Your network contains an Active Directory domain.     You have a server named Server1 that runs Windows Server 2008 R2. Server1 is an enterprise root certification authority (CA).   You have a client computer named Computer1 that runs Windows 7. You enab

题目

Your network contains an Active Directory domain.     You have a server named Server1 that runs Windows Server 2008 R2. Server1 is an enterprise root certification authority (CA).   You have a client computer named Computer1 that runs Windows 7. You enable automatic  certificate enrollment for all client computers that run Windows 7. You need to verify that the  Windows 7 client computers can automatically enroll for certificates.     Which command should you run on Computer1()

  • A、certreq.exe -retrieve
  • B、certreq.exe -submit
  • C、certutil.exe -getkey
  • D、certutil.exe -pulse

相似考题
更多“Your network contains an Active Directory domain.     You have a server named Server1 that runs Windows Server 2008 R2. Server1 is an enterprise root certification authority (CA).   You have a client computer named Computer1 that runs Windows 7. You enabl”相关问题
  • 第1题:

    Your network consists of a single Active Directory domain. All servers run Windows Server 2003 Service Pack 2 (SP2). You have a server named Server1. Server1 is configured as an enterprise root certification authority (CA). You perform a complete backup of Server1 that includes the system state. Server1 fails. You install a new server named Server1. You need to recover the enterprise root CA. What should you do? ()

    • A、Restore the system state backup.
    • B、Restore the %systemroot%/system32/certsrv folder.
    • C、From the Certificates snap-in, import the enterprise root CA certificate.
    • D、From the Certificates snap-in, import the enterprise root CA certificate revocation list (CRL).

    正确答案:A

  • 第2题:

    Your network contains a server named Server1.contoso.com. Server1 is located on the internal network. You have a client computer named Computer1 that runs Windows 7. Computer1 is located on a public network that is connected to the Internet. Computer1 is enabled for DirectAccess. You need to verify whether Computer1 can resolve Server1 by using DirectAccess. Which command should you run on Computer1?()

    • A、nbtstat.exe a server1.contoso.com
    • B、netsh.exe dnsclient show state
    • C、nslookup.exe server1.contoso.com
    • D、ping.exe server1.contoso.com

    正确答案:D

  • 第3题:

    You have two servers named Server1 and Server2. Both servers run Windows Server 2008. Server1 is configured as an enterprise root certification authority (CA). You install the Online Responder role service on Server2. You need to configure Server1 to support the Online Responder. What should you do()

    • A、Import the enterprise root CA certificate.
    • B、Configure the Certificate Distribution Point (CDP) extension.
    • C、Configure the Authority Information Access (AIA) extension.
    • D、Add the Server2 computer account to the CertPublishers group.

    正确答案:C

  • 第4题:

    Your network consists of a single Active Directory domain. You have a DHCP server named Server1 that runs Windows Server 2003 Service Pack 2 (SP2). You have a computer named Computer1 that runs Windows XP Professional Service Pack 3 (SP3). You need to administer the DHCP service on Server1 from Computer1.  What should you do first?()

    • A、On Computer1, install adminpak.msi.
    • B、On Computer1, at a command prompt run the Netsh command.
    • C、On Server1, open the DHCP snap-in and select Export List.
    • D、On Server1, open the DHCP snap-in and add Computer1 to the list of servers.

    正确答案:A

  • 第5题:

    Your network contains a server named Server1 that runs Windows Server 2008 R2. You create  an Active Directory Lightweight Directory Services (AD LDS) instance on Server1.     You need to create an additional AD LDS application directory partition in the existing instance.     Which tool should you use()

    • A、Adaminstall
    • B、Dsadd
    • C、Dsmod
    • D、Ldp

    正确答案:D

  • 第6题:

    Your network contains an Active Directory forest. All domain controllers run Windows Server  2008 Standard. The functional level of the domain is Windows Server 2003. You have a  certification authority (CA).   The relevant servers in the domain are configured as shown in the following table:     Server name  Operating system  Server role   Server1  Windows Server 2003  Enterprise root CA  Server2  Windows Server 2008  Enterprise subordinate CA  Server3  Windows Server 2008 R2  Web Server   You need to ensure that you can install the Active Directory Certificate Services (AD CS)  Certificate Enrollment Web Service on the network.     What should you do()

    • A、Upgrade Server1 to Windows Server 2008 R2.
    • B、Upgrade Server2 to Windows Server 2008 R2.
    • C、Raise the functional level of the domain to Windows Server 2008.
    • D、Install the Windows Server 2008 R2 Active Directory Schema updates.

