网友您好, 请在下方输入框内输入要搜索的题目:
题目内容
(请给出正确答案)
单选题
You have a Windows Server 2008 R2 that has the Active Directory Certificate Services server role installed. You need to minimize the amount of time it takes for client computers to download a certificate revocation list (CRL). What should you do()
A
Install and configure an Online Responder.
B
Install and configure an additional domain controller.
C
Import the Root CA certificate into the Trusted Root Certification Authorities store on all client workstations.
D
Import the Issuing CA certificate into the Trusted Root Certification Authorities store on all client workstations.
参考答案
参考解析
解析:
暂无解析
更多 “单选题You have a Windows Server 2008 R2 that has the Active Directory Certificate Services server role installed. You need to minimize the amount of time it takes for client computers to download a certificate revocation list (CRL). What should you do()A Install and configure an Online Responder.B Install and configure an additional domain controller.C Import the Root CA certificate into the Trusted Root Certification Authorities store on all client workstations.D Import the Issuing CA certificate into the Trusted Root Certification Authorities store on all client workstations.” 相关考题
考题
Your company has an Active Directory domain. You have a two-tier PKI infrastructure that contains an offline root CA and an online issuing CA. The Enterprise certification authority is running Windows Server 2008 R2. You need to ensure users are able to enroll new certificates. What should you do()A、Renew the Certificate Revocation List (CRL) on the root CA . Copy the CRL to the CertEnroll folder on the issuing CB、Renew the Certificate Revocation List (CRL) on the issuing CA . Copy the CRL to the SystemCertificates folder in thC、Import the root CA certificate into the Trusted Root Certification Authorities store on all client workstations.D、Import the issuing CA certificate into the Intermediate Certification Authorities store on all client workstations.
考题
Your network contains an Active Directory domain named contoso.com. Contoso.com contains a member server that runs Windows Serever 2008 Standart. You need to install an enterprise subordinate certification authority (CA) that support private key archival. You must achieve this goal by using the minimum amount of administrative effort. What do you do first()A、Initialize the Trusted Platform Module (TPM)B、Upgrade the menber server to Windows Server 2008 R2 Standard.C、Install the Certificate Enrollment Policy Web Service role service on the member server.D、Run the Security Configuration Wizard (SCW) and select the Active Directory Certificate Services - Certification
考题
Your company has an Active Directory domain. A server named Server2 runs Windows Server 2008. All client computers run Windows Vista. You install the Terminal Services role,Terminal Services Web Access role service,and Terminal Services Gateway role service on Server2. You need to ensure that all client computers have compliant firewall, antivirus software,and antispyware. Which two actions should you perform?()A、Configure Network Access Protection (NAP) on a server in the domain.B、Add the Terminal Services servers to the Windows Authorization Access domain local security group.C、Add the Terminal Services client computers to the Windows Authorization Access domain local security group.D、Enable the Request clients to send a statement of health option in the Terminal Services client access policy.
考题
Your company has an Active Directory domain. You plan to install the Active Directory Certificate Services (AD CS) server role on a member server that runs Windows Server 2008 R2. You need to ensure that members of the Account Operators group are able to issue smartcard credentials. They should not be able to revoke certificates. Which three actions should you perform()A、Install the AD CS server role and configure it as an Enterprise Root CA .B、Install the AD CS server role and configure it as a Standalone CA .C、Restrict enrollment agents for the Smartcard logon certificate to the Account Operator group.D、Restrict certificate managers for the Smartcard logon certificate to the Account Operator group.E、Create a Smartcard logon certificate.F、Create an Enrollment Agent certificate.
考题
Your company has an Active Directory forest. You plan to install an Enterprise certification authority (CA) on a dedicated stand-alone server. When you attempt to add the Active Directory Certificate Services (AD CS) server role, you find that the Enterprise CA option is not available. You need to install the AD CS server role as an Enterprise CA. What should you do first()A、Add the DNS Server server role.B、Join the server to the domain.C、Add the Web Server (IIS) server role and the AD CS server role.D、Add the Active Directory Lightweight Directory Services (AD LDS) server role.
