考题
Your company has a single Active Directory directory service domain. All servers in your environment run Windows Server 2003. Client computers run Windows XP or Windows Vista. You plan to create a security update scan procedure for client computers. You need to choose a security tool that supports all the client computers. Which tool should you choose? ()A、 UrlScan Security ToolB、 Enterprise Scan Tool (EST)C、 Malicious Removal Tool (MRT)D、 Microsoft Baseline Security Analyzer (MBSA)
考题
Your network contains an internal network and a perimeter network. The internal network contains an Active Directory forest. The forest contains a single domain. You plan to deploy 10 Edge Transport servers on the perimeter network. You need to recommend a solution for the Edge Transport server deployment. The solution must meet the following requirements: .Allow administrators to apply a single security policy to all Edge Transport servers .Reduce the administrative overhead that is required to manage servers .Minimize the attack surface of the internal network What should you recommend?()A、Implement Network Policy and Access Services (NPAS).B、Implement Active Directory Federation Services (AD FS).C、Create a new Active Directory domain in the internal forest, and then join all Edge Transport servers to the new domain.D、Create an Active Directory forest in the perimeter network, and then join all Edge Transport servers to the new domain.
考题
You are designing the DNS topology to meet the business and technical requirements. Which DNS structure should you use?()A、 one primary zoneB、 two primary zonesC、 one Active Directory-integrated zone that has the replication scope set to all DNS servers in the forest.D、 two Active Directory-integrated zones that have the replication scopes set to all DNS servers in the forest.E、 one Active Directory-integrated zone that has the replication scope set to all domain controllers in the domain.F、 two Active Directory-integrated zones that have the replication scopes set to all domain controllers in the domain.
考题
Contoso Ltd. has a single active directory forest that has five domains. Each domain has two DNS servers. Each DNS server hosts active directory-integrated zones for all five domains. All domain controllers run windows server 2008. Contoso acquires a company names tailspin toys. Tailspin toys has a single active directory forest that contains a single domain. You need to configure the DNS system in the contoso forest to provide name resolution for resources in both forests. What should you do?()A、Configure client computers in the contoso forest to use the tailspin toys DNS server as the alternate DNS server.B、Create a new conditional forwader and store it in active directory. Replicate the new conditional forwarded to all DNS server in the contoso forest.C、Create a new application directory partition in the contoso forest. Enlist the directory partition for all DNS servers.D、Create a new host (A) record in the globalnames folder on one of the DNS servers in the contoso forest. Configure the host (A) record by using by using the tailspin toys domain name and the ip address of the DNS server in the tailspin toys forest.
考题
You have an Exchange Server 2010 organization. Your company has a relationship with another company. The partner company has an Exchange Server 2010 organization. You need to recommend a security solution to meet the following requirements: .Ensure that all e-mail delivery between your servers and the partner companys servers is encrypted .Ensure that all communication between your servers and the partner companys servers is authenticated What should you include in the solution?()A、Active Directory Rights Management Services (AD RMS)B、Domain SecurityC、Forms-based AuthenticationD、Secure/Multipurpose Internet Mail Extensions (S/MIME)
考题
Contoso Ltd. has a single Active Directory forest that has five domains. Each domain has two DNS servers. Each DNS server hosts Active Directory-integrated zones for all five domains. All domain controllers run windows server 2008. Contoso acquires a company names Tailspin Toys. Tailspin Toys has a single Active Directory forest that contains a single domain. You need to configure the DNS system in the Contoso forest to provide name resolution for resources in both forests. What should you do?()A、Configure client computers in the Contoso forest to use the Tailspin Toys DNS server as the alternate DNS serverB、Create a new conditional forwarder and store it in Active Directory. Replicate the new conditional forwarded to all DNS server in the Contoso forest.C、Create a new application directory partition in the Contoso forest. Enlist the directory partition for all DNS serversD、Create a new host (A) record in the GlobalNames folder on one of the DNS servers in the contoso forest. Configure the host (A) record by using the Tailspin Toys domain name and the ip address of the DNS server in the Tailspin Toys forest.
考题
You are a security administrator for your company. The network consists of three Active Directory domains. All Active Directory domains are running at a Windows Server 2003 mode functionality level. Employees in the editorial department of your company need access to resources on file servers that are in each of the Active Directory domains. Each Active Directory domain in the company contains at least one editorial department employee user account. You need to create a single group named Company Editors that contains all editorial department employee user accounts and that has access to the resources on file server computers. What should you do?()A、 Create a global distribution group in the forest root domain and name it Company Editors.B、 Create a global security group in the forest root domain and name it Company Editors.C、 Create a universal distribution group in the forest root domain and name it Company Editors. D、 Create a universal security group in the forest root domain and name it Company Editors.
