多项选择题

You are a network administrator for your company. The network consists of a single Active Directory  domain. All servers run Windows Server 2003. The functional level of the domain is Windows Server 2003.  The organizational unit (OU) structure is shown in the exhibit. (Click the Exhibit button.) Your company  uses an X.500 directory service enabled product to support a sales and marketing application. The  application is used only by users in the sales department and the marketing department. The application  uses InetOrgPerson objects as user accounts. InetOrgPerson objects have been created in Active  Directory for all Sales and Marketing users. These users are instructed to log on by using their  InetOrgPerson object as their user account. Microsoft Identity Integration Server is configured to copy  changes to InetOrgPerson objects from Active Directory to the X.500 directory service enabled product.  All InetOrgPerson objects for marketing employees are located in the Marketing OU. All InetOrgPerson  objects for sales employees are located in the Sales OU. Mikhail is another administrator in your company.  Mikhail is responsible for managing the objects for users who require access to the X.500 directoryservice enabled product. You need to configure Active Directory to allow Mikhail to perform his  responsibilities. 
Which action or actions should you take?()

A. On the domain, grant Mikhail the permission to manage user objects.
B. On the domain, grant Mikhail the permission to manage InetOrgPerson objects.
C. On the Sales OU, block the inheritance of permissions.
D. On the Marketing OU, block the inheritance of permissions.
E. On the Dev OU, block the inheritance of permissions


您可能感兴趣的试卷

你可能感兴趣的试题

1.单项选择题

You have a single Active Directory directory service domain. All user accounts in the sales  
department are in an organizational unit (OU) named Sales. Your company has five public computers that are members of the domain. You notice a sales tracking application on one of the public computers. You verify that this application is assigned to users in the Sales OU through a Group Policy object (GPO). You need to ensure that when sales department users log on to the public computers, the applications that are assigned to the Sales OU are not made available on the public computers. 
What should you do?()

A. Add the public computer accounts to a new OU. Create and link a GPO to enable the User Group Policy loopback processing mode setting in merge mode.
B. Add the public computer accounts to a new OU. Create and link a GPO to enable the User Group Policy loopback processing mode setting in replace mode.
C. Create a new GPO and link it to the Sales OU to enable the User Group Policy loopback processing mode setting in merge mode.
D. Create a new GPO and link it to the Sales OU to enable the User Group Policy loopback processing mode setting in replace mode.

3.单项选择题

You are the network administrator for your company. The network consists of a single Active  
Directory domain that contains four domain controllers. All servers run Windows Server 2003. All user  accounts are located in an organizational unit (OU) named CompanyUsers. A written company policyrequires all users to use strong passwords. User passwords must contain a mixture of letters, numbers, or  special characters. Passwords must be at least 10 characters long. Passwords must be changed at least  every 60 days, and the new password cannot be the same as the old one. To enforce this requirement,  you create a Group Policy object (GPO) named Password Policies and link the GPO to the  CompanyUsers OU. The settings in the Password Policy section of the Password Policies GPO are  shown in the exhibit. (Click the Exhibit button.) You discover that users are creating simple passwords that  do not meet the complexity requirements. You need to ensure that the company password requirements  are enforced. 
What should you do?()

A. Link the Password Policies GPO to the Domain Controllers OU. Make it the first GPO in the list.
B. Configure the properties of the Password Policies GPO so that it cannot be overridden.
C. Delete the Password Policies GPO. Edit the Default Domain Policy GPO to include the settings from the Password Policy section of the Password Policies GPO.
D. Delete the Password Policies GPO. Edit the Default Domain Controllers Policy GPO to include the settings from the Password Policy section of the Password Policies GPO.

4.单项选择题

You have a single Active Directory directory service domain. You plan to use a server named Server1  to deliver Microsoft updates to all your companys workstations. The workstations are located in an  organizational unit (OU) named Workstations. Server1 is located in an OU named Servers. You need to  ensure that all workstations receive Microsoft updates from Server1 and that the updates are installed at  3:00 AM each day. 
What should you do?()

A. Create a GPO and enable the Configure Automatic Updates and Enable recommended updates via    automatic Updates options. Link the GPO to the Workstations OU.
B. Create a GPO and enable the Configure Automatic Updates and Automatic Updates detection frequency options. Link the GPO to the Workstations OU.
C. Create a GPO and enable the Configure Automatic Updates and Specify intranet Microsoft update service location options. Link the GPO to the domain.
D. Create a GPO enable the Configure Automatic Updates and Specify intranet Microsoft update service location options. Link the GPO to the Servers OU.