考题
You have a Windows Server 2008 R2 that has the Active Directory Certificate Services server role installed. You need to minimize the amount of time it takes for client computers to download a certificate revocation list (CRL). What should you do()A、Install and configure an Online Responder.B、Install and configure an additional domain controller.C、Import the Root CA certificate into the Trusted Root Certification Authorities store on all client workstations.D、Import the Issuing CA certificate into the Trusted Root Certification Authorities store on all client workstations.
考题
You have a Windows Server 2008 R2 Enterprise Root CA . Security policy prevents port 443 and port 80 from being opened on domain controllers and on the issuing CA . You need to allow users to request certificates from a Web interface. You install the Active Directory Certificate Services (AD CS) server role. What should you do next()A、Configure the Online Responder Role Service on a member server.B、Configure the Online Responder Role Service on a domain controller.C、Configure the Certificate Enrollment Web Service role service on a member server.D、Configure the Certificate Enrollment Web Service role service on a domain controller.
考题
Your company has an Active Directory forest. You plan to install an Enterprise certification authority (CA) on a dedicated stand-alone server. When you attempt to add the Active Directory Certificate Services (AD CS) server role, you find that the Enterprise CA option is not available. You need to install the AD CS server role as an Enterprise CA. What should you do first()A、Add the DNS Server server role.B、Join the server to the domain.C、Add the Web Server (IIS) server role and the AD CS server roleD、Add the Active Directory Lightweight Directory Services (AD LDS) server role. .
考题
Your company has an Active Directory Domain Services (AD DS) domain that includes an AD security group named Development. You have a member server that runs Windows Server 2008 R2 with the Hyper-V role installed. You need to ensure that Development group members can only manage virtual machines (VMs). Development group members must not have administrative privileges on the host server. What should you use?()A、Authorization ManagerB、Local Users and GroupsC、the net localgroup commandD、Active Directory Administrative Center
考题
Your network contains an Active Directory forest. All domain controllers run Windows Server 2008 Standard. The functional level of the domain is Windows Server 2003. You have a certification authority (CA). The relevant servers in the domain are configured as shown in the following table: Server name Operating system Server role Server1 Windows Server 2003 Enterprise root CA Server2 Windows Server 2008 Enterprise subordinate CA Server3 Windows Server 2008 R2 Web Server You need to ensure that you can install the Active Directory Certificate Services (AD CS) Certificate Enrollment Web Service on the network. What should you do()A、Upgrade Server1 to Windows Server 2008 R2.B、Upgrade Server2 to Windows Server 2008 R2.C、Raise the functional level of the domain to Windows Server 2008.D、Install the Windows Server 2008 R2 Active Directory Schema updates.
考题
You have a Windows Server 2008 that has the Active Directory Certificate Services server role installed. You need to minimize the amount of time it takes to download a certificate revocation list (CRL). What should you do()A、Install and configure an Online Responder.B、Install and configure an addtional domain controller.C、Import the Root CA certificate into the Trusted Root Certification Authorities on all client workstations.D、Import the Issuing CA certificate into the Trusted Root Certification Authorities on all client workstations.
考题
Your network contains an Active Directory forest. All domain controllers run Windows Server 2008 Standard. The functional level of the domain is Windows Server 2003. You have a certification authority (CA). The relevant servers in the domain are configured as shown in the following table. Server name Operating system Server role Server1 Windows Server 2003 Enterprise root CA Server2 Windows Server 2008 Enterprise subordinate CA Server3 Windows Server 2008 R2 Web Server You need to ensure that you can install the Active Directory Certificate Services (AD CS) Certificate Enrollment Web Service on the network. What should you do()A、Upgrade Server1 to Windows Server 2008 R2.B、Upgrade Server2 to Windows Server 2008 R2.C、Raise the functional level of the domain to Windows Server 2008.D、Install the Windows Server 2008 R2 Active Directory Schema updates.
