单选题Cer-tech .com has an active directory domain. You are the administrator of ES1,a server that runs Windows Server 2008 and has Terminal Services role and the Terminal Services Web Access role serviceinstalled on it. You install Terminal Services Gateway role on ES1 and create the Terminal Services connection authorization policy. Users are reporting that they cannot access ES1. What should you do toensure that the users can connect to ES1?()AInstall and configure the Terminal Services Resource Authorization Policy (RAP) on ES1BConfigure the Network Access Protection on ES1 and start the Terminal services gateway serviceCCreate a Terminal Services Group Policy Object and allow users to connect remotely to the Terminalservices setting on the GPO. Link the GPO to the domain controllerDCreate a Terminal services GPO and Set the TS Roaming profiles setting on the GPO
单选题
Cer-tech .com has an active directory domain. You are the administrator of ES1,a server that runs Windows Server 2008 and has Terminal Services role and the Terminal Services Web Access role serviceinstalled on it. You install Terminal Services Gateway role on ES1 and create the Terminal Services connection authorization policy. Users are reporting that they cannot access ES1. What should you do toensure that the users can connect to ES1?()
A
Install and configure the Terminal Services Resource Authorization Policy (RAP) on ES1
B
Configure the Network Access Protection on ES1 and start the Terminal services gateway service
C
Create a Terminal Services Group Policy Object and allow users to connect remotely to the Terminalservices setting on the GPO. Link the GPO to the domain controller
D
Create a Terminal services GPO and Set the TS Roaming profiles setting on the GPO
参考解析
解析:
暂无解析
相关考题:
Certkiller .com has a main office and a branch office. Certkiller .com’s network consists of a single Active Directory forest. Some of the servers in the network run Windows Server 2008 and the rest run Windows server 2003. You are the administrator at Certkiller .com. You have installed Active Directory Domain Services (AD DS) on a computer that runs Windows Server 2008. The branch office is located in a physically insecure place. It has not IT personnel onsite and there are no administrators over there. You need to setup a Read-Only Domain Controller (RODC) on the Server Core installation computer in the branch office. What should you do to setup RODC on the computer in branch office()A、Execute an attended installation of AD DSB、Execute an unattended installation of AD DSC、Execute RODC through AD DSD、Execute AD DS by using deploying the image of AD DSE、none of the above
Your company has an Active Directory domain named ad.contoso.com. All client computers run Windows 7.The company has recently acquired a company that has an Active Directory domain named ad.fabrikam.com. A two-way forest trust is established between the ad.fabrikam.com domain and the ad.contoso.com domain.You need to edit the ad.contoso.com domain Group Policy object (GPO) to enable users in the ad.contoso.com domain to access resources in the ad.fabrikam.com domain.What should you do?()A、Configure the DNS Suffix Search List option to ad.contoso.com, ad.fabrikam.com.B、Configure the Allow DNS Suffix Appending to Unqualified Multi-Label Name Queries option to True.C、Configure the Primary DNS Suffix option to ad.contoso.com, ad.fabrikam.com. Configure the Primary DNS Suffix Devolution option to True.D、Configure the Primary DNS Suffix option to ad.contoso.com, ad.fabrikam.com. Configure the Primary DNS Suffix Devolution option to False.
You are designing a plan to migrate an existing application to Windows Azure. The application must use the existing Active Directory Domain Services (AD DS) domain. You need to recommend an approach for joining Windows Azure virtual machines to the domain. What should you recommend?()A、 Install the Active Directory Certificate Services (AD CS) root certificate into the Enterprise Trust certificate store on each virtual machine.B、 Configure Windows Azure Connect.C、 Configure Windows Azure AppFabric Access Control.D、 Install Active Directory Federation Services (AD FS) in the existing domain.
Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1. The Active Directory Federation Services (AD FS) role is installed on Server1. Contoso.com is defined as an account store. A partner company has a Web-based application that uses AD FS authentication. The partner company plans to provide users from contoso.com access to the Web application. You need to configure AD FS on contoso.com to allow contoso.com users to be authenticated by the partner company. What should you create on Server1()A、a new applicationB、a resource partnerC、an account partnerD、an organization claim
Cer-tech .com has a server that hosts an Active Directory domain. A server at Cer-tech .com named Server02 has Terminal services role and Terminal Services web access role installed. It also has a servercalled Server0SA that runs ISA Server 2006. You are assigned the task to deploy Terminal ServicesGateway (TS Gateway) role on a new server called Server04 . Cer-tech .com. Cer-tech .com wants toemploy ISA as the SSL endpoint for Terminal Server connections. After doing the necessary configurations, you succeed in deploying TS Gateway role on Server04 . Cer-tech .com. Now you have toconfigure the ISA for TS connections. To do this you need to configure the TS gateway on Server04 to useISA 2006 on Server02 . What should you do to achieve this objective?()A、On Server04 , configure the Terminal Services Connection Authorization Policy store to use Server02 ass the Central network policy serverB、Design an SSL certificate from Server04 and export it to install the SSL certificate on Server02 . Set the ISA service on Server02 to use SSL certificate on Server04C、Set the TS gateway to use SSL HTTPS-HTTP bridgingD、Export an SSL certificate on Server04 and install it on Server02 . Set the TS gateway to accept SSL certificate from Server02
Certkiller .com has a network that consists of a single Active Directory domain. A technician has accidently deleted an Organizational unit (OU) on the domain controller. As an administrator of Certkiller .com, you are in process of restoring the OU. You need to execute a non-authoritative restore before an authoritative restore of the OU. Which backup should you use to perform non-authoritative restore of Active Directory Domain Services (AD DS) without disturbing other data stored on domain controller()A、Critical volume backupB、Backup of all the volumesC、Backup of the volume that hosts Operating systemD、Backup of AD DS foldersE、all of the above
As an administrator at Certkiller.com, you have installed an Active Directory forest that has a single domain. You have installed an Active Directory Federation services (AD FS) on the domain member server. What should you do to configure AD FS to make sure that AD FS token contains information from the active directory domain()A、Add a new account store and configure it.B、Add a new resource partner and configure itC、Add a new resource store and configure itD、Add a new administrator account on AD FS and configure itE、None of the above
You have an Active Directory directory service forest with a forest root domain. The root domain has two child domains named na.corp.contoso.com and asia.prod.contoso.com. You have an Active Directory site for each domain. All sites are connected through the DEFAULTIPSITELINK site link. You need to minimize the time that is required to authenticate users when they access resources in the other domain. What should you do?()A、 Create a shortcut trust between the child domains.B、 Create a shortcut trust from the forest root domain to each of the child domains.C、 Decrease the replication interval for the DEFAULTIPSITELINK site link.D、 Create a batch script to replicate changes between the sites. Schedule the script to run on a regular basis.
单选题Contoso, Ltd. has an Active Directory domain named ad.contoso.com. Fabrikam, Inc. has an Active Directory domain named intranet.fabrikam.com. Fabrikam’s security policy prohibits the transfer of internal DNS zone data outside the Fabrikam network. You need to ensure that the Contoso users are able to resolve names from the intranet.fabrikam.com domain. What should you do()ACreate a new stub zone for the intranet.fabrikam.com domain.BConfigure conditional forwarding for the intranet.fabrikam.com domain.CCreate a standard secondary zone for the intranet.fabrikam.com domain.DCreate an Active Directory-integrated zone for the intranet.fabrikam.com domain.
单选题Your company has an Active Directory domain named ad.contoso.com. All client computers run Windows Vista. The company has recently acquired a company that has an Active Directory domain named ad.fabrikam.com. A two-way forest trust is established between the ad.fabrikam.comdomain and the ad.contoso.com domain. You need to edit the ad.contoso.com domain Group Policy object (GPO) to enable users in the ad.contoso.com domain to access resources in thead.fabrikam.com domain. What should you do?()AConfigure the DNS Suffix Search List option to ad.contoso.com, ad.fabrikam.com.BConfigure the Allow DNS Suffix Appending to Unqualified Multi-Label Name Queries option to True.CConfigure the Primary DNS Suffix option to ad.contoso.com, ad.fabrikam.com. Configure the Primary DNS Suffix Devolution option to True.DConfigure the Primary DNS Suffix option to ad.contoso.com, ad.fabrikam.com. Configure the Primary DNS Suffix Devolution option to False.
