单项选择题
单项选择题 YourcompanyhasanActiveDirectorydomainthathasanorganizationalunitnamedSales.TheSalesorganizationalunitcontainstwoglobalsecuritygroupsnamedsalesmanagersandsalesexecutives.Youneedtoapplydesktoprestrictionstothesalesexecutivesgroup.Youmustnotapplythesedesktoprestrictionstothesalesmanagersgroup.YoucreateaGPOnamedDesktopLockdownandlinkittotheSalesorganizationalunit.Whatshouldyoudonext()A.ConfiguretheDenyApplyGroupPolicypermissionforthesalesmanagersontheDesktopLockdown GPO.B.ConfiguretheDenyApplyGroupPolicypermissionforthesalesexecutivesontheDesktopLockdownGPO.C.ConfiguretheDenyApplyGroupPolicypermissionforAuthenticatedUsersontheDesktopLockdown GPO.D.ConfiguretheAllowApplyGroupPolicypermissionforAuthenticatedUsersontheDesktopLockdownGPO.
单项选择题 YourcompanyhasanActiveDirectorydomain.Thecompanyhaspurchased100newcomputers.Youwanttodeploythecomputersasmembersofthedomain.Youneedtocreatethecomputeraccountsinanorganizationalunit.Whatshouldyoudo()
单项选择题 YourcompanyhasanActiveDirectoryforest.YouplantoinstallanEnterprisecertificationauthority(CA)onadedicatedstand-aloneserver.WhenyouattempttoaddtheActiveDirectoryCertificateServices(ADCS)role,youfindthattheEnterpriseCAoptionisnotavailable.YouneedtoinstalltheADCSroleasanEnterpriseCA.Whatshouldyoudofirst()A.AddtheDNSServerrole.B.Jointheservertothedomain.C.AddtheWebserver(IIS)roleandtheADCSrole.D.AddtheActiveDirectoryLightweightDirectoryService(ADLDS)role.
单项选择题 YourcompanyhasadomaincontrollerthatrunsWindowsServer2008.Thedomaincontrollerhasthebackupfeaturesinstalled.Youneedtoperformanon-authoritativerestoreofthedomancontrollerusinganexistingbackupfile.Whatshouldyoudo()A.BootintoDirectoryServicesRestoreModeandusewbadmintorestorecriticalvolume.B.BootintoDirectoryServicesRestoreModeandusethebackupsnap-intorestorecriticalvolumeC.BootintoSafeModeandusewbadmintorestorecriticalvolumeD.BootintoSafeModeandusethebackupsnap-intorestorecriticalvolume
单项选择题 YourcompanyhasanActiveDirectorydomain.AllserversrunWindowsServer2008.YoudeployaCertificationAuthority(CA)server.YoucreateanewglobalsecuritygroupnamedCertIssuers.YouneedtoensurethatmembersoftheCertIssuersgroupcanissue,approve,andrevokecertificates.Whatshouldyoudo()A.AssigntheCertificateManagerroletotheCertIssuersgroup.B.PlaceCertIssuersgroupintheCertificatePublishergroupC.Runthecertsrv-addCertIssuerscommandpromtofthecertificateserverD.Runtheadd-member-membertypemembersetCertIssuerscommandbyusingMicrosoftWindowsPowershell