You are the network administrator for The network consists of a sing Active Directory domain named All domain controllers run Windows Server 2003. All client computers run Windows XP Professional with default settings. Some users have portable computers, and the rest have desktop computers.You need to ensure that all users are authenticated by a domain controller whenthey log on.How should you modify the local security policy?()A. Require authentication by a domain controller to unlock the client computer.B. Cache zero interactive logons.C. Cache 50 interactive logons.D. Grant the Log on locally user right to the Users group.

You are the network administrator for The network consists of a sing Active Directory domain named All domain controllers run Windows Server 2003. All client computers run Windows XP Professional with default settings. Some users have portable computers, and the rest have desktop computers.You need to ensure that all users are authenticated by a domain controller whenthey log on.How should you modify the local security policy?()

A. Require authentication by a domain controller to unlock the client computer.

B. Cache zero interactive logons.

C. Cache 50 interactive logons.

D. Grant the Log on locally user right to the Users group.


相关考题:

You work as a network Exchange administrator at Company.com.The Company.com network currently consists of an internal network and perimeter network.The Company.com organization makes use of Microsoft Exchange Server 2010 as their messaging solution.Company.com has recently deployed a new server to the perimeter network which runs Microsoft Windows Server 2008 R2.During the course of the business week you receive instruction from Company.com to install the Microsoft Exchange Server Edge Transport server role on the server in the perimeter network. What should you do?()A、You should consider having the ImportEdgeConfig.ps1 script run on the existing Exchange Server 2010 server.B、You should consider having TCP port 88 and TCP port 3268 opened on the firewall between the perimeter network and the internal network.C、You should consider having the new server joined to an Active Directory domain.D、You should consider having the Active Directory Lightweight Directory Services installed on the new server in the perimeter network.

Your network consists of a single Active Directory domain that has three Active Directory sites. Each site contains two Active Directory domain controllers.  All domain controllers run Windows Server 2003 Service Pack 2 (SP2). All domain controllers have Windows Support Tools installed. You need to verify the replication status of Active Directory.  Which tool should you use?()A、Active Directory Sites and ServicesB、Nltest.exeC、Network MonitorD、Replmon.exe

You are designing a strategy to upgrade the DHCP servers after the new Active Directory structure is in place.  Who can authorize the DHCP servers?()A、 Chief information officerB、 IT support staff in BostonC、 IT support staff in New YorkD、 Network administrator in ChicagoE、 Network administrator in New York

Your network consists of a single Active Directory domain that has three Active Directory sites. Each site contains two Active Directory domain controllers. All domain controllers run Windows Server 2003 Service Pack 2 (SP2). All domain controllers have Windows Support Tools installed. You need to verify the replication status of Active Directory.  Which tool should you use?()A、Active Directory Sites and Services B、Nltest.exe C、Network Monitor D、Replmon.exe

Your network consists of an Active Directory domain and a DirectAccess infrastructure. You install Windows7 on a new portable computer and join the computer to the domain. You need to ensure that the computercan establish DirectAccess connections.  What should you do?()A、Install a computer certificate.B、Create a new network connection.C、Enable the Network Discovery firewall exception.D、Add the computer account to the Network Configuration Operators group.

You are the network administrator for The network consists of a single Active Directory domain named All network servers run Windows Server 2003. A member server named TestKing17 hosts several shared folders. Users report that they receive an error message when they try to connect to the shared folders. The error message states: "No more connections can be made to this remote computer at this time because there are already as many connections as the computer can accept." How should you solve the problem?()A、Add an additional network adapter to TestKing17. Configure a network bridge between the new network adapter and the original network adapter.B、Purchase additional per-seat licenses for TestKing17. In Control Panel on TestKing17, run the Licensing application. Add the additional licenses to TestKing17.C、Disable quota management on TestKing17.D、In Active Directory Sites and Services, select the site that contains TestKing17. Add an additional Active Directory connection object to the domain controller for the site.

