy a Terminal Services application called App1 on Server02. To deploy the application, you first confirmed from the application vendor that the applicationcan be deployed in a Terminal Services environment. The features of App1 are that it does not use Microsoft Windows Installer packages for installation and makes changes to the current user registry duringinstallation. Which of the following options would you choose to install the application to support multipleuser sessions?()A、Run the change user /install command on Server02B、Install the applicationC、Run the change user /execute command on Server02D、Run the change logon /disable command on Server02

You network consists of a single Active Directory domain. All domain controllers run Windows  Server 2008 R2.     You need to reset the Directory Services Restore Mode (DSRM) password on a domain  controller.     What tool should you use()A、dsmodB、ntdsutilC、Local Users and Groups snap-inD、Active Directory Users and Computers snap-in

You are an enterprise administrator for Cer-tech .com. The corporate network of the company consists of asingle Active Directory domain. All the servers on the network run Windows Server 2008. The network consists of a server called Server01 that has the Terminal Services role is installed on it. You have recentlydeployed a remote application called APP1 on the Terminal server. You need to ensure that the company’ssecurity policy that states that users should not be allowed to copy and paste information to a localcomputer during a Terminal Services session,requirements must be met while configuring Terminal Services. Which of the following options would you choose to accomplish this task?()A、In the RDP-Tcp Client setting properties for the server,disable the Drive option.B、In the RDP Settings for the published application,deselects the Clipboard option.C、Enable the Use temporary folders per session option.D、Change the Security Encryption Level to FIPS Compliant.

ou are the network administrator for your company. The network consists of a single Active Directory domain. All servers run Windows Server 2003. All client computers run Windows XP Professional.Two of the servers on the network contain highly confidential documents. The company’s written security policy states that all network connections with these servers must be encrypted by using an IPSec policy.You place the two servers in an organizational unit (OU) named SecureServers. You configure a Group Policy object (GPO) that requires encryption for all connections. You assign the GPO to the SecureServers OU.  You need to verify that users are connecting to the two servers by using encrypted connections.   What should you do?()A、Run the net view command.B、Run the gpresult command.C、Use the IP Security Monitor console.D、Use the IPSec Policy Management console.

You are an enterprise administrator for Cer-tech .com. The corporate network of the company consists of asingle Active Directory domain. All the servers on the network run Windows Server 2008 and all the clientcomputers run Windows XP Service Pack 2 (SP2). All computers are members of the domain. The networkruns a server named Server01 on which the Terminal Services role and the Terminal Services Web Accessrole are installed. The Network Level Authentication is enabled on the server. The Terminal Services WebAccess role uses Active Directory Domain Services (AD DS). You have been assigned the task to deployand publish an application called App1 on Server01. Which of the following options would you choose toensure that the users can launch App1 on Server01 from the Terminal Services Web Access Web page?()A、Publish App1 on Server01 as a Microsoft Windows Installer package. Distribute the Windows Installer package to the users.B、Install the Terminal Services Gateway (TS Gateway) role on Server01 and then reconfigure the remoteapplication publishing for App1 to reflect the change.C、Disable publishing to AD DS for the App1.D、Install the Remote Desktop Client 6.1 application on the client computers.

Your network consists of a single Active Directory domain. All servers run Windows Server 2003 Service Pack 2 (SP2). All client computers run Windows XP Professional Service Pack 3 (SP3). You enable and configure Terminal Server on a server named Server1. A firewall separates Server1 from the internal network. Internal users report that they cannot connect to Server1 by using Remote Desktop Connection. You need to ensure that the users can connect to Server1 by using Remote Desktop Connection. Which port should you open on the firewall? ()A、389B、3268C、3389D、5900

You are the network administrator for TestKing, which employs 500 users. The network consists of a single Active Directory domain named All network servers run Windows Server 2003, and all client computers run Windows XP Professional. You install Terminal Services on three servers TestKing1, TestKing2, and TestKing3. Initially, users can successfully connect to all three terminal servers by using Remote Desktop connections. Months later, users begin reporting that they can no longer connect to any of the terminal servers by using Remote Desktop connections. How should you solve this problem?()A、On each terminal server, change the licensing mode form Per Server to Per Seat.B、Add additional Microsoft Windows licenses to the Site License server for the domain.C、Configure and activate an Enterprise license server.D、On each terminal server, change the licensing mode from Per Device to Per User.