考题
You have an Active Directory domain that runs Windows Server 2008 R2. You need to implement a certification authority (CA) server that meets the following requirements: - Allows the certification authority to automatically issue certificates - Integrates with Active Directory Domain Services What should you do()A、Install and configure the Active Directory Certificate Services server role as a Standalone Root CA .B、Install and configure the Active Directory Certificate Services server role as an Enterprise Root CA .C、Purchase a certificate from a third-party certification authority. Install and configure the Active Directory Certificate SD、Purchase a certificate from a third-party certification authority. Import the certificate into the computer store of the sc
考题
单选题Your company has an Active Directory forest. You plan to install an Enterprise certification authority (CA) on a dedicated stand-alone server. When you attempt to add the Active Directory Certificate Services (AD CS) server role, you find that the Enterprise CA option is not available. You need to install the AD CS server role as an Enterprise CA. What should you do first()A
Add the DNS Server server role.B
Join the server to the domain.C
Add the Web Server (IIS) server role and the AD CS server role.D
Add the Active Directory Lightweight Directory Services (AD LDS) server role.
考题
单选题Your network contains an Active Directory domain named contoso.com. Contoso.com contains a member server that runs Windows Serever 2008 Standart. You need to install an enterprise subordinate certification authority (CA) that support private key archival. You must achieve this goal by using the minimum amount of administrative effort. What do you do first()A
Initialize the Trusted Platform Module (TPM)B
Upgrade the menber server to Windows Server 2008 R2 Standard.C
Install the Certificate Enrollment Policy Web Service role service on the member server.D
Run the Security Configuration Wizard (SCW) and select the Active Directory Certificate Services - Certification
考题
单选题Your company has an Active Directory forest. You plan to install an Enterprise certification authority (CA) on a dedicated stand-alone server. When you attempt to add the Active Directory Certificate Services (AD CS) server role, you find that the Enterprise CA option is not available. You need to install the AD CS server role as an Enterprise CA. What should you do first()A
Add the DNS Server server role.B
Join the server to the domain.C
Add the Web Server (IIS) server role and the AD CS server roleD
Add the Active Directory Lightweight Directory Services (AD LDS) server role. .
考题
单选题Your company has an Active Directory forest. You plan to install an Enterprise certification authority (CA) on a dedicated stand-alone server. When you attempt to add the Active Directory Certificate Services (AD CS) role, you find that the Enterprise CA option is not available. You need to install the AD CS role as an Enterprise CA. What should you do first()A
Add the DNS Server role.B
Join the server to the domain.C
Add the Web server (IIS) role and the AD CS role.D
Add the Active Directory Lightweight Directory Service (AD LDS) role.
考题
单选题You have a server named Server1 that has the following Active Directory Certificate Services (AD CS) role services installed: ( Enterprise root certification authority (CA) .Certificate Enrollment Web Service .Certificate Enrollment Policy Web Service You create a new certificate template. External users report that the new template is unavailable when they request a new certificate. You verify that all other templates are available to the external users. You need to ensure that the external users can request certificates by using the new template. What should you do on Server1()A
Run iisreset.exe /restart. B
Run gpupdate.exe /force. C
Run certutil.exe dspublish.D
Restart the Active Directory Certificate Services service.
考题
多选题Your company has an Active Directory domain. You plan to install the Active Directory Certificate Services (AD CS) server role on a member server that runs Windows Server 2008 R2. You need to ensure that members of the Account Operators group are able to issue smartcard credentials. They should not be able to revoke certificates. Which three actions should you perform()AInstall the AD CS server role and configure it as an Enterprise Root CA .BInstall the AD CS server role and configure it as a Standalone CA .CRestrict enrollment agents for the Smartcard logon certificate to the Account Operator group.DRestrict certificate managers for the Smartcard logon certificate to the Account Operator group.ECreate a Smartcard logon certificate.FCreate an Enrollment Agent certificate.
考题
单选题You have a Windows Server 2008 R2 Enterprise Root CA. Security policy prevents port 443 and port 80 from being opened on domain controllers and on the issuing CA. You need to allow users to request certificates from a Web interface. You install the Active Directory Certificate Services (AD CS) server role. What should you do next()A
Configure the Online Responder Role Service on a member server.B
Configure the Online Responder Role Service on a domain controller.C
Configure the Certificate Enrollment Web Service role service on a member server.D
Configure the Certificate Enrollment Web Service role service on a domain controller.
