网友您好, 请在下方输入框内输入要搜索的题目:

题目内容 (请给出正确答案)
单选题
Your company has an Active Directory domain. All consultants belong to a global group named  TempWorkers. The TempWorkers group is not nested in any other groups.   You move the computer objects of three file servers to a new organizational unit named  SecureServers. These file servers contain only confidential data in shared folders.    You need to prevent members of the TempWorkers group from accessing the confidential data  on the file servers. You must achieve this goal without affecting access to other domain  resources.     What should you do()
A

Create a new GPO and link it to the SecureServers organizational unit. Assign the Deny access to this computer fro

B

Create a new GPO and link it to the domain. Assign the Deny access to this computer from the network user right to

C

Create a new GPO and link it to the domain. Assign the Deny log on locally user right to the TempWorkers global g

D

Create a new GPO and link it to the SecureServers organizational unit. Assign the Deny log on locally user right to


参考答案

参考解析
解析: 暂无解析
更多 “单选题Your company has an Active Directory domain. All consultants belong to a global group named  TempWorkers. The TempWorkers group is not nested in any other groups.   You move the computer objects of three file servers to a new organizational unit named  SecureServers. These file servers contain only confidential data in shared folders.    You need to prevent members of the TempWorkers group from accessing the confidential data  on the file servers. You must achieve this goal without affecting access to other domain  resources.     What should you do()A Create a new GPO and link it to the SecureServers organizational unit. Assign the Deny access to this computer froB Create a new GPO and link it to the domain. Assign the Deny access to this computer from the network user right toC Create a new GPO and link it to the domain. Assign the Deny log on locally user right to the TempWorkers global gD Create a new GPO and link it to the SecureServers organizational unit. Assign the Deny log on locally user right to” 相关考题
考题 All client computers on your company network run Windows 7 and are members of an Active Directory Domain Services domain. Your company policy requires that all unnecessary services be disabled on the computers. The Sales department staff has been provided with new mobile broadband adapters that use the Global System for Mobile Communications (GSM) technology. You need to ensure that portable computers can connect to the broadband GSM network. Which service should be enabled on the portable computers?()A.WLAN AutoConfigB.WWAN AutoConfigC.Computer BrowserD.Portable Device Enumerator Service

考题 Your company has a single Active Directory directory service domain. All servers in your environment run Windows Server 2003. Client computers run Windows XP or Windows Vista. You plan to create a security update scan procedure for client computers. You need to choose a security tool that supports all the client computers.  Which tool should you choose? ()A、 UrlScan Security ToolB、 Enterprise Scan Tool (EST)C、 Malicious Removal Tool (MRT)D、 Microsoft Baseline Security Analyzer (MBSA)

考题 Your company has an Active Directory domain. All computers are members of the domain. Your networkcontains an internal Web site that uses Integrated Windows Authentication. From a computer that runs Windows 7, you attempt to connect to the Web site and are prompted for authentication. You verify that youruser account has permission to access the Web site. You need to ensure that you are automaticallyauthenticated when you connect to the Web site.  What should you do?()A、Create a complex password for your user account.B、Open Credential Manager and modify your credentials.C、Add the URL of the Web site to the Trusted sites zone.D、Add the URL of the Web site to the Local intranet zone.

考题 Your company has a branch office that is configured as a separate Active Directory site and has  an Active Directory domain controller.     The Active Directory site requires a local Global Catalog server to support a new application.     You need to configure the domain controller as a Global Catalog server.     Which tool should you use()A、The Dcpromo.exe utilityB、The Server Manager consoleC、The Computer Management consoleD、The Active Directory Sites and Services consoleE、The Active Directory Domains and Trusts console