考题
Your company has a single Active Directory directory service domain. Servers in your environment run Windows Server 2003. Client computers run Windows XP or Windows Vista. You plan to create an internal centrally managed security update infrastructure for client computers. You need to choose a security update management tool that supports all the client computers. Which tool should you choose? ()A、 Microsoft Assessment and Planning (MAP) ToolkitB、 Microsoft Baseline Security AnalyzerC、 Microsoft System Center Operations ManagerD、 Windows Server Update Services (WSUS)
考题
Your company has a main office and three branch offices. The company has an Active Directory forest that has a single domain. Each office has one domain controller. Each office is configured as an Active Directory site. All sites are connected with the DEFAULTIPSITELINK object. You need to decrease the replication latency between the domain controllers. What should you do()A、Decrease the cost between the connection objects.B、Decrease the replication interval for all connection objects.C、Decrease the replication interval for the DEFAUL TIPSITELINK object.D、Decrease the replication schedule for the DEFAUL TIPSITELINK object.
考题
单选题Contoso Ltd. has a single Active Directory forest that has five domains. Each domain has two DNS servers. Each DNS server hosts Active Directory-integrated zones for all five domains. All domain controllers run Windows Server 2008 R2.Contoso acquires a company named Tailspin Toys. Tailspin Toys has a single Active Directory forest that contains a single domain. You need to configure the DNS system in the Contoso forest to provide name resolution for resources in both forests. What should you do?()A
Configure client computers in the Contoso forest to use the Tailspin Toys DNS server as the alternate DNS server.B
Create a new conditional forwarder and store it in Active Directory. Replicate the new conditional forwarder to all DNS servers in the Contoso forest.C
Create a new application directory partition in the Contoso forest. Enlist the directory partition for all DNS servers.D
Create a new host (A) record in the GlobalNames folder on one of the DNS servers in the Contoso forest. Configure the host (A) record by using the Tailspin Toys domain name and the IP address of the DNS server in the Tailspin Toys forest.
考题
单选题Your company has a single domain named contoso.com. The contoso.com DNS zone is Active Directoryintegrated. Your partner company has a single domain named partner.com. The partner.com DNS zone is Active Directory-integrated. The IP Addresses of the DNS servers in the partner domain will change. You need to ensure name resolution for users in contoso.com to resources in partner.com on each DNS server in contoso.com. What should you do?()A
Create a stub zone for partner.com on each DNS server in contoso.comB
Configure the zone replication scope for partner.com to replicate to all DNS servers in the forestC
Configure an application directory partition in the contoso.com forest. Enlist all DNS servers in the contoso.com forest in the partitionD
Configure an application directory partition in the partner forest. Enlist all DNS servers in the partner forest in the partition.
考题
单选题Your company has a single domain named contoso.com. the contoso.com DNS zone is active directory-integrated. Your partner company has a single domain named partner.com. the partner.com. DNS zone is active directory-integrated. The IP addresses to the DNS servers in the partner domain will change. You need to ensure name resolution for users in contoso.com to resources in partner.com on each DNS server in contoso.com. what should you do?()A
Create a stub zone for partner.com on each DNS server in contoso.com.B
Configure the zone replication scope for partner.com to replicate to all DNS servers In the forest.C
Configure an application directory partition in the contoso.com forest. Enlist all DNS servers in the contoso.com forest in the partition.D
Configure an application directory partition in the partner forest. Enlist all DNS servers in the partner forest in the partition.
考题
单选题You are designing the DNS topology to meet the business and technical requirements. Which DNS structure should you use?()A
one primary zoneB
two primary zones C
one Active Directory-integrated zone that has the replication scope set to all DNS servers in the forest.D
two Active Directory-integrated zones that have the replication scopes set to all DNS servers in the forest.E
one Active Directory-integrated zone that has the replication scope set to all domain controllers in the domain.F
two Active Directory-integrated zones that have the replication scopes set to all domain controllers in the domain.