    正确答案:D

  • 第7题:

    You have an Active Directory domain that runs Windows Server 2008 R2. You need to implement  a certification authority (CA) server that meets the following requirements:     - Allows the certification authority to automatically issue certificates  - Integrates with Active Directory Domain Services     What should you do()

    • A、Install and configure the Active Directory Certificate Services server role as a Standalone Root CA .
    • B、Install and configure the Active Directory Certificate Services server role as an Enterprise Root CA .
    • C、Purchase a certificate from a third-party certification authority. Install and configure the Active Directory Certificate S
    • D、Purchase a certificate from a third-party certification authority. Import the certificate into the computer store of the sc

    正确答案:B

  • 第8题:

    单选题
    Your company has a server named Server1 that runs Windows Server 2008. Server1 is a Windows ServerUpdate Services (WSUS) server. You have a computer named Computer1 that runs Windows 7. Computer1 is configured to obtain updates from Server1. You open the WSUS snap-in on Server1 and discover that Computer1 does not appear. You need to ensure that Computer1 appears in the WSUS snap-in.  What should you do?()
    A

    On Server1, open Windows Update then select Check for updates.

    B

    On Server1, run Wsusutil.exe and specify the /import parameter.

    C

    On Computer1, open Windows Update and then select Change settings.

    D

    On Computer1, run Wuauclt.exe and specify the /detectnow parameter.


    正确答案: A
    解析: 暂无解析

  • 第9题:

    单选题
    Your network contains an Active Directory domain. All servers run Windows Server 2008 R2 and aremembers of the domain. All servers are located in the main office. You have a portable computer namedComputer1 that runs Windows 7. Computer1 is joined to the domain and is located in a branch office. A fileserver named Server1 contains a shared folder named Share1. You need to configure Computer1 to meetthe following requirements: Minimize network traffic between the main office and the branch office  Ensure that Computer1 can only access resources in Share1 while it is connected to the network. What should you do?()
    A

    On Computer1, enable offline files.

    B

    On Computer1, enable transparent caching.

    C

    On Server1, configure DirectAccess.

    D

    On Server1, configure Share1 to be available offline.


    正确答案: A
    解析: 暂无解析

  • 第10题:

    You have two servers named Server1 and Server2. Both servers run Windows Server 2008 R2.  Server1 is configured as an Enterprise Root certification authority (CA). You install the Online  Responder role service on Server2.     You need to configure Server2 to issue certificate revocation lists (CRLs) for the enterprise root  CA.     Which two tasks should you perform()

    • A、Import the enterprise root CA certificate.
    • B、Import the OCSP Response Signing certificate.
    • C、Add the Server1 computer account to the CertPublishers group.
    • D、Set the Startup Type of the Certificate Propagation service to Automatic.

    正确答案:A,B

  • 第11题:

    You have two servers named Server1 and Server2. Both servers run Windows Server 2008 R2.   Server1 is configured as an enterprise root certification authority (CA).    You install the Online Responder role service on Server2.    You need to configure Server1 to support the Online Responder. What should you do()

    • A、Import the enterprise root CA certificate.
    • B、Configure the Certificate Revocation List Distribution Point extension.
    • C、Configure the Authority Information Access (AIA) extension.
    • D、Add the Server2 computer account to the CertPublishers group.