You are a network administrator for your company. The network consists of a single Active Directory forest that contains three domains. The functional level of the forest and of all three domains is Window Server 2003. The company has a main office and 30 branch offices. Each branch office is connected to the main office by a 56-Kbps WAN connection. You configure the main office and each branch office as a separate Active Directory site. You deploy a Windows Server 2003 domain controller at the main office and at each branch office. Each domain controller is configured as a DNS server.   You can log on to the network from client computers in the branch offices at any time. However, users in the branch offices report that they cannot log on to the network during peak hours.   You need to allow users to log on to the network from branch office computers. You do not want to affect the performance of the branch office domain controllers. You need to minimize Active Directory replication traffic across the WAN connections.   What should you do? ()A、 Use Active Directory Sites and Services to enable universal group membership caching for each branch office site.B、 Use the DNS console to configure the branch office DNS servers to forward requests to a DNS server in the main office.C、 Use Active Directory Sites and Services to configure each branch office domain controller as a global catalog server.D、 Use the DNS console to configure the branch office DNS servers to use an Active Directory-integrated zone.

You are the network administrator for Your network consists of a single Active Directory domain named All domain controllers run Windows Server 2003. TestKing consists of a main office and two branch offices. The company expands to an additional branch office. This branch office has very little available network bandwidth. You need to install a new domain controller named DC9 at the new branch office. Your installation must minimize costs and network traffic. What should you do?()A、Back up the System State data of an existing domain controller on removable media. Mail a physical copy of the backup to the branch office. Use the backup to install Active Directory on DC9.B、For the branch office, create a new Active Directory site that contains no other domain controllers. Install Active Directory on DC9.C、Place DC9 on an IP subnet that already contains a domain controller. Install Active Directory on DC9. Physically transport DC9 to the branch office.D、Back up the System State data of an existing domain controller. Compress the backup. Copy the backup to DC9 at the branch office. Uncompress the backup. Use the backup to install Active Directory on DC9.

You are the network administrator for TestKing.com. The network consists of a single Active Directory domain named testking.com. All network servers run Windows Server 2003. You place computer accounts for servers in OUs that are organized by server roles. You apply GPOs to these servers at the OU level. You need to add a new server to the domain. You need to ensure that the appropriate GPOs are applied to this server. What should you do?()A、Prestage a domain computer account for the new server in the appropriate OU. Join the server to the domain by using the prestaged computer account.B、On the server, add the domain name for the Active Directory domain to the DNS suffix setting. Join the server to the domain.C、Assign a user account the Allow - Create permission for the appropriate OU. Join the new server to the domain by using the user account.D、Join the new server to the Active Directory domain. On the new server, run the gpupdate /force command.

You are the network administrator for The network consists of a single Active Directory domain named All network servers run Windows Server 2003. The domain contains three domain controllers: DC1, DC2, and DC3. Each one hosts user data. DC1 experiences hard disk failure. You need to temporary restore the user data to DC2. Which type of restoration should you perform?()A、Automated System Recovery (ASR)B、NormalC、PrimaryD、Authoritative

You network consists of a single Active Directory domain. All domain controllers run Windows Server  2008 R2.   You need to reset the Directory Services Restore Mode (DSRM) password on a domain controller.   What tool should you use()A、dsmodB、ntdsutilC、Local Users and Groups snap-inD、Active Directory Users and Computers snap-in

You network consists of a single Active Directory domain. All domain controllers run Windows Server 2008. You need to reset the Directory Services Recovery Mode (DSRM) password on a domain controller. What tool should you use()A、dsmodB、ntdsutilC、Local Users and Groups snap-inD、Active Directory Users and Computers snap-in

You are the network administrator for your company. Your network consists of a single Active Directory domain named All network servers run Windows Server 2003. A total of three servers are configured as domain controllers. You need to restore a failed domain controller named DC3. The last backup for any domain controller on the network occurred one week ago. First, you reinstall Windows Server 2003 on DC3. What should you do next?()A、Start DC3 and select Directory Services Restore Mode. Perform a nonauthoriative restoration.B、Start DC3 and select the Recovery Console. Perform a nonauthoriative restoration.C、Run Ntbackup.exe on DC3 to restore the System State data.D、Run the Active Directory Installation Wizard on DC3.

You are the network administrator for your company. The network consists of a single Active Directory domain. The network contains an application server running Windows Server 2003.   Users report intermittent slow performance when they access the application server throughout the day. You find out that the network interface on the application server is being heavily used during the periods of slow performance. You suspect that a single computer is causing the problem.You need to create a plan to identify the problem computer.   What should you do?()A、 Monitor the performance monitor counters on the application server by using System Monitor.  B、 Monitor the network traffic on the application server by using Network Monitor.C、 Monitor network statistics on the application server by using Task Manager.D、 Run network diagnostics on the application server by using Network Diagnostics.