5.单项选择题

You have a single Active Directory directory service domain. All users in the IT department are  placed into an organizational unit (OU) named IT Users. A Group Policy object (GPO) is linked to the IT  Users OU. The GPO assigns a software installation package to install the Windows Server 2003  Administration Tools Pack. You select the Install this application at logon option in the software installation  package. A user has been removed from the IT Users OU, but she still has the Windows Server  Administration Tools Pack on her computer. You need to ensure that the Windows Server 2003  Administration Tools Pack is removed from a users computer when the user is moved from the IT Users  OU. 
What should you do?()

A. Modify the software installation package to use the Published deployment method. Clear the Auto-install this application by file extension activation check box. Redeploy the software installation package.
B. Modify the software installation package to clear the Install this application at logon option. Redeploy the software installation package.
C. Modify the software installation package to select the Uninstall this application when it falls out of the scope of management option. Retain the software installation package in the GPO.
D. Modify the software installation package to select the Uninstall this application when it falls out of the scope of management option. Delete the software installation package from the GPO.

6.多项选择题

You are the network administrator for Southridge Video. The network consists of a single Active  Directory domain named southridgevideo.com. The domain contains one domain controller. All servers  run Windows Server 2003. All client computers run Windows XP Professional. The company uses Group  Policy objects (GPOs) to configure user and computer settings. The Active Directory database and the  SYSVOL shared folder are stored on separate hard disks. The hard disk containing the SYSVOL folder  fails. Some Group Policy settings are still applied, but new users do not receive the Group Policy settings. You replace the failed disk. You discover that there are no valid backups of the SYSVOL folder. You have  a list of GUIDs and friendly names for each GPO. On the new disk, you create a new shared folder named  SYSVOL in the same location as the previous SYSVOL folder. You need to configure the network so that the user and computer settings will be applied to all users. 
Which three courses of action should you take?()

A. In the SYSVOL folder, create a folder named southridgevideo.com. In the southridgevideo.com folder, create a folder named Policies.
B. In the SYSVOL folder, create a folder named System State. In the System State folder, create a folder named Policies.
C. In the Policies folder, create a folder for each GPO. Name the folders by using the friendly name of each GPO. In the folder for each GPO, create a folder named MACHINE and a folder named USER.
D. In the Policies folder, create a folder for each GPO. Name the folders by using the GUID of each GPO. In the folder for each GPO, create a folder named MACHINE and a folder named USER.
E. Use Active Directory Users and Computers to open each GPO. Close each GPO without changing any settings.
F. Use Active Directory Users and Computers to open each GPO. Change at least one setting in each GPO before closing it.

8.单项选择题

You are the network administrator for your company. The network consists of a single Active Directory domain. The company has an office in San Diego, which is configured as a single Active Directory site. The company has 500 users. The company opens a new office in Los Angeles, which employs 50 users. A T1 line connects both offices. You configure the Los Angeles office as a single site. You create a subnet object for the Los Angeles office. 
In the Los Angeles office, you install and configure a server named DC1 as a domain controller and global catalog server. You configure the Los Angeles site to use DC1 and the Los Angeles subnet object. You configure a site link that connects the site in San Diego and the site in Los Angeles. 
You need to ensure that client computers in Los Angeles connect to DC1 for authentication. You also need to ensure that changes to the domain are replicated as soon as possible. 
What should you do?()

A. Configure the interval for the site link to its minimum value.
B. Remove the Los Angeles site and move DC1 and the Los Angeles subnet object to the San Diego site.
C. Create an RPC­based connection object at each of the two sites.
D. Create a site link bridge between the two sites.