    正确答案:C

  • 第12题:

    Your company has a server named Server1 that runs Windows Server 2008. Server1 is a Windows ServerUpdate Services (WSUS) server. You have a computer named Computer1 that runs Windows 7. Computer1 is configured to obtain updates from Server1. You open the WSUS snap-in on Server1 and discover that Computer1 does not appear. You need to ensure that Computer1 appears in the WSUS snap-in.  What should you do?()

    • A、On Server1, open Windows Update then select Check for updates.
    • B、On Server1, run Wsusutil.exe and specify the /import parameter.
    • C、On Computer1, open Windows Update and then select Change settings.
    • D、On Computer1, run Wuauclt.exe and specify the /detectnow parameter.

    正确答案:D

  • 第13题:

    Your network contains an Active Directory domain. All servers run Windows Server 2008 R2 and aremembers of the domain. All servers are located in the main office. You have a portable computer namedComputer1 that runs Windows 7. Computer1 is joined to the domain and is located in a branch office. A fileserver named Server1 contains a shared folder named Share1. You need to configure Computer1 to meetthe following requirements: Minimize network traffic between the main office and the branch office  Ensure that Computer1 can only access resources in Share1 while it is connected to the network. What should you do?()

    • A、On Computer1, enable offline files.
    • B、On Computer1, enable transparent caching.
    • C、On Server1, configure DirectAccess.
    • D、On Server1, configure Share1 to be available offline.

    正确答案:B

  • 第14题:

    Your network contains an Active Directory domain named contoso.com. All domain controllers run Windows Server 2008 R2. The functional level of the domain is Windows Server 2008 R2. The functional  level of the forest is Windows Server 2008.   You have a member server named Server1 that runs Windows Server 2008.   You need to ensure that you can add Server1 to contoso.com as a domain controller.   What should you run before you promote Server1()

    • A、dcpromo.exe /CreateDCAccount
    • B、dcpromo.exe /ReplicaOrNewDomain:replica
    • C、Set-ADDomainMode -Identity contoso.com -DomainMode Windows2008Domain
    • D、Set-ADForestMode -Identity contoso.com -ForestMode Windows2008R2Forest

    正确答案:C

  • 第15题:

    Your network contains an Active Directory forest. All domain controllers run Windows Server 2008   Standard. The functional level of the domain is Windows Server 2003.  You have a certification authority (CA).   The relevant servers in the domain are configured as shown in the following table.  Server name  Operating system  Server role   Server1  Windows Server 2003  Enterprise root CA  Server2  Windows Server 2008  Enterprise subordinate CA    Server3  Windows Server 2008 R2    Web Server   You need to ensure that you can install the Active Directory Certificate Services (AD CS) Certificate   Enrollment Web Service on the network.   What should you do()

    • A、Upgrade Server1 to Windows Server 2008 R2.
    • B、Upgrade Server2 to Windows Server 2008 R2.
    • C、Raise the functional level of the domain to Windows Server 2008.
    • D、Install the Windows Server 2008 R2 Active Directory Schema updates.

    正确答案:D

  • 第16题:

    Your network consists of a single Active Directory domain. The domain contains a server named Server1 that runs Windows Server 2008 R2. All client computers run Windows 7. All computers are members of the Active Directory domain. You assign the Secure Server (Require Security) IPsec policy to Server1 by using a Group Policy object (GPO). Users report that they fail to connect to Server1. You need to ensure that users can connect to Server1. All connections to Server1 must be encrypted. What should you do?()

    • A、Restart the IPsec Policy Agent service on Server1.
    • B、Assign the Client (Respond Only) IPsec policy to Server1.
    • C、Assign the Server (Request Security) IPsec policy to Server1.
    • D、Assign the Client (Respond Only) IPsec policy to all client computers.

    正确答案:D

  • 第17题:

    单选题
    Your network contains a server named Server1.contoso.com. Server1 is located on the internal network. You have a client computer named Computer1 that runs Windows 7. Computer1 is located on a public network that is connected to the Internet. Computer1 is enabled for DirectAccess. You need to verify whether Computer1 can resolve Server1 by using DirectAccess. Which command should you run on Computer1?()
    A

    nbtstat.exe a server1.contoso.com

    B

    netsh.exe dnsclient show state

    C

    nslookup.exe server1.contoso.com

    D

    ping.exe server1.contoso.com


    正确答案: B
    解析: 暂无解析