单项选择题

You are the network administrator for Contoso Pharmaceuticals. Your network consists of a single Active Directory forest that contains three domains. The forest root domain is named contoso.com. The domain contains two child domains named usa.contoso.com and europe.contoso.com. The functional level of the forest is Windows Server 2003. Each domain contains two Windows Server 2003 domain controllers named DC1 and DC2. DC1 in the contoso.com domain performs the following two operations master roles: schema master and domain naming master. DC1 in each child domain performs the following three operations master roles: PDC emulator master, relative ID (RID) master, and infrastructure master. DC1 in each domain is also a global catalog server. The user account for Nancy Buchanan in the europe.contoso.com domain is a member of the Medicine Students security group. Because of a name change, the domain administrator of europe.contoso.com changes the Last name field of Nancy's useraccount from Buchanan to Anderson. The domain administrator of usa.contoso.com discovers that the user account for Nancy is still listed as Nancy Buchanan.  You need to ensure that the user account for Nancy Anderson is correctly listed in the Medicine Students group. 
What should you do?() 

A. Transfer the PDC emulator master role from DC1 to DC2 in each domain.
B. Transfer the infrastructure master role from DC1 to DC2 in each domain.
C. Transfer the RID master role from DC1 to DC2 in each domain.
D. Transfer the schema master role from DC1 to DC2 in the contoso.com domain.


您可能感兴趣的试卷

你可能感兴趣的试题

1.单项选择题

You are the network administrator for Alpine Ski House. The network consists of a single Active Directory forest that contains five domains. The functional level of the forest is Windows 2000. You have not configured any universal groups in the forest. One domain is a child domain named  child1.alpineskihouse.com  that contains two domain controllers and 50 client computers. The functional level of the domain is Windows Server 2003. The network includes an Active Directory site named Site1 that contains two domain controllers. Site1 represents a remote clinic, and the location changes every few months. All of the computers in child1.alpineskihouse.com are located in the remote clinic. The single WAN connection that connects the remote clinic to the main network is often saturated or unavailable. Site1 does not include any global catalog servers. You create several new user accounts on the domain controllers located in Site1. You need to ensure that users in the remote clinic can always quickly and successfully log on to the domain. 
What should you do?()

A. Enable universal group membership caching in Site1.
B. Add the HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Lsa\IgnoreGCFailures key to the registry on both domain controllers in Site1.
C. Add the HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Lsa\IgnoreGCFailures key to the registry on all global catalog servers in the forest.
D. Raise the functional level of the forest to Windows Server 2003.

2.单项选择题

You are the network administrator for Adventure Works. The network consists of a single Active Directory forest that contains a forest root domain named adventure­works.com and a child domain named child1.adventure­works.com. The functional level of the forest is Windows Server 2003.The company uses universal groups to prevent temporary employees from accessing confidential information on computers in the forest. The child1.adventure­works.com domain contains a Windows 2000 Server computer named Server1. Server1 runs an application that makes frequent LDAP queries to the global catalog. Server1 is located on a subnet associated with an Active Directory site named Site2 that has no global catalog servers. Site2 is connected to another site by a WAN connection. You need to enable the application on Server1 to run at high performance levels and to continue operating if a WAN connection fails. You also need to minimize traffic over the WAN connection. 
What should you do?()

A. Enable universal group membership caching in Site2. 
B. Configure at least one global catalog server in Site2.
C. Add the HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Lsa\IgnoreGCFailures key to the registry on all domain controllers in Site2.
D. Remove Server1 from the child1.adventure­works.com domain and add it to a workgroup.

最新试题

Your company has a single Active Directory directory service domain that includes a main office and two branch offices. Each branch office has its own Active Directory site. All user accounts are placed into organizational units (OUs) based on department. Multiple Group Policy objects (GPOs) are linked at the domain, the site, and the OU levels. A user in Atlanta transfers to a different branch office and joins a different department. You move her user account into the corresponding OU. After logging on to her new client computer, the user notices that the desktop settings are different from the settings she had in her previous location. You need to find out the effect of all GPOs on the user. What should you do?()

题型:单项选择题

You have a single Active Directory directory service domain. You back up your domain controllers on a nightly basis. An organizational unit (OU) is accidently deleted. You need to restore the objects that were located in the OU. What should you do?()