考题 Your network consists of a single Active Directory domain. All domain controllers run Windows Server2008 R2. Your company and an external partner plan to collaborate on a project. The external partner has an Active Directory domain that contains Windows Server 2008 R2 domain controllers. You need to design a collaboration solution that meets the following requirements:   èAllows users to prevent sensitive documents from being forwarded to untrusted recipients or from being  printed.   èAllows users in the external partner organization to access the protected content to which they have been granted rights.   èSends all inter-organizational traffic over port 443.   èMinimizes the administrative effort required to manage the external users. What should you include in your design?()A、Establish a federated trust between your company and the external partner. Deploy a Windows Server 2008 R2 server that has Microsoft SharePoint Foundation 2010 installed.B、Establish a federated trust between your company and the external partner. Deploy a Windows Server 2008 R2 server that runs Microsoft SharePoint 2010 and that has the Active Directory Rights  Management Services (AD?RMS) role installed.C、Establish an external forest trust between your company and the external partner. Deploy a Windows Server 2008 R2 server that has the Active Directory Certificate Services server role installed. Implement Encrypting File System (EFS).D、Establish an external forest trust between your company and the external partner. Deploy a Windows Server 2008 R2 server that has the Active Directory Rights Management Service (AD?RMS)role installed  and Microsoft SharePoint Foundation 2010 installed.

考题 You have an Exchange Server 2010 organization.  Your company has a relationship with another company.  The partner company has an Exchange Server 2010 organization.  You need to recommend a security solution to meet the following requirements:  .Ensure that all e-mail delivery between your servers and the partner companys servers is encrypted .Ensure that all communication between your servers and the partner companys servers is authenticated What should you include in the solution?()A、Active Directory Rights Management Services (AD RMS)B、Domain SecurityC、Forms-based AuthenticationD、Secure/Multipurpose Internet Mail Extensions (S/MIME)

考题 You are a security administrator for your company. The network consists of three Active Directory domains. All Active Directory domains are running at a Windows Server 2003 mode functionality level.    Employees in the editorial department of your company need access to resources on file servers that are in each of the Active Directory domains. Each Active Directory domain in the company contains at least one editorial department employee user account.    You need to create a single group named Company Editors that contains all editorial department employee user accounts and that has access to the resources on file server computers.  What should you do?()A、 Create a global distribution group in the forest root domain and name it Company Editors.B、 Create a global security group in the forest root domain and name it Company Editors.C、 Create a universal distribution group in the forest root domain and name it Company Editors. D、 Create a universal security group in the forest root domain and name it Company Editors.

考题 Your company has a single Active Directory domain. All domain controllers run Windows Server  2003.     You install Windows Server 2008 R2 on a server.     You need to add the new server as a domain controller in your domain.     What should you do first()A、On the new server, run dcpromo /adv.B、On the new server, run dcpromo /createdcaccount.C、On a domain controller run adprep /rodcprep.D、On a domain controller, run adprep /forestprep.

考题 All client computers on your company network run Windows 7 and are members of an Active Directory Domain Services domain. Your company policy requires that all unnecessary services be disabled on the computers. The Sales department staff has been provided with new mobile broadband adapters that use the Global System for Mobile Communications (GSM) technology. You need to ensure that portable computers can connect to the broadband GSM network. Which service should be enabled on the portable computers?()A、WLAN AutoConfigB、WWAN AutoConfigC、Computer BrowserD、Portable Device Enumerator Service

考题 Your company has a single Active Directory directory service domain. Servers in your environment run Windows Server 2003. Client computers run Windows XP or Windows Vista. You plan to create an internal centrally managed security update infrastructure for client computers. You need to choose a security update management tool that supports all the client computers.  Which tool should you choose? ()A、 Microsoft Assessment and Planning (MAP) ToolkitB、 Microsoft Baseline Security AnalyzerC、 Microsoft System Center Operations ManagerD、 Windows Server Update Services (WSUS)

考题 Your company has a main office and three branch offices. The company has an Active Directory forest that has a single domain. Each office has one domain controller. Each office is configured as an Active Directory site. All sites are connected with the DEFAULTIPSITELINK object. You need to decrease the replication latency between the domain controllers. What should you do()A、Decrease the cost between the connection objects.B、Decrease the replication interval for all connection objects.C、Decrease the replication interval for the DEFAUL TIPSITELINK object.D、Decrease the replication schedule for the DEFAUL TIPSITELINK object.

