You are the domain administrator for TestKing‘s Active Directory domain. Thedomain consists of four domain controllers named TestkingDC1, TestkingDC2,TestkingDC3, and TestkingDC4. TestkingDC1 and TestkingDC2 run Windows 2000Server and have the latest service pack installed. TestkingDC3 and TestkingDC4run Windows Server 2003. All client computers run Windows XP Professional andhave the latest service pack installed.You have a new client computer that you plan to use to perform domainadministration functions.You need to be able to manage Active Directory users and computers remotely.What should you do?()
A. Install the Windows Support Tools from the Windows Server 2003 installation CD on your client computer.
B. Install the Adminpak.msi file from the Windows Server 2003 installation CD on your client computer.
C. Use the Help and Support Center tools on your client computer to connect to the domain controller that you need to manage.
D. Use Computer Management on your client computer to connect to the domain controller that you need to manage.
第1题:
Your network contains a single Active Directory domain. All servers on the network are members of the domain. You have a server named Server1 that runs Windows Server 2003 Service Pack 2 (SP2). Server1 has two NTFS partitions. You create and share a folder named Data in the root of a partition on Server1. You log on to your computer by using the domain Administrator account and discover that you cannot modify files in the Data share. You need to ensure that the Administrator can modify files in the Data share. The solution must use the minimum amount of permissions. What should you do? ()
第2题:
You are the administrator of an Active Directory domain named A user reports that he forgot his password and cannot log on to the domain. You discover that yesterday morning the user reset his password and successfully logged on to the domain. You need to enable the user to log on to the domain. What should you do? ()(Choose two)
第3题:
You network consists of a single Active Directory domain. All domain controllers run Windows Server 2008 R2. You need to reset the Directory Services Restore Mode (DSRM) password on a domain controller. What tool should you use()
第4题:
You network consists of a single Active Directory domain. All domain controllers run Windows Server 2008. You need to reset the Directory Services Recovery Mode (DSRM) password on a domain controller. What tool should you use()
第5题:
You are the network administrator for. The network consists of a single Active Directory forest that contains two domains. You have not modified the default Active Directory site configurations. The functional level of both domains is Windows 2000 native. Servers run either Windows Server 2003 or Windows 2000 Server. TestKing's internal domain is named testking.local. Testking's external domain is named . The external domain is accessed only by TestKing's business partners. You install a Windows Server 2003 computer named Testking7 in the domain. You install and configure Terminal Services on Testking7. Testking7 is configured as a member server in the domain. You install a secure database application on Testking7 that will be accessed by TestKing's business partnersA few months later, users report that they can no longer establish Terminal Services session to Testking7. You verify that only the default ports for HTTP, HTTPS, and Terminal Services on your firewall are open to the Internet. You need to ensure that TestKing's business partners can establish Terminal Services sessions to Testking7. What are two possible ways to achieve this goal?() (Each correct answer presents a complete solution. Choose two)
第6题:
You are the network administrator for The network consists of a single Active Directory domain named All servers run Windows Server 2003, and all client computers run Windows XP Professional. A user named Lilli receives a new computer named Client223. She successfully logs on to the domain. The next day, she tries to log on again. The domain name appears in the domain dropdown list in the dialog box. However, Lilli cannot log on. You try to log on by using Client223, but you are also unsuccessful. Then you use a local Administrator account to log on. You read the following error message in the system event log. "NETLOGON Event ID 3210: Failed to authenticate with //Server5, a Windows NT domain controller for domain TestKing". You search the computer account for Client223 in Active Directory Users and Computers, but the account does not appear. You need to ensure that Lilli can log on to the domain successfully. What should you do?()
第7题:
Log on to Testking1 by using the AdminUser1 user account. Run the dsa.msc command.
Log on to Testking1 by using the NetAdmin1 user account. Run the dsa.msc command.
Log on to Client1 by using the AdminUser1 user account. Run the runas /user:netadmin1 dsa.msc
Log on to Client1 by using the NetAdmin1 user account. Run the runas /user:adminuser1 dsa.msc
第8题:
Run the netdom TRUST /reset command.
Run the netsh command with the set and machine options.
Run the Active Directory Users and Computers console to disable, and then enable the computer account.
Reset the computer account. Disjoin the computer from the domain, and then rejoin the computer to the domain.