All servers on your company’s network run Windows Server 2008 R2. All client computers run Windows Vista.  The company is planning to virtualize an application that runs only on Windows 2000 Professional. You need to recommend a virtualization solution that enables users to run the virtualized application while their computers are disconnected from the corporate network.    Which technology should you recommend?()A、Remote Desktop Services (RDS)B、Microsoft Application Virtualization (App-V)C、Microsoft Virtual Desktop Infrastructure (VDI)D、Microsoft Enterprise Desktop Virtualization (MED-V)

You are an enterprise administrator for Cer-tech .com. The corporate network of the company consists ofan Active Directory domain. All the servers on the network run Windows Server 2008. The network runsTerminal services to enable remote users to run commonly required applications from their terminal. A remote user logged on to the Terminal Server, required some help on the application he wanted to run.However,when you connect to the Terminal Server session,you cannot operate any applications. Which of the following options would you choose to ensure that you can assist any user on the Terminal Server?()A、From the Terminal Server, run the Chguserver /execute command and then reconnect to the session.B、In the RDP-Tcp Properties on the Terminal Server, enable the Use remote control option with default user settings.C、In the RDP-Tcp Properties on the Terminal Server, enable the Use remote control with the following settings option and then configure the Level of control policy setting to Interact with the session. Ask the user to log off and log back on.D、From the Terminal Server, run the Tscon /v command and then reconnect to the session.

You are the network administrator for The network consists of a single Active Directory domain named All network servers run Windows Server 2003, and all client computers run Windows XP Professional. XML Web services for the internal network run on a member server named TestKingSrv1, which is configured with default settings. You are a member of the local Administrators group on TestKingSrv1. You need the ability to remotely manage TestKingSrv1. You have no budget to purchase any additional licensing for your network until the next fiscal year. How should you reconfigure TestKingSrv1?()A、In the System Properties dialog box, enable Remote Desktop.B、Add your user account to the Remote Desktop Users local group.C、In the System Properties dialog box, enable Remote Assistance.D、Install Terminal Services by using Add or Remove Programs.

You are an enterprise administrator for Cer-tech .com. The corporate network of the company consists ofan Active Directory domain. All the servers on the network run Windows Server 2008. The network runs aTerminal server named Server02 to enable remote users to run commonly required applications from theirterminal. Which of the following options would you choose to prevent new sessions on the Terminal Server without affecting current user sessions?()A、Run Tskill /server: Server02/A commandB、Run Taskkill /S Server02 /fi "MODULES eq TermServerv" commandC、Run Change user /execute disable commandD、Run Change logon /disable command

You are an enterprise administrator for Cer-tech .com. The corporate network of the company consists of asingle Active Directory domain. All the servers on the network run Windows Server 2008. The networkconsists of two servers configured as follows: 1. Server01 (Member server): The Terminal Services role is installed. 2. Server02 (Test server in a workgroup environment): The Terminal Services Licensing role service isinstalled. You wanted to use Terminal Services Per User Client Access License (TS Per User CAL) mode onServer02. However, you were not able to enable the TS Per User CAL mode in the Terminal ServicesLicensing role service on Server02. Which of the following options would you choose to ensure that you can use TS Per User CAL mode onServer02?()A、Disjoin Server01 from the domain.B、Extend the schema to add attributes for Terminal Services Licensing.C、Join Server02 to the domain.D、Create a Group Policy object(GPO) that configures Server01 to use Server02 for licensing.

You are an enterprise administrator for Cer-tech .com. The corporate network of the company consists ofan Active Directory domain. All the servers on the network run Windows Server 2008. The network runsTerminal services to enable remote users to run commonly required applications from their terminal. Aremote user logged on to the Terminal Server, required some help on the application he wanted to run.However, when you connect to the Terminal Server session, you cannot operate any applications. Which ofthe following options would you choose to ensure that you can assist any user on the Terminal Server?()A、From the Terminal Server,run the Chguserver /execute command and then reconnect to the session.B、In the RDP-Tcp Properties on the Terminal Server,enable the Use remote control option with defaultuser settings.C、In the RDP-Tcp Properties on the Terminal Server,enable the Use remote control with the following settings option and then configure the Level of control policy setting to Interact with the session. Ask theuser to log off and log back on.D、From the Terminal Server,run the Tscon /v command and then reconnect to the session.

