Your network contains a single Active Directory domain named contoso.com. The functional level of the domain is Windows 2000 mixed. You have a domain controller named DC1 that runs Windows Server 2003 Service Pack 2 (SP2). DC1 hosts a standard primary zone for contoso.com. You need to ensure that only computers in the contoso.com domain can register host records in the contoso.com zone.
What should you do?()
A.Convert contoso.com to a secondary zone.
B.Convert contoso.com to an Active Directory-integrated zone. Set dynamic updates for the zone to Secure only.
C.Convert contoso.com to an Active Directory-integrated zone. Set dynamic updates for the zone to Nonsecure and secure.
D.Change the domain functional level to Windows Server 2003. Set dynamic updates for the zone to Nonsecure and secure.
您可能感兴趣的试卷
你可能感兴趣的试题
You are the network administrator for your company. The network consists of a single Active Directory domain. The domain contains 35 Windows Server 2003 computers; 3,000 Windows XP Professional computers; and 2,000 Windows 2000 Professional computers. Windows Server Update Services (WSUS) is installed on a server named Server1. The necessary Group Policy object (GPO) is configured. You need to confirm whether all computers in the domain have received all approved updates from Server1.
What should you do on Server1?()
A.Install and configure Urlscan.exe.
B.At the command prompt, type gpresult /scope COMPUTER.
C.Open the WSUS console. Run the Status of Computers report.
D.Open the WSUS console. Run the Synchronization Results report.
Your network consists of a single Active Directory domain named Contoso.com. You have a server named Server1 that runs Windows Server 2003 Service Pack 2 (SP2). You have two domain user accounts named Admin1 and User1. Admin1 is a member of the Administrators group on Server1. User1 is a member of the Domain Users group only. You log on to Server1 as User1. You need to run several administrative tools. You must minimize the number of times you are prompted to enter a username and password when starting the tools. You must achieve this goal without logging off from Server1.
What should you do?()
A.Configure the secondary logon service to start by using the Admin1 account.
B.Configure the Start menu shortcut for each administrative tool to run as Admin1.
C.Create a Start menu shortcut for cmd.exe to run as Admin1, and then start the administrative tools from the command prompt.
D.Configure the Start menu shortcut for each administrative tool, and assign the Admin1 account ownership of the shortcuts.
A.Power Users.
B.Administrators.
C.Performance Log Users.
D.Performance Monitor Users.
Your network contains a DNS server that has a reverse lookup zone for all of your network segments. You have a server named Server1 that runs Windows Server 2003 Service Pack 2 (SP2). An IP security policy is assigned to Server1. You verify IPSec traffic and see that the current security associations display only by IP address. You need to view the fully qualified domain names for all security associations.
What should you do?()
A.From the DNS console, add Server1 as a name server.
B.From the DNS console, change dynamic updates to Secure only.
C.From IP Security Monitor on Server1, enable DNS name resolution.
D.From IP Security Monitor on Server1, create a new taskpad view.
Your network consists of a single Active Directory domain named Contoso.com. All servers on the network run Windows Server 2003 Service Pack 2 (SP2). All client computers on the network run Windows XP Professional Service Pack 3 (SP3). All computers run a custom application named App1. App1 requires domain authentication. App1 does not support smart card authentication. Your company implements a new security policy that states that all users must log on to their computers by using a smart card. You need to ensure that all users can use App1 whilemeeting the new security policy.
What should you do?()
A.Configure the Smart Card service to start automatically on all computers by using a Group Policy object (GPO).
B.From the properties of all user accounts, enable the Store password using reversible encryption setting.
C.From the properties of all user accounts, enable the Require smart cards for interactive logon setting.
D.Enable the Require smart cards for interactive logon policy setting on all computers by using a Group Policy object (GPO).
You have a server that runs Windows Server 2003 Service Pack 2 (SP2). The server has Windows Server Update Services (WSUS) 3.0 installed. The server contains a single 30-GB volume named Volume1. Volume1 is 90 percent full. You install a new 136-GB hard disk in the server. You create a new 136-GB volume named Volume2. You need to increase the storage space available to WSUS.