考题 单选题Your company has an Active Directory domain. The company has two domain controllers named DC1   and DC2. DC1 holds the schema master role.    DC1 fails. You log on to Active Directory by using the administrator account. You are not able to transfer  the schema master role.    You need to ensure that DC2 holds the schema master role.  What should you do()A Register the Schmmgmt.dll. Start the Active Directory Schema snap-in.B Configure DC2 as a bridgehead server.C On DC2, seize the schema master role.D Log off and log on again to Active Directory by using an account that is a member of the Schema  Admins group. Start the Active Directory Schema snap-in.

考题 单选题Your company has an Active Directory domain. A user attempts to log on to a computer that was turned off for twelve weeks. The administrator receives an error message that authentication has failed. You need to ensure that the user is able to log on to the computer. What should you do()A Run the netdom TRUST /reset command.B Run the netsh command with the set and machine options.C Run the Active Directory Users and Computers console to disable, and then enable the computer account.D Reset the computer account. Disjoin the computer from the domain, and then rejoin the computer to the domain.

考题 单选题You are designing the DNS topology to meet the business and technical requirements.  Which DNS structure should you use?()A one primary zoneB two primary zones  C one Active Directory-integrated zone that has the replication scope set to all DNS servers in the forest.D two Active Directory-integrated zones that have the replication scopes set to all DNS servers in the forest.E one Active Directory-integrated zone that has the replication scope set to all domain controllers in the domain.F two Active Directory-integrated zones that have the replication scopes set to all domain controllers in the domain.

考题 单选题You are a security administrator for your company. The network consists of three Active Directory domains. All Active Directory domains are running at a Windows Server 2003 mode functionality level.    Employees in the editorial department of your company need access to resources on file servers that are in each of the Active Directory domains. Each Active Directory domain in the company contains at least one editorial department employee user account.    You need to create a single group named Company Editors that contains all editorial department employee user accounts and that has access to the resources on file server computers.  What should you do?()A  Create a global distribution group in the forest root domain and name it Company Editors.B  Create a global security group in the forest root domain and name it Company Editors.C  Create a universal distribution group in the forest root domain and name it Company Editors. D  Create a universal security group in the forest root domain and name it Company Editors.

考题 单选题Your company has an Active Directory domain.     You log on to the domain controller. The Active Directory Schema snap-in is not available in the  Microsoft Management Console (MMC).   You need to access the Active Directory Schema snap-in.     What should you do()A Register Schmmgmt.dll.B Log off and log on again by using an account that is a member of the Schema Admins group.C Use the Ntdsutil.exe command to connect to the schema master operations master and open the schema for writingD Add the Active Directory Lightweight Directory Services (AD/LDS) role to the domain controller by using Server Man

考题 多选题Your company network has an Active Directory forest that has one parent domain and one child domain. The child domain has two domain controllers that run Windows Server 2008. All user accounts from the child domain are migrated to the parent domain. The child domain is scheduled to be decommissioned. You need to remove the child domain from the Active Directory forest. What are two possible ways to achieve this goal()ADelete the computer accounts for each domain controller in the child domain. Remove the trust relationship between the parent domain and the child domain.BRun the Dcpromo tool that has individual answer files on each domain controller in the child domain.CRun the Computer Management console to stop the Domain Controller service on both domain controllers in the child domain.DUse Server Manager on both domain controllers in the child domain to uninstall the Active Directory domain services role.