You are the network administrator for The network consists of a single Active Directory domain All network servers run Windows Server 2003. Your network includes a shared folder named TestKingDocs. This folder must not be visible in a browse list. However, users report that they can see TestKingDocs when they browse for shared folders. How should you solve this problem?()A、Modify the share permissions to remove the All - Read permission on TestKingDocs from the Users group.B、Modify the NTFS permissions to remove the Allow - Read permissions on TestKingDocs from the Users group.C、Change the share name to TestKingDocs#.D、Change the share name to TestKingDocs$.

You work as a network Exchange administrator at Company.com.The Company.com network currently consists of a single Active Directory forest containing a single domain named Company.com.The Company.com organization makes use of Microsoft Exchange Server 2010 as their messaging solution.During the course of the business week you receive instruction from Company.com to install a new Exchange server to the network whilst ensuring that the network users are able to connect from the Internet to the new server using Exchange ActiveSync. What should you do?()A、You should consider having the Anonymous authentication enabled for the Microsoft-Server- ActiveSync virtual directory.B、You should consider having the Windows Integrated Authentication enabled for the Microsoft-Server- ActiveSync virtual directory.C、You should consider having the internal URL for the Microsoft-Server-ActiveSync virtual directory modified.D、You should consider having the external URL for the Microsoft-Server-ActiveSync virtual directory modified.

单选题You are the network administrator for your company. The network consists of a single Active Directory domain. All network servers run Windows Server 2003. The domain contains three domain controllers: DC1, DC2, and DC3. Each one hosts user data. DC1 experiences hard disk failure. You need to temporarily restore the user data to DC2. Which type of restoration should you perform? ()AAutomated System Recovery (ASR)BnormalCprimaryDauthoritative

单选题You work as the enterprise exchange administrator at TestKing.com. TestKing.com makes use of Microsoft Exchange Server messaging solution. The TestKing.com network consists of a single ActiveDirectory forest with one domain. The internal network of TestKing.com contains a perimeter network. You have received instructions fromthe CIO to install 15 Edge Transport servers on the perimeter network with the following criteria: * The Edge Transport servers should have a security policy, applied by the administrators. * The minimization of the administrative overhead towards the servers. * The minimization the attack surface of the perimeter network. What should you do?()AThe best option is to set up a new Active Directory domain in the internal forest and then join all EdgeTransport servers to the new domain.BThe best option is to make use of Active Directory Federation Services (AD FS).CThe best option is to make use of Network Policy and Access Services (NPAS).DThe best option is to set up a new Active Directory domain in the perimeter network and then join all Edge Transport Servers to the new domain.

多选题You are the network administrator for The network consists of a single Active Directory domain named All network servers run Windows Server 2003, and all client computers run Windows XP Professional. You use the Backup utility to schedule a full backup of TESTKINGDC1 every night. You ensure that the Active Directory configuration is also backed up. One week later, TESTKINGDC1 stops accepting logon requests. On investigation, you discover that the Active Directory configuration is corrupt. You need to restore TESTKINGDC1 as a functioning domain controller. Which two actions should you perform? ()(Each correct answer presents part of the solution. Choose two)ARestart TESTKINGDC1 in Directory Services Restore Mode.BDemote TESTKINGDC1 to a member server.CRun the ntbackup systemstate command on TESTKINGDC1.DRun the Backup utility and select the option to restore the System State data.ERun the ntdsutil command on TESTKINGDC1.

单选题You are the network administrator for The network consists of a single Active Directory domain named All network servers run Windows Server 2003. You are responsible for defining the procedures for backing up and restoring all servers. TestKing uses the Backup utility. To enhance security, The IT department deploys certificates to all network users. Smart cards will be required to log on to the domain. A domain controller named TestKingDC1 is configured as the certificate server. You need to create a backup plan for TestKingDC1. The backup must include only the minimum amount of data needed to restore Active Directory and the certificate server. Which action or actions should you perform? ()(Choose all that apply)ABack up the System State data.BBack up C:/windows/ntds.CBack up C:/windows/sysvol.DBack up C:/windows/system32/certsrv.