题型:单项选择题

You are the network administrator for A. Datum Corporation. The network consists of a single Active Directory forest that contains three domains named adatum.com, child1.adatum.com, and child2.adatum.com. The functional level of the forest is Windows Server 2003. The help desk department is responsible for resetting passwords for all user accounts in the forest except for accounts that have administrative privileges. There is an organizational unit (OU) named Corp_Users in each domain that contains the user accounts in that domain. All of the user accounts that have administrative privileges are in the default Users container in each domain. There is a universal group named HD_Users in the adatum.com domain. All user accounts for the help desk department users are members of the HD_Users group. You need to delegate the required authority for resetting passwords to the users in the help desk department. For which Active Directory component or components should you delegate control? To answer,select the appropriate component or components in the work area. 

题型:问答题

You have a single Active Directory directory service domain. All domain controllers run Windows Server 2003. All client computers run Windows Vista. The computers in the sales department are located in an organizational unit (OU) named Sales. You use a Default Domain Policy to configure company user and computer settings. You configure a software restriction policy for the domain. The policy prevents users from running software that is not approved.  You need to allow computers in the Sales OU to run software that is not approved while maintaining other required settings. What should you do?()

题型:单项选择题

You are the network administrator for your company. The network consists of a single Active Directory domain. The domain includes an organizational unit (OU) named Processing. There are 100 computer accounts in the Processing OU. You create a Group Policy object (GPO) named NetworkSecurity and link it to the domain. You configure NetworkSecurity to enable security settings through the Computer Configuration section of the Group Policy settings. You need to ensure that NetworkSecurity will apply only to the computers in the Processing OU. You need to minimize the number of GPO links. What should you do?()

题型:单项选择题

You have a single Active Directory directory service domain. All users in the IT department are placed into an organizational unit (OU) named IT Users.  A Group Policy object (GPO) is linked to the IT Users OU. The GPO assigns a software installation package to install the Windows Server 2003 Administration Tools Pack. You select the Install this application at logon option in the software installation package. A user has been removed from the IT Users OU, but she still has the Windows Server Administration Tools Pack on her computer. You need to ensure that the Windows Server 2003 Administration Tools Pack is removed from a users computer when the user is moved from the IT Users OU. What should you do?()

题型:单项选择题

You are the network administrator for your company. Your network consists of a single Active  Directory domain. Three security groups named Accountants, Processors, and Management are located in an organizational unit (OU) named Accounting. All of the user accounts that belong to these three  groups are also in the Accounting OU. You create a Group Policy object (GPO) and link it to the  Accounting OU. You configure the GPO to disable the display options under the User Configuration  section of the GPO. You need to achieve the following goals: You need to ensure that the GPO applies to  all user accounts that are members of the Processors group. You need to prevent the GPO fromapplying  to any user account that is a member of the Accountants group. You need to prevent the GPO from  applying to any user account that is a member of the Management group, unless the user account is also  a member of the Processors group.What should you do?()

题型:单项选择题

You have a single Active Directory directory service forest named contoso.com. You create baseline security settings for a group of computers, and you store the settings in a database. You deploy the baseline security settings. You need to confirm that the security settings on one of the computers are applied correctly. What are two possible commands that you can run to achieve this goal?()

题型:多项选择题

Your company has offices in Toronto and Chicago. Both offices belong to an Active Directory directory service site named Site1. There is only one domain controller in Site1. Users in the Chicago office are experiencing slow logon times. You create a new Active Directory site for the Chicago office named Site2. You promote a new domain controller and create a site link between Site1 and Site2. You need to improve logon times for the Chicago users and enable Active Directory replication between the Site1 and Site2 domain controllers. Which two actions should you perform?()

题型:多项选择题

You are a network administrator for your company. The network consists of a single Active Directory domain. The company has offices in 25 cities. Each office is configured as a single site. You are responsible for one site that is configured as shown in the exhibit. (Click the Exhibit button.) An IP site link connects your site and the site at the company’s main office. The company replaces your router with a firewall device. The firewall is configured to allow HTTP, SMTP, FTP, NNTP, global catalog queries, and VPN packets to pass. You discover that replication with other sites is not occurring. You need to ensure that you can replicate with other sites. You need to achieve this goal without removing or reconfiguring the firewall. What should you do? ()

题型:单项选择题