单项选择题

You are the network administrator for Fabrikam, Inc. Your network consists of a single Active  Directory forest that contains one domain named fabrikam.com. The functional level of the forest is  Windows Server 2003. Fabrikam, Inc., acquires a company named Contoso, Ltd. The Contoso, Ltd., network consists of a single Active Directory forest that contains a root domain named contoso.com and a  child domain named usa.contoso.com. The functional level of the forest is Windows 2000. The functional level of the usa.contoso.com domain is Windows 2000 native. A business decision by the company requires the usa.contoso.com domain to be removed. You need to move all user accounts from the  usa.contoso.com domain to the fabrikam.com domain by using the Active Directory Migration Tool. You  need to accomplish this task without changing the logon rights and permissions for all other users. You  need to ensure that users in usa.contoso.com can log on to fabrikam.com by using their current user names and passwords. 
What should you do?()

A. Create a two-way Windows Server 2003 external trust relationship between the fabrikam.com domainand the contoso.com domain.
B. Create a one-way Windows Server 2003 external trust relationship in which the fabrikam.com domain trusts the contoso.com domain.
C. Create a temporary two-way external trust relationship between the fabrikam.com domain and the usa.contoso.com domain.
D. Create a temporary one-way external trust relationship in which the usa.contoso.com domain trusts the fabrikam.com domain.


您可能感兴趣的试卷

你可能感兴趣的试题

2.单项选择题

Your company has a single Active Directory directory service forest with three domains. You plan to modify the Active Directory schema. You need to identify the schema master for the forest. 
What should you do?()

A. Run the regsvr32 schmmgmt.dll command. Use the Active Directory Domains and Trusts snap-in. 
B. Run the regsvr32 schmmgmt.dll command. Use the Active Directory Users and Computers snap-in. 
C. Use the Dsget command-line tool.
D. Use the Dsquery command-line tool.

3.多项选择题

You are a network administrator for your company. The network consists of a single Active Directory  domain. All servers run Windows Server 2003. The functional level of the domain is Windows Server 2003.  The organizational unit (OU) structure is shown in the exhibit. (Click the Exhibit button.) Your company  uses an X.500 directory service enabled product to support a sales and marketing application. The  application is used only by users in the sales department and the marketing department. The application  uses InetOrgPerson objects as user accounts. InetOrgPerson objects have been created in Active  Directory for all Sales and Marketing users. These users are instructed to log on by using their  InetOrgPerson object as their user account. Microsoft Identity Integration Server is configured to copy  changes to InetOrgPerson objects from Active Directory to the X.500 directory service enabled product.  All InetOrgPerson objects for marketing employees are located in the Marketing OU. All InetOrgPerson  objects for sales employees are located in the Sales OU. Mikhail is another administrator in your company.  Mikhail is responsible for managing the objects for users who require access to the X.500 directoryservice enabled product. You need to configure Active Directory to allow Mikhail to perform his  responsibilities. 
Which action or actions should you take?()

A. On the domain, grant Mikhail the permission to manage user objects.
B. On the domain, grant Mikhail the permission to manage InetOrgPerson objects.
C. On the Sales OU, block the inheritance of permissions.
D. On the Marketing OU, block the inheritance of permissions.
E. On the Dev OU, block the inheritance of permissions

4.单项选择题

You have a single Active Directory directory service domain. All user accounts in the sales  
department are in an organizational unit (OU) named Sales. Your company has five public computers that are members of the domain. You notice a sales tracking application on one of the public computers. You verify that this application is assigned to users in the Sales OU through a Group Policy object (GPO). You need to ensure that when sales department users log on to the public computers, the applications that are assigned to the Sales OU are not made available on the public computers. 
What should you do?()

A. Add the public computer accounts to a new OU. Create and link a GPO to enable the User Group Policy loopback processing mode setting in merge mode.
B. Add the public computer accounts to a new OU. Create and link a GPO to enable the User Group Policy loopback processing mode setting in replace mode.
C. Create a new GPO and link it to the Sales OU to enable the User Group Policy loopback processing mode setting in merge mode.
D. Create a new GPO and link it to the Sales OU to enable the User Group Policy loopback processing mode setting in replace mode.