What should you do?()
A.Use wsusutil.exe to copy the updates to Volume2. Manually delete the folder that contains the updates on Volume1.
B.Use ntbackup.exe to backup the updates on Volume1. Restore the updates to Volume2. Manually delete the folder that contains the updates on Volume1.
C.From the Update Services console, configure the server to download Express Installation files.
D.Modify the HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Update Services\Server\Setup\ContentDir registry setting. Restart the Update Services service.
Your network consists of a single Active Directory domain named Contoso.com. All servers run Windows Server 2003 Service Pack 2 (SP2). All client computers run Windows XP Professional Service Pack 3 (SP3). You create an organizational unit (OU) that contains acomputer account named Computer1. A Group Policy object (GPO) is linked to the OU and contains settings to enforce the use of IPSec. You log on to Computer1 by using a user account named User1. You need to verify that the IPSec settings have been applied.
Which command should you run?()
A.Dsquery user -name User1
B.Dsquery computer -name Computer1
C.Gpresult /s Computer1 /scope COMPUTER /v
D.Gpresult /user User1 /scope USER /v
Your network consists of a single Active Directory domain named Contoso.com. The domain contains a member server named Server1. Server1 runs Windows Server 2003 Service Pack 2 (SP2). Server1 has Windows Support Tools and Resource Kit Tools installed. You need to view the Kerberos tickets issued to Server1.
Which tool should you run?()
A.Kerbtray
B.Sc /query kdc
C.Netdiag /test:Kerberos
D.Nltest /sc_query:Contoso.com
You have a server named Server1 that runs Windows Server 2003 Service Pack 2 (SP2). Server1 is configured as a FTP server. You need to view all the FTP packets sent to Server1 for a period of one hour.
What should you do?()
A.From System Monitor, add all counters for the Network object.
B.From Network Monitor, create a new capture and then create a display filter.
C.From the command prompt, run Ftp.exe Cd server1. Review the files in %systemdrive%\intepub\ftproot\.
D.From Internet Information Services (IIS) Manager, enable and configure logging for the FTP site. Open the FTP log.
Your network consists of two subnets named Subnet1 and Subnet2. You have a server named Server1 that runs Windows Sever 2003 Service Pack 2 (SP2). Server1 is located on Subnet1. Users from Subnet1 report poor performance when they connect to Server1. Users from Subnet2 report that they are unable to connect to Server1. You monitor both network segments and discover a large number of NetBIOS broadcasts on both network segments. You need to reduce the number of broadcasts on the network.