单选题Your network consists of a single Active Directory domain All domain controllers run WIndows Server 2008. You need to capture all replication errors from all domain controllers to a central localion What should you do()Aconfigure event log subscriptions.BStart the System Performance data collector set.Cstart the Active Directory Diagnostics data collector set.DInstall Network Monitor and create a new a new capture.

单选题You are the network administrator for The network consists of a sing Active Directory domain named All domain controllers run Windows Server 2003. All client computers run Windows XP Professional with default settings. Some users have portable computers, and the rest have desktop computers. You need to ensure that all users are authenticated by a domain controller whenthey log on. How should you modify the local security policy?()ARequire authentication by a domain controller to unlock the client computer.BCache zero interactive logons.CCache 50 interactive logons.DGrant the Log on locally user right to the Users group.

单选题You are designing a strategy to upgrade the DHCP servers after the new Active Directory structure is in place.  Who can authorize the DHCP servers?()A Chief information officerB IT support staff in BostonC IT support staff in New YorkD Network administrator in ChicagoE Network administrator in New York

单选题You are the network administrator for . The network consists of a single Active Directory domain. All domain controllers run Windows Server 2003, and all client computers run Windows XP Professional. TestKing acquires a subsidiary. You receive a comma delimited file that contains the names of all user accounts at the subsidiary. You need to import these accounts into your domain. Which command should you use?()AldifdeBcsvdeCntdsutil with the authoritative restore optionDdsadd user

多选题You are the network administrator for . The network consists of a single Active Directory domain All network servers run Windows Server 2003, and all client computers run Windows 2000 Professional. You need to standardize the desktop environment for all client computers. Your solution must prevent domain users from permanently modifying their regional settings or the desktop background. Which two actions should you perform? ()(Each correct answer presents part of the solution. Choose two)ASpecify the profile's network path in the user properties in Active Directory Users and Computers.BSpecify the profile's local path in the user properties in Computer Management,CSpecify the profile's network path in the user properties in Computer Management.DIn the network share where profiles reside, rename Ntuser.dat to Ntuser.man.EIn the local profile directory, rename Ntuser.dat to Ntuser.man.FIn the network share where profiles reside, rename the Ntuser.ini to Ntuser.man.

单选题Certkiller .com has a network that consists of a single Active Directory domain.Windows Server 2008 is installed on all domain controllers in the network.  You are instructed to capture all replication errors from all domain controllers to a central location. What should you do to achieve this task()AInitiate the Active Directory Diagnostics data collector setBSet event log subscriptions and configure itCInitiate the System Performance data collector setDCreate a new capture in the Network Monitor

单选题You work as a network Exchange administrator at Company.com.The Company.com network currently consists of an internal network and perimeter network.The Company.com organization makes use of Microsoft Exchange Server 2010 as their messaging solution.Company.com has recently deployed a new server to the perimeter network which runs Microsoft Windows Server 2008 R2.During the course of the business week you receive instruction from Company.com to install the Microsoft Exchange Server Edge Transport server role on the server in the perimeter network. What should you do?()AYou should consider having the ImportEdgeConfig.ps1 script run on the existing Exchange Server 2010 server.BYou should consider having TCP port 88 and TCP port 3268 opened on the firewall between the perimeter network and the internal network.CYou should consider having the new server joined to an Active Directory domain.DYou should consider having the Active Directory Lightweight Directory Services installed on the new server in the perimeter network.

单选题You are the network administrator for TestKing.com. The network consists of a single Active Directory domain named testking.com. All network servers run Windows Server 2003. You create an organizational unit (OU) named Engineering, which will hold all objects associated with the users and computers in the engineering department. You also create a global group named Engineering Admins, whose members will administer these objects. Now you need to assign the appropriate permissions to the Engineering Admins group so its members can administer the objects in the Engineering OU. First, you use Active Directory Users and Computers to view the properties of the Engineering OU. However, the Security tab is not available. What should you do next?()AConvert the system partition to NTFS.BEnable the Advanced Features option in the View menu of Active Directory Users and Computers.CEnable the Users, Groups, and Computers as Containers option in the View menu of Active Directory Users and Computers.DLog on by using a user account that has Administrator permissions for the Engineering OU.