9.单项选择题

You are the network administrator for Alpine Ski House. The network consists of a single Active Directory forest that contains three domains named alpineskihouse.com, child1.alpineskihouse.com, and child2.alpineskihouse.com. The functional level of the forest is Windows Server 2003. Each domain 
contains Windows Server 2003 file and print servers. All of the file and print server computer accounts are located in the default Computers container in each domain. There is a central operations department that is responsible for administering the file server computer accounts in all domains. There is a separate operations department for each domain that is responsible for administering the print server computer accounts in that domain. You need to delegate authority to create an environment to support your file and print server administration requirements. You need to create an organizational unit (OU) structure to support the delegation of authority requirements. 
What should you do?()

A. Create a top­level OU for file server computer accounts under the alpineskihouse.com domain. Create a top­level OU for print server computer accounts under the alpineskihouse.com domain.
B. Create a top­level OU for file server computer accounts under the alpineskihouse.com domain. Create a top­level OU for print server computer accounts under each domain.
C. Create a top­level OU for file server computer accounts under each domain. Create a top­level OU for print server computer accounts under each domain.
D. Create a top­level OU for file server computer accounts under each domain. Create a child OU for print server computer accounts under each file server OU.

10.单项选择题

You are the network administrator for Blue Yonder Airlines. You plan to create an Active Directory domain named blueyonderairlines.com that will have a functional level of Windows Server 2003. 
Your company has one main office and four branch offices, which are all located in one country. A central security department in the main office is responsible for creating and administering all user accounts in all offices. Each office has a local help desk department that is responsible for resetting passwordswithin the individual department’s office only. 
All user accounts are located in the default Users container. 
You need to create an organizational unit (OU) structure to support the delegation of authority requirements. You want to minimize the amount of administrative effort required to maintain the environment. 
What should you do?()

A. Create a top­level OU named BlueYonderAirlines_Users under the blueyonderairlines.com domain. Create a separate child OU for each office under BlueYonderAirlines_Users. Move the user accounts of all employees in each office to the child OU for that office.
B. Create a top­level OU named Main_Office under the blueyonderairlines.com domain. Move the user accounts of all users in the main office to the Main_Office OU.Create a separate child OU for each branch office under the Main_Office OU. Move the user accounts of all users in each branch office to the child OU for that office.
C. Create a top­level OU named BlueYonderAirlines_Users under the blueyonderairlines.com domain. Create a child OU named Central_Security under BlueYonderAirlines_Users. Move the user accounts of the central security department users to the Central_Security OU.Create a child OU named Help_Desk under BlueYonderAirlines_Users. Move the user accounts of the help desk users to the Help_Desk OU.
D. Create a top­level OU named BlueYonderAirlines_Users under the blueyonderairlines.com domain. Create a child OU named Central_Security under BlueYonderAirlines_Users. Move the user accounts of the central security department users to the Central_Security OU.Create a separate child OU under BlueYonderAirlines_Users for each office. Move the user accounts of the help desk users in each office to the child OU for that office.

最新试题

You are the network administrator for your company. The network consists of a single Active Directory domain with three sites named Site1, Site2, and Site3. The sites and site links are configured to use Site2 to connect Site1 and Site3. Each site contains three Windows Server 2003 domain controllers. A domaincontroller in each site is configured as a preferred bridgehead server. All user and group accounts are created in Site1. Several new users start work in Site2. When they attempt to log on to the network, the logon fails. You confirm that the user accounts are created and are visible in Site1 and Site2. You discover that the preferred IP bridgehead server in Site2 failed. You repair the server and confirm that replication is successful to Site2. You need to ensure that the failure of a single domain controller in any site will not interfere with Active Directory replication between sites. What are two possible ways to achieve this goal?()

题型:多项选择题

You have a single Active Directory directory service domain. You have an application that adds Active Directory Schema attributes during installation. The attributes replicate as part of global catalog replication. Your user account is a member of the Domain Admins, Schema Admins, and Enterprise Admins global groups. You test the application and decide not to deploy it to production.  You need to ensure that the attributes that are added by the application are no longer available in Active Directory. Using the Active Directory Schema snap-in,what should you do?()