6.单项选择题

You are the network administrator for your company. The network consists of a single Active  
Directory domain that contains four domain controllers. All servers run Windows Server 2003. All user  accounts are located in an organizational unit (OU) named CompanyUsers. A written company policyrequires all users to use strong passwords. User passwords must contain a mixture of letters, numbers, or  special characters. Passwords must be at least 10 characters long. Passwords must be changed at least  every 60 days, and the new password cannot be the same as the old one. To enforce this requirement,  you create a Group Policy object (GPO) named Password Policies and link the GPO to the  CompanyUsers OU. The settings in the Password Policy section of the Password Policies GPO are  shown in the exhibit. (Click the Exhibit button.) You discover that users are creating simple passwords that  do not meet the complexity requirements. You need to ensure that the company password requirements  are enforced. 
What should you do?()

A. Link the Password Policies GPO to the Domain Controllers OU. Make it the first GPO in the list.
B. Configure the properties of the Password Policies GPO so that it cannot be overridden.
C. Delete the Password Policies GPO. Edit the Default Domain Policy GPO to include the settings from the Password Policy section of the Password Policies GPO.
D. Delete the Password Policies GPO. Edit the Default Domain Controllers Policy GPO to include the settings from the Password Policy section of the Password Policies GPO.

7.单项选择题

You have a single Active Directory directory service domain. You plan to use a server named Server1  to deliver Microsoft updates to all your companys workstations. The workstations are located in an  organizational unit (OU) named Workstations. Server1 is located in an OU named Servers. You need to  ensure that all workstations receive Microsoft updates from Server1 and that the updates are installed at  3:00 AM each day. 
What should you do?()

A. Create a GPO and enable the Configure Automatic Updates and Enable recommended updates via    automatic Updates options. Link the GPO to the Workstations OU.
B. Create a GPO and enable the Configure Automatic Updates and Automatic Updates detection frequency options. Link the GPO to the Workstations OU.
C. Create a GPO and enable the Configure Automatic Updates and Specify intranet Microsoft update service location options. Link the GPO to the domain.
D. Create a GPO enable the Configure Automatic Updates and Specify intranet Microsoft update service location options. Link the GPO to the Servers OU.

8.单项选择题

You have a single Active Directory directory service domain. All users in the IT department are  placed into an organizational unit (OU) named IT Users. A Group Policy object (GPO) is linked to the IT  Users OU. The GPO assigns a software installation package to install the Windows Server 2003  Administration Tools Pack. You select the Install this application at logon option in the software installation  package. A user has been removed from the IT Users OU, but she still has the Windows Server  Administration Tools Pack on her computer. You need to ensure that the Windows Server 2003  Administration Tools Pack is removed from a users computer when the user is moved from the IT Users  OU. 
What should you do?()

A. Modify the software installation package to use the Published deployment method. Clear the Auto-install this application by file extension activation check box. Redeploy the software installation package.
B. Modify the software installation package to clear the Install this application at logon option. Redeploy the software installation package.
C. Modify the software installation package to select the Uninstall this application when it falls out of the scope of management option. Retain the software installation package in the GPO.
D. Modify the software installation package to select the Uninstall this application when it falls out of the scope of management option. Delete the software installation package from the GPO.

9.多项选择题

You are the network administrator for Southridge Video. The network consists of a single Active  Directory domain named southridgevideo.com. The domain contains one domain controller. All servers  run Windows Server 2003. All client computers run Windows XP Professional. The company uses Group  Policy objects (GPOs) to configure user and computer settings. The Active Directory database and the  SYSVOL shared folder are stored on separate hard disks. The hard disk containing the SYSVOL folder  fails. Some Group Policy settings are still applied, but new users do not receive the Group Policy settings. You replace the failed disk. You discover that there are no valid backups of the SYSVOL folder. You have  a list of GUIDs and friendly names for each GPO. On the new disk, you create a new shared folder named  SYSVOL in the same location as the previous SYSVOL folder. You need to configure the network so that the user and computer settings will be applied to all users. 
Which three courses of action should you take?()

A. In the SYSVOL folder, create a folder named southridgevideo.com. In the southridgevideo.com folder, create a folder named Policies.
B. In the SYSVOL folder, create a folder named System State. In the System State folder, create a folder named Policies.
C. In the Policies folder, create a folder for each GPO. Name the folders by using the friendly name of each GPO. In the folder for each GPO, create a folder named MACHINE and a folder named USER.
D. In the Policies folder, create a folder for each GPO. Name the folders by using the GUID of each GPO. In the folder for each GPO, create a folder named MACHINE and a folder named USER.
E. Use Active Directory Users and Computers to open each GPO. Close each GPO without changing any settings.
F. Use Active Directory Users and Computers to open each GPO. Change at least one setting in each GPO before closing it.