You network consists of a single Active Directory domain. All domain controllers run Windows Server 2008. You need to reset the Directory Services Recovery Mode (DSRM) password on a domain controller. What tool should you use()A、dsmodB、ntdsutilC、Local Users and Groups snap-inD、Active Directory Users and Computers snap-in

You are an enterprise administrator for Cer-tech .com. All the servers on the network run Windows Server2008. The network consists of a server called Server01 on which Windows SharePoint Services (WSS) roleis installed. A group of users need to access the WSS server. However, you want to restrict the users toview items, open items, and view versions on the WSS server. To accomplish this task, you created agroup called SPUsers that will access content on the WSS server. Which of the following permissionswould you configure for the SPUsers group to restrict the permissions of the group to viewing items,opening items,and viewing versions?()A、Limited AccessB、DesignC、ReadD、Contribute

You are an enterprise administrator for Cer-tech .com. The corporate network of the company consists ofan Active Directory domain. All the servers on the network run Windows Server 2008. The network runs aTerminal services role on a server to enable remote users to run commonly required applications from theirterminal. A Terminal Services application called App1 that runs on the server has suddenly stopped responding. Todiagnose the problem, you monitored the memory usage on the server for a week and discover that App1application has a memory leak. To resolve the problem, you first looked for a patch but that was not currently available. So you created a new resource-allocation policy in Microsoft Windows Server ResourceManager and configured a Process Matching Criteria named TrackMem for the application. Which of the following options would you choose to terminate the application when the application consumes more than half of the available memory on the server?()A、Configure the resource-allocation policy and set the maximum working set limit option to half theavailable memory on the server.B、Configure the resource-allocation policy and set the maximum committed memory option to half theavailable memory on the server.C、Set the new policy as a Profiling Policy.D、Set the new policy as a Managing Policy.

You are the network administrator for The network consists of a single Active Directory domain named All network servers run Windows Server 2003, and all client computers run Windows XP Professional. Terminal Services is installed on a member server named Terminal1 with default settings. Users in the editing department are members of a group named Editors. When these users try to make a Terminal Services connection to Terminal1, they receive the following error message: "The local policy of this system does not permit you to logon interactively". You need to enable members of the Editors group to establish Terminal Services sessions on Terminal1. What should you do?()A、Enable the Allow users to connect remotely to this computer option on Terminal1.B、Add the Editors group to the Remote Desktop Users group on Terminal1.C、Configure the RDP-Tcp connection properties on Terminal1 to assign the Allow - Full Control permission to the Editors group.D、Add the Editors group to the Remote Desktop Users group in Active Directory.

You are the network administrator for your company. The network consists of a single Active Directory domain. All servers run Windows Server 2003.   The network contains servers that have Terminal Server enabled. The terminal servers host legacy applications that currently require users to be members of the Power Users group.   A new requirement in the company’s written security policy states that the Power Users group must be empty on all resource servers.   You need to maintain the ability to run the legacy applications on the terminal servers when the new security requirement is implemented.   What should you do?  ()A、 Add the Domain Users global group to the Remote Desktop Users built-in group in the domain.  B、 Add the Domain Users global group to the Remote Desktop Users local group on each terminal server.C、 Modify the Compatws.inf security template settings to allow members of the local Users group to run the applications. Import the security template into the Default Domain Controllers Policy Group Policy object (GPO).D、 Modify the Compatws.inf security template settings to allow members of the local Users group to run the applications. Apply the modified template to each terminal server.

You are an enterprise administrator for Cer-tech .com. The corporate network consists of a single ActiveDirectory domain. The company runs Windows Server 2008 on all the servers on the network. One of theservers, Server01 has the Windows SharePoint Services (WSS) server role installed on it. Which of thefollowing options would you choose to configure WSS server in such a way that it allow users to createdistribution lists from a SharePoint site?()A、Modify the outgoing mail character set.B、Configure the SharePoint site to accept messages from authenticated users only.C、Enable the SharePoint Directory Management Service on Server0 1.D、Use the default Rights Management server in Active Directory Domain Services to configure the SharePoint site.

单选题You are the network administrator for The network consists of a single Active Directory domain named All 40 network servers run Windows Server 2003, and all 1,500 client computers run Windows XP Professional. The servers are located in seven different buildings. All are configured to allow Remote Desktop connections. A new administrator named Tess King is hired to help you configure applications and perform disk defragmentation on all 40 servers. You need to enable Tess King to manage the servers remotely by using Remote Desktop for Administration. What should you do?()AAdd Tess King to the Administrators group.BAdd Tess King to the Power Users group.CAdd Tess King to the Remote Desktop Users group.DDelegate control of the Domain Controllers organizational unit (OU) to Tess King.EDelegate control of the Computers organizational unit (OU) to Tess King.