单选题Your company has an Active Directory domain. You log on to the domain controller. The Active Directory Schema snap-in is not available in the Microsoft Management Console (MMC). You need to access the Actrve Directory Schema snap-in. What should you do()ARegister Schmmgml.dll.BLog off and log on again by using an account that is a member of the Schema Administrators group.CUse the Ntdsutil.exe command to connect to the Schema Master operations master and open the schema for writing.DAdd the Active Directory Lightweight Directory Services (AD LDS) role to the domain controller by using Server Manager.
多选题Certkiller.com has an active directory forest on a single domain. Certkiller needs a distributed application that employs a custom application. The application is directory partition software named PARDAT. You need to implement this application for data replication. Which two tools should you use to achieve this task()ADnscmd.BNtdsutil.CIpconfigDDnsutilEAll of the above
单选题Your company has an Active Directory domain. You log on to the domain controller. The Active Directory Schema snap-in is not available in the Microsoft Management Console (MMC). You need to access the Active Directory Schema snap-in. What should you do()ARegister Schmmgmt.dll.BLog off and log on again by using an account that is a member of the Schema Admins group.CUse the Ntdsutil.exe command to connect to the schema master operations master and open the schema for writingDAdd the Active Directory Lightweight Directory Services (AD/LDS) role to the domain controller by using Server Man
单选题Certkiller.com has a server with Active Directory Rights Management Services (AD RMS) server installed. Users have computers with Windows Vista installed on them with an Active Directory domain installed at Windows Server 2003 functional level. As an administrator at Certkiller.com, you discover that the users are unable to benefit from AD RMS to protect their documents. You need to configure AD RMS to enable users to use it and protect their documents. What should you do to achieve this functionality()AConfigure an email account in Active Directory Domain Services (AD DS) for each user.BAdd and configure ADRMSADMIN account in local administrators group on the user computersCAdd and configure the ADRMSSRVC account in AD RMS server’s local administrator groupDReinstall the Active Directory domain on user computersEAll of the above
单选题Your company has an Active Directory domain named ad.contoso.com All client computers run Windows Vista. The company has recently acquired a company that has an Active Directory domain named ad. fabrikam.com. A two-way forest trust is established between the ad.fabrikam.com domain and the ad. contoso.com domain. You need to edit the ad.contoso.com domain Group Policy Object (GPO) to enable users in ad.contoso.com domain to access resources in the ad.frabrikam.com domain. What should you do?()AConfigure the DNS suffix Search List option to ad.contoso.com, ad.fabrikam.comBConfigure the Allow DNS Suffix appending to Unqualified Multi-Label Name Queries option to TrueCConfigure the Primary DNS Suffix to ad.contoso.com, ad.fabrikam.com. configure the Primary DNS suffix Devolution option to TrueDConfigure the Primary DNS Suffix to ad.contoso.com, ad.fabrikam.com. configure the Primary DNS suffix Devolution option to False
单选题Your company has an active directory domain named ad.contoso.com all client computers run windows vista. The company has recently acquired a company that has an active directory domain named ad.fabrikam.com. a two-way forest trust is established between the ad.fabrikam.com domain and the ad.contoso.com domain. You need to edit the ad.contoso.com domain group policy object (GPO) to enable users in ad.contoso.com domain to access resources in the ad.frabrikam.com domain.What should you do?()AConfigure the DNS suffix searc List option to ad.contoso.com, ad.fabrikam.com .BConfigure the allow DNS suffix appending to unqualified milti-label name queries option to true.CConfigure the primary DNS suffix to ad.contoso.com, ad.fabrikam.com. configure the primary DNS suffix devolution option to true.DConfigure the primary DNS Suffix to ad.contoso.com, ad.fabrikam.com. configure the primary DNS suffix devolution option to false.