考题 单选题Your company has an Active Directory forest. The company has servers that run Windows Server  2008 R2 and client computers that run Windows 7. The domain uses a set of GPO administrative  templates that have been approved to support regulatory compliance requirements.     Your partner company has an Active Directory forest that contains a single domain. The company  has servers that run Windows Server 2008 R2 and client computers that run Windows 7.     You need to configure your partner company’s domain to use the approved set of administrative  templates.   What should you do()A Use the Group Policy Management Console (GPMC) utility to back up the GPO to a file. In each site, import the GPB Copy the ADMX files from your company’s PDC emulator to the PolicyDefinitions folder on the partner company’s PDCC Copy the ADML files from your company’s PDC emulator to the PolicyDefinitions folder on the partner company’s PDC D Download the conf.adm, system.adm, wuau.adm, and inetres.adm files from the Microsoft Updates Web site. 

考题 单选题Your company has a single Active Directory directory service domain. All servers in your environment run Windows Server 2003. All domain controllers run Active DirectoryCintegrated DNS. You create several static host (A) resource records. You need to verify that the DNS server is sending the correct host records to all client computers.  Which command-line tool should you use?()A  netshB  tracertC  ntdsutilD  nslookup

考题 单选题Your company has a single Active Directory directory service domain. All servers in your environment run Windows Server 2003. Client computers run Windows XP or Windows Vista. You plan to create a security update scan procedure for client computers. You need to choose a security tool that supports all the client computers.  Which tool should you choose? ()A  UrlScan Security ToolB  Enterprise Scan Tool (EST)C  Malicious Removal Tool (MRT)D  Microsoft Baseline Security Analyzer (MBSA)

考题 单选题Your company has an Active Directory forest that contains a single domain. The domain member   server has an Active Directory Federation Services (AD FS) server role installed.   You need to configure AD FS to ensure that AD FS tokens contain information from the Active Directory  domain.   What should you do()A Add and configure a new account store.B Add and configure a new account partner.C Add and configure a new resource partner.D Add and configure a Claims-aware application.

考题 单选题Your company has an Active Directory domain. You log on to the domain controller. The Active Directory Schema snap-in is not available in the Microsoft Management Console (MMC). You need to access the Active Directory Schema snap-in. What should you do()A Register Schmmgmt.dll.B Log off and log on again by using an account that is a member of the Schema Administrators group.C Use the Ntdsutil.exe command to connect to the Schema Master operations master and open the schema for writing.D Add the Active Directory Lightweight Directory Services (AD LDS) role to the domain controller by using Server Manager.

考题 单选题Your company has an Active Directory domain. The company has purchased 100 new computers. You want to deploy the computers as members of the domain. You need to create the computer accounts in an organizational unit. What should you do()A Run the csvde f computers.csv command.B Run the ldifde f computers.ldf command.C Run the dsadd computer  command.D Run the dsmod computer  command.

考题 单选题Your company has a single Active Directory directory service forest with multiple domains. The  company has a main office with 1,000 users and a single branch office with 500 users. Each office is aseparate Active Directory site. The main office Active Directory site has two domain controllers with Global  Catalog services. Company employees must be able to work in both offices. You need to plan the  placement and configuration of domain controllers.  What should you do?()A  Deploy two additional domain controllers in the main office Active Directory site.B  Deploy global catalog servers in the branch office Active Directory site.C  Enable change notification on the site link between the main office Active Directory site and the branch office Active Directory site.D  Disable change notification on the site link between the main office Active Directory site and the branch office Active Directory site.

考题 单选题Your company has a single Active Directory domain. The domain runs at the functional level of Windows Server 2003. You install the DHCP service on a server named DHCP1. You attempt to startthe DHCP service, but it does not start. You need to ensure that the DHCP service starts. What should you do?()A Restart DHCP1.B Configure a scope on DHCP1.C Activate the scope on DHCP1.D Authorize DHCP1 in the Active Directory domain.

考题 单选题Your company has a single Active Directory domain. All domain controllers run Windows Server 2003.    You install Windows Server 2008 R2 on a server.    You need to add the new server as a domain controller in your domain.    What should you do first()A On the new server, run dcpromo /adv.B On the new server, run dcpromo /createdcaccount.C On a domain controller run adprep /rodcprep.D On a domain controller, run adprep /forestprep.