Install the AD CS server role and configure it as an Enterprise Root CA .
Install the AD CS server role and configure it as a Standalone CA .
Restrict enrollment agents for the Smartcard logon certificate to the Account Operator group.
Restrict certificate managers for the Smartcard logon certificate to the Account Operator group.
Create a Smartcard logon certificate.
Create an Enrollment Agent certificate.
第1题:
You are a network administrator for Alpine Ski House. The network consists of a single Active Directory domain. The domain name is alpineskihouse.com. The network contains three Windows Server 2003 domain controllers. You are creating the recovery plan for the company. According to the existing backup plan, domain controllers are backed up by using normal backups each night. The normal backups of the domain controllers include the system state of each domain controller. Your recovery plan must incorporate the following organizational requirements. Active Directory objects that are accidentally or maliciously deleted must be recoverable. Active Directory must be restored to its most recent state as quickly as possible. Active Directory database replication must be minimized.You need to create a plan to restore a deleted organizational unit (OU). Which two actions should you include in your plan?()
第2题:
Your company has a main office and three branch offices. The company has an Active Directory forest that has a single domain. Each office has one domain controller. Each office is configured as an Active Directory site. All sites are connected with the DEFAULTIPSITELINK object. You need to decrease the replication latency between the domain controllers. What should you do()
第3题:
Run the netdom TRUST /reset command.
Run the netsh command with the set and machine options.
Run the Active Directory Users and Computers console to disable, and then enable the computer account.
Reset the computer account. Disjoin the computer from the domain, and then rejoin the computer to the domain.
第4题:
Run the regsvr32 schmmgmt.dll command. Use the Active Directory Domains and Trusts snap-in.
Run the regsvr32 schmmgmt.dll command. Use the Active Directory Users and Computers snap-in.
Use the Dsget command-line tool.
Use the Dsquery command-line tool.
第5题:
Add the DNS Server role.
Join the server to the domain.
Add the Web server (IIS) role and the AD CS role.
Add the Active Directory Lightweight Directory Service (AD LDS) role.
第6题:
netsh
tracert
ntdsutil
nslookup
第7题:
The Dcpromo.exe utility
The Server Manager console
The Computer Management console
The Active Directory Sites and Services console
The Active Directory Domains and Trusts console
第8题:
Add and configure a new account store.
Add and configure a new account partner.
Add and configure a new resource partner.
Add and configure a Claims-aware application.
第9题:
Run the csvde f computers.csv command.
Run the ldifde f computers.ldf command.
Run the dsadd computer
Run the dsmod computer
第10题:
Restart DHCP1.
Configure a scope on DHCP1.
Activate the scope on DHCP1.
Authorize DHCP1 in the Active Directory domain.
第11题:
Your company has an Active Directory domain. The company has two domain controllers named DC1 and DC2. DC1 holds the schema master role. DC1 fails. You log on to Active Directory by using the administrator account. You are not able to transfer the schema master role. You need to ensure that DC2 holds the schema master role. What should you do()
第12题:
Register the Schmmgmt.dll. Start the Active Directory Schema snap-in.
Configure DC2 as a bridgehead server.
On DC2, seize the schema master role.
Log off and log on again to Active Directory by using an account that is a member of the Schema Admins group. Start the Active Directory Schema snap-in.
第13题:
Register the Schmmgmt.dll. Start the Active Directory Schema snap-in.
Configure DC2 as a bridgehead server
On DC2, seize the Schema Master role
Log off and log on again to Active Directory by using an account that is a member of the Schema Administrators group. Start the Actrve Directory Schema snap-in.
第14题:
Register Schmmgml.dll.
Log off and log on again by using an account that is a member of the Schema Administrators group.
Use the Ntdsutil.exe command to connect to the Schema Master operations master and open the schema for writing.
Add the Active Directory Lightweight Directory Services (AD LDS) role to the domain controller by using Server Manager.
第15题:
Register Schmmgmt.dll.
Log off and log on again by using an account that is a member of the Schema Admins group.
Use the Ntdsutil.exe command to connect to the schema master operations master and open the schema for writing
Add the Active Directory Lightweight Directory Services (AD/LDS) role to the domain controller by using Server Man
第16题:
Configure the RODC for Administrator Role Separation.
Configure the RODC to replicate the password for the branch office support technicians.
Set NTFS permissions on the Active Directory database to Read & Execute for the branch officesupport technicians.
Set NTFS permissions on the Active Directory database to Deny Full Control for the branch office support technicians.
第17题:
UrlScan Security Tool
Enterprise Scan Tool (EST)
Malicious Removal Tool (MRT)
Microsoft Baseline Security Analyzer (MBSA)
第18题:
Register Schmmgmt.dll.
Log off and log on again by using an account that is a member of the Schema Administrators group.
Use the Ntdsutil.exe command to connect to the Schema Master operations master and open the schema for writing.
Add the Active Directory Lightweight Directory Services (AD LDS) role to the domain controller by using Server Manager.
第19题:
Deploy two additional domain controllers in the main office Active Directory site.
Deploy global catalog servers in the branch office Active Directory site.
Enable change notification on the site link between the main office Active Directory site and the branch office Active Directory site.
Disable change notification on the site link between the main office Active Directory site and the branch office Active Directory site.
第20题:
Microsoft Assessment and Planning (MAP) Toolkit
Microsoft Baseline Security Analyzer
Microsoft System Center Operations Manager
Windows Server Update Services (WSUS)