单选题Your company has an Active Directory forest that contains a single domain. The domain member server has an Active Directory Federation Services (AD FS) server role installed. You need to configure AD FS to ensure that AD FS tokens contain information from the Active Directory domain. What should you do()AAdd and configure a new account store.BAdd and configure a new account partner.CAdd and configure a new resource partner.DAdd and configure a Claims-aware application.
单选题Your company has an Active Directory domain. You log on to the domain controller. The Active Directory Schema snap-in is not available in the Microsoft Management Console (MMC). You need to access the Active Directory Schema snap-in. What should you do()ARegister Schmmgmt.dll.BLog off and log on again by using an account that is a member of the Schema Administrators group.CUse the Ntdsutil.exe command to connect to the Schema Master operations master and open the schema for writing.DAdd the Active Directory Lightweight Directory Services (AD LDS) role to the domain controller by using Server Manager.
单选题Certkiller .com has a network that consists of a single Active Directory domain. A technician has accidently deleted an Organizational unit (OU) on the domain controller. As an administrator of Certkiller .com, you are in process of restoring the OU. You need to execute a non-authoritative restore before an authoritative restore of the OU. Which backup should you use to perform non-authoritative restore of Active Directory Domain Services (AD DS) without disturbing other data stored on domain controller()ACritical volume backupBBackup of all the volumesCBackup of the volume that hosts Operating systemDBackup of AD DS foldersEall of the above
单选题Contoso, Ltd has an Active Directory domain named ad.contoso.com Fabrikam, Inc. has an Active Directory domain named intranet.fabrikam.com. Fabrikams security policy prohibits the transfer of internal DNS zone data outside the Fabrikam network. You need to ensure that the Contoso users are able to resolve names from the intranet.fabrikam.com domain. What should you do()ACreate a new stub zone for the intranet.fabrikam,com domain.BConfigure conditional forwarding for the intranet.fabrikam.com domain.CCreate a standard secondary zone for the intranet.fabrikam.com domain.DCreate an Active DirectoryCintegrated zone for the intranet.fabrikam.com domain.
单选题Certkiller.com has installed a server. You are assigned to install and run an instance of Active Directory Lightweight Directory Service (AD LDS). After doing necessary configurations, you start an instance of AD LDS successfully. Now you need to create new Organizational Units in the AD LDS application directory partition. What should you do to create new OUs in the AD LDS application directory partition()ATo create the OUs, use the dsmod OU commandBEmploy ADSI Edit Snap-in to create the OUs on the AD LDS application directory partition.CCreate OUs by executing dsadd OU commandDCreate OUs on the AD LDS application directory partition by using Active Directory Users and computers snap-in.
单选题Certkiller .com has a network that is comprise of a single Active Directory Domain. As an administrator at Certkiller .com, you install Active Directory Lightweight Directory Services (AD LDS) on a server that runs Windows Server 2008. To enable Secure Sockets Layer (SSL) based connections to the AD LDS server, you install certificates from a trusted Certification Authority (CA) on the AD LDS server and client computers. Which tool should you use to test the certificate with AD LDS()ALdp.exeBActive Directory Domain servicesCntdsutil.exeDLds.exeEwsamain.exeFNone of the above
单选题You are designing a plan to migrate an existing application to Windows Azure. The application must use the existing Active Directory Domain Services (AD DS) domain. You need to recommend an approach for joining Windows Azure virtual machines to the domain. What should you recommend?()A Install the Active Directory Certificate Services (AD CS) root certificate into the Enterprise Trust certificate store on each virtual machine.B Configure Windows Azure Connect.C Configure Windows Azure AppFabric Access Control.D Install Active Directory Federation Services (AD FS) in the existing domain.
单选题You have an Active Directory directory service forest with a forest root domain. The root domain has two child domains named na.corp.contoso.com and asia.prod.contoso.com. You have an Active Directory site for each domain. All sites are connected through the DEFAULTIPSITELINK site link. You need to minimize the time that is required to authenticate users when they access resources in the other domain. What should you do?()A Create a shortcut trust between the child domains.B Create a shortcut trust from the forest root domain to each of the child domains.C Decrease the replication interval for the DEFAULTIPSITELINK site link.D Create a batch script to replicate changes between the sites. Schedule the script to run on a regular basis.