题型:单项选择题

You are the network administrator for your company. Your network consists of a single Active Directory domain. All servers run Windows Server 2003. All user accounts in your domain are located in an organizational unit (OU) named User Accounts. User accounts are separated into two types: accounts for users who use portable computers and accounts for users who use desktop computers. The accounts for the users who use portable computers are in an OU named Portable, and the accounts for the users who use desktop computers are in an OU named Desktop. The OU structure is shown in the work area. Users who use portable computers often travel with them, but they do not connect to the network when they are out of the office. You need to install an application on all client computers. Users must be able to run the application even if the client computer is not connected to the network. You need to perform the installation in a way that reduces network load on the installation source. All software installed by using a Group Policy object (GPO) must require as little support as possible. You need to configure Group Policy to install the application. You also need to link any GPO to the appropriate OU. What should you do? To answer,drag the appropriate action or actions for a GPO to perform to the correct OU or OUs in the work area. 

题型:问答题

Your companys Windows Server 2003 environment consists of a single Active Directory directory service forest. The forest has multiple domains and three sites named Site1, Site2, and Site3. Site1 is the main office and has four domain controllers. Two of the domain controllers are global catalog servers. Site2 is a branch office with two domain controllers. Site3 is a branch office with a slow and unreliable WAN link and two domain controllers.  You need to improve user logon performance for users in Site2 and Site3. Which two actions should you perform?()

题型:多项选择题

You are a network administrator for your company. The network consists of a single Active Directory domain. The company has offices in 25 cities. Each office is configured as a single site. You are responsible for one site that is configured as shown in the exhibit. (Click the Exhibit button.) An IP site link connects your site and the site at the company’s main office. The company replaces your router with a firewall device. The firewall is configured to allow HTTP, SMTP, FTP, NNTP, global catalog queries, and VPN packets to pass. You discover that replication with other sites is not occurring. You need to ensure that you can replicate with other sites. You need to achieve this goal without removing or reconfiguring the firewall. What should you do? ()

题型:单项选择题

You are the network administrator for your company. The network consists of a single Active Directory domain. All servers run Windows Server 2003. All client computers run either Windows XP Professional or Windows 2000 Professional. All client computer accounts are located in an organizational unit (OU) named Workstation. A written company policy states that the Windows 2000 Professional computers must not use offline folders. You create a Group Policy object (GPO) to enforce this requirement. The settings in the GPO exist for both Windows 2000 Professional computers and Windows XP Professional computers. You need to configure the GPO to apply only to Windows 2000 Professional computers. What are two possible ways to achieve this goal?()

题型:多项选择题

You have a single Active Directory directory service forest named contoso.com. You create baseline security settings for a group of computers, and you store the settings in a database. You deploy the baseline security settings. You need to confirm that the security settings on one of the computers are applied correctly. What are two possible commands that you can run to achieve this goal?()

题型:多项选择题

You are the network administrator for your company. The network consists of a single Active Directory domain with three sites. There is a domain controller at each site. All servers run Windows Server 2003. Each client computer runs either Windows 2000 Professional or Windows XP Professional. The IT staff is organized into four groups. The IT staff works at the three different sites. The computers for the IT staff must be configured by using scripts. The script or scripts must run differently based on which site the IT staff user is logging on to and which of the four groups the IT staff user is a member of. You need toensure that the correct logon script is applied to the IT staff users based on group membership and site location. What should you do?()

题型:单项选择题

Your company has a single Active Directory directory service forest with multiple domains. The Schema FSMO role is held by one of the domain controllers in the forest root domain. The DomainThe safer , easier way to help you pass any IT exams. Naming Master FSMO role is held by one of the domain controllers in a child domain. All domain controllers have Windows Server 2003 installed.  You need to upgrade all domain controllers to Windows Server 2003 R2. Which two actions should you perform?()

题型:多项选择题

Your company has offices in Toronto and Chicago. Both offices belong to an Active Directory directory service site named Site1. There is only one domain controller in Site1. Users in the Chicago office are experiencing slow logon times. You create a new Active Directory site for the Chicago office named Site2. You promote a new domain controller and create a site link between Site1 and Site2. You need to improve logon times for the Chicago users and enable Active Directory replication between the Site1 and Site2 domain controllers. Which two actions should you perform?()

题型:多项选择题