What should you deploy?()
A.a DHCP Relay Agent.
B.a WINS server.
C.Connection Point Services (CPS).
D.Simple TCP/IP Services on all computers.
最新试题
你是Fabrikam.Inc公司网络管理员。网络是一单活动目录域环境,域名fabrikam.com。一台Windows server 2003服务器Server1是域中唯一的DNS服务器。Server1上并未运行其他区域。用户报告在fabrikam.com中的计算机连接通信异常缓慢。你要找出DNS客户机和Server1的通信导致了此问题。你该如何操作?()
你是公司网络管理员。你在公司Chicago的办公室工作。你们办公室网络中有40台Windows XP Pro桌面机和1台Windows Server 2003 服务器Server1。Server1通过一条512-Kbps的租用线路连接互联网。公司主办公室在Seattle。在Chicago办公室中的桌面机用户是一种新软件产品的开发人员。你要让这些用户在Server1上的一个共享文件夹中保存每天的工作记录。你要让在Seattle的用户可以同FTP从该文件夹中下载这些记录据。你在Server1安装了IIS并配置了FTP服务站点,以便Seattle的用户可以下载这些数据。 但是你监视发现有来自互联网的连接试探,并注意到有大量的HTTP连接。你要加强Server1的安全,以便不受互联网中恶意用户的影响。Server1也必须连接到互联网中下载升级数据和更新病毒库。你需要再采购一些硬件或软件。你将对Server1如何操作?()
你是公司网络管理员。公司在Seattle(西雅图)和Chicago(芝加哥)都有办公室。网络是一个单活动目录森林环境。所有的服务器运行Windows Server 2003。所有的客户端运行打过补丁的Windows XPProfessional。在Seattle的办公室的Server1上安装了WSUS服务。Server1被配置为在本地存储升级数据包。你要再Chicago的办公室安装一台WSUS服务器Server2。安装操作必须符合以下要求: 在Chicago的客户机必须自动地获得和Seattle的客户机一样的升级包。 在Chicago的客户机必须从Server2上获得升级 你该如何操作?()
你是Adventure Works的DNS管理员。Adventure Works是一家互联网服务提供商(ISP),为许多公司提供Web站点运行服务。每一个Adventure Works的DNS服务器上都为用户们运行着多个DNS区域。几个Adventure Works管理员被允许添加DNS区域。你打算每周制定一个报告,列出在每个DNS服务器上的全部区域。你该如何操作?()
你是公司网络管理员。所有的服务器运行Windows Server 2003。你配置了Server2作为网络地址转换(NAT)服务器。Server2上有一块网卡和一个猫(调制解调器)。Server2通过demand-dial(拨号连接)互联网。用户反应当他们试图连接互联网上的站点时。间歇性的收到如下错误提示信息“Page not find”。在等待几分钟后,又能够连上站点了。这种情况整天都出现。你需要配置Server2让用户始终都能够连接互联网站点。 你该怎么操做?()
你是Coho Winery的网络管理员。网络中包含一个单活动目录域cohowinery .net。所有的域控制器都配置成DNS服务器并为cohowinery .net运行着一个活动目录合并区域。 本地ISP向用户提供互联网连接服务。cohowinery .com中的所有站点都部署在网络周边。cohowinery .com的一个辅助区域部署在内网的一台Windows Server 2003服务器上Server1上。所有的客户端只向Server1提交名称解析。你需要配置DNS解析以确保所有的客户端计算机能够登陆网络,并且访问Web站点浏览互联网。你也要确保cohowincery .net区域尽可能的安全。你将采取哪两个操作步骤?()
你是公司网络管理员。网络中包含一个单活动目录域。域中有35台Windows Server 2003计算机,3000台Windows XP Professional计算机和2000台Windows 2000 Professional计算机。Windows Server Update Service(WSUS)安装在服务器Server1上。配置了必须的组策略对象(GPO)。你需要确认域中的所有计算机都从Server1上接受到了被核准的升级包。你该如何操作?()
你是一活动目录域的管理员。所有的服务器运行Windows Server 2003。你将一台Server3配置为域中的DNS服务器。公司最近使用了新的ISP。自从ISP变更后,用户反应不能使用完全合格域名(FQDN)访问外网站点。 你手动配置了一台计算机,使用新的ISP提供的DNS服务器IP地址进行测试。测试计算机能够使用FQDN访问外网站点。你需要确保网络用户能够使用FQDN访问外网站点,同时用户对内网资源的访问不被中断。有哪两种可行的方法可以实现这目的?()
你是一台Windows Server 2003 服务器Server1的管理员。Server1是位于公司内部网络的FTP服务器。管理员报告说连接到Server1的FTP通信量增加。你需要配置Server1以实现以下目的:识别所有正在和Server1进行FTP传输的计算机的MAC地址。准确查找出已被执行的FTP命令。 确保不会中断Server1上的操作。你该如何操作?()
你是公司网络管理员。网络是一单活动目录域环境。域中有35台Windows server 2003,3000台Windows XP Pro,2200台Windows 2000 Pro。公司的安全策略规定域中所有的计算机必须检查检修,符合以下要求: 检查是否所有的可用安全升级都被安装;检查是否共享目录都可用;在每个硬盘上记录文件系统类型,你需要提供每台计算机的安全评估分析,并核实满足制定的安全策略要求。你该如何操作?()