最新试题

Your company has a main office in Chicago and a branch office in New York. The company has a singleActive Directory directory service forest with four domains. Two of the domain controllers are described in the following table.  An application has a server component and a client component. When the server component is installed, several schema classes and attributes are added. A user in the ne.sales.contoso.com domain installs the client component on his client computer. You then install the server component. Thirty minutes after you install the server component, the user attempts to run the client component, but receives an error message stating that the schema objects cannot be found. You verify that the objects are present on DC1. The users logon server is DC4. You need to ensure that the user can immediately run the client component. What should you do?()

题型:单项选择题

Your companys Windows Server 2003 environment consists of a single Active Directory directory service forest. The forest has multiple domains and three sites named Site1, Site2, and Site3. Site1 is the main office and has four domain controllers. Two of the domain controllers are global catalog servers. Site2 is a branch office with two domain controllers. Site3 is a branch office with a slow and unreliable WAN link and two domain controllers.  You need to improve user logon performance for users in Site2 and Site3. Which two actions should you perform?()

题型:多项选择题

You are the network administrator for your company. The network consists of a single Active Directory domain with three sites. There is a domain controller at each site. All servers run Windows Server 2003. Each client computer runs either Windows 2000 Professional or Windows XP Professional. The IT staff is organized into four groups. The IT staff works at the three different sites. The computers for the IT staff must be configured by using scripts. The script or scripts must run differently based on which site the IT staff user is logging on to and which of the four groups the IT staff user is a member of. You need toensure that the correct logon script is applied to the IT staff users based on group membership and site location. What should you do?()

题型:单项选择题

Your Windows Server 2003 environment consists of a single Active Directory directory service forest with multiple domains. The forest functional level is set to Windows 2000 Server. Your company has a main office and four branch offices. Each office has two domain controllers. The domain controllers in the main office are global catalog servers.  In the branch offices, searches for some printers in Active Directory are slow. You need to improve the performance of Active Directory printer searches in the four branch offices. What should you do?() 

题型:单项选择题

You are the network administrator for your company. The network consists of a single Active Directory domain. All servers run Windows Server 2003. All client computers run either Windows XP Professional or Windows 2000 Professional. All client computer accounts are located in an organizational unit (OU) named Workstation. A written company policy states that the Windows 2000 Professional computers must not use offline folders. You create a Group Policy object (GPO) to enforce this requirement. The settings in the GPO exist for both Windows 2000 Professional computers and Windows XP Professional computers. You need to configure the GPO to apply only to Windows 2000 Professional computers. What are two possible ways to achieve this goal?()

题型:多项选择题

Your company has a single Active Directory directory service forest with a forest root domain and a child domain. The child domain is set to the default domain functional level. You install a second domain controller in the child domain by promoting a server named SVR1. You need to rename SVR1 to DC2, and you must ensure that there will be no interruption in the ability of client computers to authenticate to DC2, except during reboot. What should you do?() 

题型:单项选择题

You are the network administrator for your company. Your network consists of a single Active Directory domain. The functional level of the domain is Windows Server 2003. You add eight servers for a new application. You create an organizational unit (OU) named Application to hold the servers and other resources for the application. Users and groups in the domain will need varied permissions on the application servers. The members of a global group named Server Access Team need to be able to grant access to the servers. The Server Access Team group does not need to be able to perform any other tasks on the servers. You need to allow the Server Access Team group to grant permissions for the application servers without granting the Server Access Team group unnecessary permissions. What should you do?()

题型:单项选择题

You have a single Active Directory directory service domain. All users are located in an organizational unit (OU) named ContosoUsers. All client computer accounts are located in an OU named ContosoComputers. You need to deploy a new application to all users. The application shortcut must be available the next time the users log on.What are two possible ways to achieve this goal?()

题型:多项选择题

You have a single Active Directory directory service forest with two domains named contoso.com and corp.contoso.com. You need to grant a user in the contoso.com domain the permission to create Group Policy objects (GPOs) in the corp.contoso.com domain. What should you do?()

题型:单项选择题

You have a single Active Directory directory service domain. You have an application that adds Active Directory Schema attributes during installation. The attributes replicate as part of global catalog replication. Your user account is a member of the Domain Admins, Schema Admins, and Enterprise Admins global groups. You test the application and decide not to deploy it to production.  You need to ensure that the attributes that are added by the application are no longer available in Active Directory. Using the Active Directory Schema snap-in,what should you do?()

题型:单项选择题