Run dcgpofix.exe /target:dc.
Run dcgpofix.exe /target:domain.
Delete the link for the Default Domain Controllers Policy, and then run gpupdate.exe /sync.
Delete the link for the Default Domain Controllers Policy, and then run gpupdate.exe /force.
第1题:
Your network contains a single Active Directory domain. The functional level of the forest is Windows Server 2008. The functional level of the domain is Windows Server 2008 R2. All DNS servers run Windows Server 2008. All domain controllers run Windows Server 2008 R2. You need to ensure that you can enable the Active Directory Recycle Bin. What should you do()
第2题:
Your network consists of a single Active Directory domain. All domain controllers run Windows Server 2008 R2. The Audit account management policy setting and Audit directory services access setting are enabled for the entire domain. You need to ensure that changes made to Active Directory objects can be logged. The logged changes must include the old and new values of any attributes. What should you do()
第3题:
Your network contains an Active Directory domain named contoso.com. All domain controllers and member servers run Windows Server 2008. All client computer run Windows 7. From a client computer, you create an audit policy by using the Advanced Audit Policy Configuration settings in the Default Domain Policy Group Policy object (GPO). You discover that the audit policy is not applied to the member servers. The audit policy is applied to the client computers. You need to ensure that the audit policy is applied to all member servers and all client computers. What should you do()
第4题:
Your network consists of a single Active Directory forest that contains a root domain and two child domains. All servers run Windows Server 2008 R2. A corporate policy has the following requirements: èAll local guest accounts must be renamed and disabled. èAll local administrator accounts must be renamed. You need to recommend a solution that meets the requirements of the corporate policy. What should you recommend?()
第5题:
Your network contains an Active Directory domain. The domain contains several domain controllers. All domain controllers run Windows Server 2008 R2. You need to restore the Default Domain Controllers Policy Group Policy object (GPO) to the Windows Server 2008 R2 default settings. What should you do()
第6题:
Add a WMI filter to the Default Domain Policy GPO
Modify the security settings of the Default Domain Policy GPO
Configure a startup script that runs auditpol.exe on the member servers.
Configure a startup script that runs auditpol.exe on the domain controllers.
第7题:
Run dcgpofix.exe /target:dc.
Run dcgpofix.exe /target:domain.
Delete the link for the Default Domain Controllers Policy, and then run gpupdate.exe /sync.
Delete the link for the Default Domain Controllers Policy, and then run gpupdate.exe /force.
第8题:
Implement a Group Policy object(GPO) for each domain.
Implement a Group Policy object(GPO) for the root domain.
Deploy Network Policy and Access Services(NPAS)on all domain controllers in each domain.
Deploy Active Directory Rights Management Services(AD RMS)on the root domain controllers.
第9题:
Run dcgpofix.exe /target:dc.
Run dcgpofix.exe /target:domain.
Delete the link for the Default Domain Controllers Policy, and then run gpupdate.exe /sync.
Delete the link for the Default Domain Controllers Policy, and then run gpupdate.exe /force.
第10题:
Configure an audit policy for the domain. Configure Event Forwarding.
Configure an audit policy for the domain controllers. Configure Data Collector Sets.
Implement Windows Server Resource Manager (WSRM) in managing mode.
Implement Windows Server Resource Manager (WSRM) in accounting mode.
第11题:
Dfsrdiag
Fsutil
Ntdsutil
Ntfrsutl
第12题:
Upgrade all Windows XP client computers to Windows 7.
Create a central store that contains the Group Policy ADMX files.
Install the Group Policy client-side extensions (CSEs) on all client computers.
Upgrade all Windows Vista client computers to Windows Vista Service Pack 2 (SP2).
第13题:
Your network contains an Active Directory domain. All domain controllers run Windows Server 2008 R2. Client computers run either Windows 7 or Windows Vista Service Pack 2 (SP2). You need to audit user access to the administrative shares on the client computers. What should you do()
第14题:
Your company has several branch offices. Your network consists of a single Active Directory domain. Each branch office contains domain controllers and member servers. The domain controllers run Windows Server 2003 SP2. The member servers run Windows Server 2008 R2. Physical security of the servers at the branch offices is a concern. You plan to implement Windows BitLocker Drive Encryption (BitLocker) on the member servers. You need to ensure that you can access the BitLocker volume if the BitLocker keys are corruptedon the member servers. The recovery information must be stored in a central location. What should you do?()
第15题:
Your network consists of a single Active Directory domain. All domain controllers run Windows Server 2008 R2. You need to plan an auditing strategy that meets the following requirements: èAudits all changes to Active Directory Domain Services (AD?DS) èStores all auditing data in a central location. What should you include in your plan?()
第16题:
Your network consists of a single Active Directory domain. The functional level of the domain is Windows Server 2008 R2. All domain controllers run Windows Server 2008 R2. A corporate policy requires that the users from the research department have higher levels of account and password security than other users in the domain. You need to recommend a solution that meets the requirements of the corporate policy. Your solution must minimize hardware and software costs. What should you recommend?()
第17题:
Create a new Active Directory site. Deploy a Group Policy object (GPO) to the site.
Create a new Password Settings Object (PSO) for the research department’s users
Create a new organizational unit (OU) named Research in the existing domain. Deploy a Group Policy object (GPO) to the Research OU.
Create a new domain in the forest.Add the research department’s user accounts to the new domain.Configure a new security policy in the new domain.
第18题:
Change the functional level of the forest.
Change the functional level of the domain.
Modify the Active Directory schema.
Modify the Universal Group Membership Caching settings.
第19题:
Run dfsrdiag.exe Pollad.
Run dfsrmig.exe /SetGlobalState 0.
Upgrade all domain controllers to Windows Server 2008 R2.
Raise the functional level of the domain to Windows Server 2008.
第20题:
Deploy a logon script that runs Icacls.exe.
Deploy a logon script that runs Auditpol.exe.
From the Default Domain Policy, modify the Advanced Audit Policy Configuration.
From the Default Domain Controllers Policy, modify the Advanced Audit Policy Configuration.
第21题:
Upgrade all domain controllers to Windows Server 2008 R2.Use Group Policy to configure Public Key policies.
Upgrade all domain controllers to Windows Server 2008 R2. Use Group Policy to enable Trusted platform Module(TPM) backups to Active Directory.
Upgrade the domain controller that has the schema master role to Windows Server 2008 R2. Use group Policy to enable a Data Recovery Agent (DRA).
Upgrade the domain controller that has the primary domain controller (PDC) emulator role to windows Server 2008 R2. Use Group Policy to enable a Data Recovery Agent (DRA).
第22题:
Dfsrdiag
Fsutil
Ntdsutil
Ntfrsutl
第23题:
Create multiple Active Directory sites.
On all domain controllers, run dcpromo /adv.
On one domain controller, run dcpromo /adv.
Raise the functional level of the domain to Windows Server 2008.
第24题:
Raise the functional level of the forest to Windows Server 2008 R2.
Modify the path of the SYSVOL folder on all of the domain controllers.
On a global catalog server, run repadmin.exe and specify the KCC parameter.
On the domain controller that holds the primary domain controller (PDC) emulator FSMO role, run dfsrmig.exe.