单选题You are an enterprise administrator for Cer-tech .com. The corporate network of the company consists ofan Active Directory domain. All the servers on the network run Windows Server 2008. The network runs aTerminal server named Server02 to enable remote users to run commonly required applications from theirterminal. Which of the following options would you choose to prevent new sessions on the Terminal Server without affecting current user sessions?()ARun Tskill /server: Server02/A commandBRun Taskkill /S Server02 /fi MODULES eq TermServerv commandCRun Change user /execute disable commandDRun Change logon /disable command

多选题You are an enterprise administrator for Cer-tech .com. The corporate network of the company consists ofan Active Directory domain. All the servers on the network run Windows Server 2008. The network runs aTerminal server named Server02 to enable remote users to run commonly required applications from theirterminal. You have recently been asked to deploy a Terminal Services application called App1 on Server02. To deploy the application, you first confirmed from the application vendor that the applicationcan be deployed in a Terminal Services environment. The features of App1 are that it does not use Microsoft Windows Installer packages for installation and makes changes to the current user registry duringinstallation. Which of the following options would you choose to install the application to support multipleuser sessions?()ARun the change user /install command on Server02BInstall the applicationCRun the change user /execute command on Server02DRun the change logon /disable command on Server02

单选题You are an enterprise administrator for Cer-tech .com. All the servers on the network run Windows Server2008. The network consists of a server called Server01 that runs Microsoft Hyper-V and hosts three virtualmachines. To fulfill a network requirement, you need to configure all of the virtual machines to connect toeach other. However, the company policy states that the virtual machines must not connect to the companynetwork. Which of the following options would you choose to ensure that all the virtual machines connect to eachother and you meet the company policy also?()AEnable the Enable virtual LAN identification option for each virtual machineBEnable the Enable virtual LAN identification option for each virtual machine and then set the connection to Host for the network interface cardCSet the Connection to None for the network interface cardDSelect the Not connected option for each virtual machine.

单选题You are the network administrator for The network consists of a single Active Directory domain named All network servers run Windows Server 2003, and all client computers run Windows XP Professional. Terminal Services is installed on a member server named Terminal1 with default settings. Users in the editing department are members of a group named Editors. When these users try to make a Terminal Services connection to Terminal1, they receive the following error message: "The local policy of this system does not permit you to logon interactively". You need to enable members of the Editors group to establish Terminal Services sessions on Terminal1. What should you do?()AEnable the Allow users to connect remotely to this computer option on Terminal1.BAdd the Editors group to the Remote Desktop Users group on Terminal1.CConfigure the RDP-Tcp connection properties on Terminal1 to assign the Allow - Full Control permission to the Editors group.DAdd the Editors group to the Remote Desktop Users group in Active Directory.

单选题You are an enterprise administrator for Cer-tech .com. The corporate network of the company consists of asingle Active Directory domain. All the servers on the network run Windows Server 2008. The network consists of a server called Server01 that has the Terminal Services role is installed on it. You have recentlydeployed a remote application called APP1 on the Terminal server. You need to ensure that the company’ssecurity policy that states that users should not be allowed to copy and paste information to a localcomputer during a Terminal Services session,requirements must be met while configuring Terminal Services. Which of the following options would you choose to accomplish this task?()AIn the RDP-Tcp Client setting properties for the server,disable the Drive option.BIn the RDP Settings for the published application,deselects the Clipboard option.CEnable the Use temporary folders per session option.DChange the Security Encryption Level to FIPS Compliant.

单选题You network consists of a single Active Directory domain. All domain controllers run Windows Server 2008. You need to reset the Directory Services Recovery Mode (DSRM) password on a domain controller. What tool should you use()AdsmodBntdsutilCLocal Users and Groups snap-inDActive Directory Users and Computers snap-in

单选题You are an enterprise administrator for Cer-tech .com. The corporate network consists of a single ActiveDirectory domain. The company runs Windows Server 2008 on all the servers on the network. One of theservers, Server01 has the Windows SharePoint Services (WSS) server role installed on it. Which of thefollowing options would you choose to configure WSS server in such a way that it allow users to createdistribution lists from a SharePoint site?()AModify the outgoing mail character set.BConfigure the SharePoint site to accept messages from authenticated users only.CEnable the SharePoint Directory Management Service on Server0 1.DUse the default Rights Management server in Active Directory Domain Services to configure the SharePoint site.