第9题:
ldifde
csvde
ntdsutil with the authoritative restore option
dsadd user
第10题:
Ldp.exe
Active Directory Domain services
ntdsutil.exe
Lds.exe
wsamain.exe
None of the above
第11题:
Prestage a domain computer account for the new server in the appropriate OU. Join the server to the domain by using the prestaged computer account.
On the new server, add the domain name for the Active Directory domain to the DNS suffix setting. Join the server to the domain.
Assign a user account the Allow - Create permission for the appropriate OU. Join the new server to the domain by using the user account.
Join the new server to the Active Directory domain. On the new server, run the gpupdate /force command.
第12题:
You are the network administrator for Testking.com. The network consists of a single Active Directory forest that contains three domains. The functional level of the forest is Windows Server 2003. The domain names are testking.com, europe.testking.com, and asia.testking.com. Each domain contains 500 user accounts. TestKing.com is in the process of acquiring several other companies whose networks will be add to the testking.com Windows Server 2003 domain. These acquisitions will entail the addition of several new offices, which will be connected to TestKing's network by means of dedicated 56-Kbps WAN connections. You create a new shared folder named NewProjects on a file server in testking.com. Several users in each existing domain need access to the NewProjects folder. These users are not in the same group in any domain. All users who need access to the NewProjects folder must be able to add, delete, and modify files and folders in the NewProjects folder. Users in the acquired companies also will require access to this folder. You need to create the required Active Directory groups and configure the required permissions for the NewProjects folder. Your solution must minimize ongoing administrative effort as you add new companies to the network. You must also minimize unnecessary traffic across the WAN connections. What should you do?()
第13题:
You are the network administrator for TestKing.com. The network consists of a single Active Directory domain named testking.com. All network servers run Windows Server 2003. You place computer accounts for servers in OUs that are organized by server roles. You apply GPOs to these servers at the OU level. You need to add a new server to the domain. You need to ensure that the appropriate GPOs are applied to this server. What should you do?()
第14题:
You are designing a plan to migrate an existing application to Windows Azure. The application must use the existing Active Directory Domain Services (AD DS) domain. You need to recommend an approach for joining Windows Azure virtual machines to the domain. What should you recommend?()
第15题:
You are the network administrator for TestKing.com Active Directory domain. The domain includes Windows Server 2003 domain controllers and Windows XP Professonal client computers. A new administrator named Sandra is hired to assist you in deploying Windows XP Professional to 100 new computers. Sandra installs the operating system on a new computer named TestKing11. However, when Sandra tries to log on to the domain from TestKing11, she is unsuccessful. The logon box does now allow her to view and select the domain name. You need to ensure that Sandra can log on to the domain from TestKing11. What should you do?()
第16题:
As an administrator at Certkiller.com, you have installed an Active Directory forest that has a single domain. You have installed an Active Directory Federation services (AD FS) on the domain member server. What should you do to configure AD FS to make sure that AD FS token contains information from the active directory domain()
第17题:
The best option is to set up a new Active Directory domain in the internal forest and then join all EdgeTransport servers to the new domain.
The best option is to make use of Active Directory Federation Services (AD FS).
The best option is to make use of Network Policy and Access Services (NPAS).
The best option is to set up a new Active Directory domain in the perimeter network and then join all Edge Transport Servers to the new domain.
第18题:
You should add Andy Reid to the Server Operators group.
You should add Andy Reid to the Domain Admins group.
You should add Andy Reid to the Enterprise Admins group.
You should add Andy Reid to the Exchange Install Domain Servers group.
第19题:
Add the non-administrative domain user account to the local Administrators group.
Use the runas command to run Active Directory Users and Computers with domain administrative credentials.
From a command prompt, run the net user Sophia /add /passwordreq:yes command.
From a command prompt, run the net accounts /uniquepw: /domain command.
第20题:
From a command prompt, run the tsdisconn command.
From a command prompt, run the net send /users command to send a warning message. After two minutes, manually shut down Testking1.
From a command prompt, run the tsshutdn 120 /server:Testking1 command.
Run Tsadmin.exe to disconnect all active sessions. After two minutes, manually shut down Testking1.
第21题:
Install the Active Directory Certificate Services (AD CS) root certificate into the Enterprise Trust certificate store on each virtual machine.
Configure Windows Azure Connect.
Configure Windows Azure AppFabric Access Control.
Install Active Directory Federation Services (AD FS) in the existing domain.
第22题:
Enable the computer account for Testking11.
Configure TestKing11 as a member of the domain.
Add Sandra's user account to the Enterprise Admins group.
Add Sandra's user account to the Server Operators group.