考题
单选题You are a security administrator for your company. The network consists of three Active Directory domains. All Active Directory domains are running at a Windows Server 2003 mode functionality level. Employees in the editorial department of your company need access to resources on file servers that are in each of the Active Directory domains. Each Active Directory domain in the company contains at least one editorial department employee user account. You need to create a single group named Company Editors that contains all editorial department employee user accounts and that has access to the resources on file server computers. What should you do?()A
Create a global distribution group in the forest root domain and name it Company Editors.B
Create a global security group in the forest root domain and name it Company Editors.C
Create a universal distribution group in the forest root domain and name it Company Editors. D
Create a universal security group in the forest root domain and name it Company Editors.
考题
单选题Your company has an Active Directory forest. The company has servers that run Windows Server 2008 R2 and client computers that run Windows 7. The domain uses a set of GPO administrative templates that have been approved to support regulatory compliance requirements. Your partner company has an Active Directory forest that contains a single domain. The company has servers that run Windows Server 2008 R2 and client computers that run Windows 7. You need to configure your partner company’s domain to use the approved set of administrative templates. What should you do()A
Use the Group Policy Management Console (GPMC) utility to back up the GPO to a file. In each site, import the GPB
Copy the ADMX files from your company’s PDC emulator to the PolicyDefinitions folder on the partner company’s PDCC
Copy the ADML files from your company’s PDC emulator to the PolicyDefinitions folder on the partner company’s PDC D
Download the conf.adm, system.adm, wuau.adm, and inetres.adm files from the Microsoft Updates Web site.
考题
单选题Your company has a single Active Directory directory service domain. All servers in your environment run Windows Server 2003. All domain controllers run Active DirectoryCintegrated DNS. You create several static host (A) resource records. You need to verify that the DNS server is sending the correct host records to all client computers. Which command-line tool should you use?()A
netshB
tracertC
ntdsutilD
nslookup
考题
多选题Your company has a main office and three branch offices. Each office is configured as a separate Active Directory site that has its own domain controller. You disable an account that has administratrve rights. You need to immediately replicate the disabled account information to all sites. What are two possible ways to achieve this goal()AUse Dsmod.exe to configure all domain controllers as global catalog servers.BUse Repadmin.exe to force replication between the site connection objectsCFrom the Active Directory Sites and Services console, select the existing connection objects and force replication.DFrom the Actrve Directory Sites and Services console, configure all domain controllers as global catalog servers.
考题
单选题Your company has a single Active Directory directory service domain. All servers in your environment run Windows Server 2003. Client computers run Windows XP or Windows Vista. You plan to create a security update scan procedure for client computers. You need to choose a security tool that supports all the client computers. Which tool should you choose? ()A
UrlScan Security ToolB
Enterprise Scan Tool (EST)C
Malicious Removal Tool (MRT)D
Microsoft Baseline Security Analyzer (MBSA)
考题
单选题You have an Exchange Server 2010 organization. Your company has a relationship with another company. The partner company has an Exchange Server 2010 organization. You need to recommend a security solution to meet the following requirements: .Ensure that all e-mail delivery between your servers and the partner companys servers is encrypted .Ensure that all communication between your servers and the partner companys servers is authenticated What should you include in the solution?()A
Active Directory Rights Management Services (AD RMS)B
Domain SecurityC
Forms-based AuthenticationD
Secure/Multipurpose Internet Mail Extensions (S/MIME)
考题
单选题Your company has a single Active Directory directory service domain. Servers in your environment run Windows Server 2003. Client computers run Windows XP or Windows Vista. You plan to create an internal centrally managed security update infrastructure for client computers. You need to choose a security update management tool that supports all the client computers. Which tool should you choose? ()A
Microsoft Assessment and Planning (MAP) ToolkitB
Microsoft Baseline Security AnalyzerC
Microsoft System Center Operations ManagerD
Windows Server Update Services (WSUS)
考题
单选题Your company has a single domain named contoso.com. The contoso.com DNS zone is Active Directory-integrated. Your partner company has a single domain named partner.com. The partner.com DNS zone is Active Directory-integrated. The IP addresses of the DNS servers in the partner domain will change. You need to ensure name resolution for users in contoso.com to resources in partner.com. What should you do?()A
Create a stub zone for partner.com on each DNS server in contoso.com.B
Configure the Zone Replication Scope for partner.com to replicate to all DNS servers in the forest.C
Configure an application directory partition in the contoso.com forest. Enlist all DNS servers in the contoso.com forest in the partition.D
Configure an application directory partition in the partner forest. Enlist all DNS servers in the partner forest in the partition.