考题
多选题Your company has an Active Directory domain. A server named Server2 runs Windows Server 2008. All client computers run Windows Vista. You install the Terminal Services role,Terminal Services Web Access role service,and Terminal Services Gateway role service on Server2. You need to ensure that all client computers have compliant firewall, antivirus software,and antispyware. Which two actions should you perform?()AConfigure Network Access Protection (NAP) on a server in the domain.BAdd the Terminal Services servers to the Windows Authorization Access domain local security group.CAdd the Terminal Services client computers to the Windows Authorization Access domain local security group.DEnable the Request clients to send a statement of health option in the Terminal Services client access policy.
考题
单选题Your network contains an Active Directory forest. All domain controllers run Windows Server 2008 Standard. The functional level of the domain is Windows Server 2003. You have a certification authority (CA). The relevant servers in the domain are configured as shown in the following table. Server name Operating system Server role Server1 Windows Server 2003 Enterprise root CA Server2 Windows Server 2008 Enterprise subordinate CA Server3 Windows Server 2008 R2 Web Server You need to ensure that you can install the Active Directory Certificate Services (AD CS) Certificate Enrollment Web Service on the network. What should you do()A
Upgrade Server1 to Windows Server 2008 R2.B
Upgrade Server2 to Windows Server 2008 R2.C
Raise the functional level of the domain to Windows Server 2008.D
Install the Windows Server 2008 R2 Active Directory Schema updates.
考题
单选题Your network contains an Active Directory forest. All domain controllers run Windows Server 2008 Standard. The functional level of the domain is Windows Server 2003. You have a certification authority (CA). The relevant servers in the domain are configured as shown in the following table: Server name Operating system Server role Server1 Windows Server 2003 Enterprise root CA Server2 Windows Server 2008 Enterprise subordinate CA Server3 Windows Server 2008 R2 Web Server You need to ensure that you can install the Active Directory Certificate Services (AD CS) Certificate Enrollment Web Service on the network. What should you do()A
Upgrade Server1 to Windows Server 2008 R2.B
Upgrade Server2 to Windows Server 2008 R2.C
Raise the functional level of the domain to Windows Server 2008.D
Install the Windows Server 2008 R2 Active Directory Schema updates.
考题
单选题You have a Windows Server 2008 that has the Active Directory Certificate Services server role installed. You need to minimize the amount of time it takes to download a certificate revocation list (CRL). What should you do()A
Install and configure an Online Responder.B
Install and configure an addtional domain controller.C
Import the Root CA certificate into the Trusted Root Certification Authorities on all client workstations.D
Import the Issuing CA certificate into the Trusted Root Certification Authorities on all client workstations.
考题
单选题You have an Active Directory domain that runs Windows Server 2008 R2. You need to implement a certification authority (CA) server that meets the following requirements: - Allows the certification authority to automatically issue certificates - Integrates with Active Directory Domain Services What should you do()A
Install and configure the Active Directory Certificate Services server role as a Standalone Root CA .B
Install and configure the Active Directory Certificate Services server role as an Enterprise Root CA .C
Purchase a certificate from a third-party certification authority. Install and configure the Active Directory Certificate SD
Purchase a certificate from a third-party certification authority. Import the certificate into the computer store of the sc
考题
单选题Your company has an Active Directory domain. You have a two-tier PKI infrastructure that contains an offline root CA and an online issuing CA. The Enterprise certification authority is running Windows Server 2008 R2. You need to ensure users are able to enroll new certificates. What should you do()A
Renew the Certificate Revocation List (CRL) on the root CA . Copy the CRL to the CertEnroll folder on the issuing CB
Renew the Certificate Revocation List (CRL) on the issuing CA . Copy the CRL to the SystemCertificates folder in thC
Import the root CA certificate into the Trusted Root Certification Authorities store on all client workstations.D
Import the issuing CA certificate into the Intermediate Certification Authorities store on all client workstations.
考题
单选题Your company has an Active Directory Domain Services (AD DS) domain that includes an AD security group named Development. You have a member server that runs Windows Server 2008 R2 with the Hyper-V role installed. You need to ensure that Development group members can only manage virtual machines (VMs). Development group members must not have administrative privileges on the host server. What should you use?()A
Authorization ManagerB
Local Users and GroupsC
the net localgroup commandD
Active Directory Administrative Center
热门标签
最新试卷