In Active Directory Sites and Services, configure the NTDS Settings.
In Active Directory Sites and Services, configure the universal group membership caching.
From the Active Directory Schema snap-in, modify the properties of the User class schema object.
From the Active Directory Schema snap-in, modify the properties of the Attibute1 class schema attribute.
第1题:
Your network contains two Active Directory forests. One forest contains two domains named contoso.com and na.contoso.com. The other forest contains a domain named nwtraders.com. A forest trust is configured between the two forests. You have a user named User1 in the na.contoso.com domain. User1 reports that he fails to log on to a computer in the nwtraders.com domain by using the user name NA/User1. Other users from na.contoso.com report that they can log on to the computers in the nwtraders.com domain. You need to ensure that User1 can log on to the computer in the nwtraders.com domain. What should you do()
第2题:
You are a security administrator for your company. The network consists of three Active Directory domains. All Active Directory domains are running at a Windows Server 2003 mode functionality level. Employees in the editorial department of your company need access to resources on file servers that are in each of the Active Directory domains. Each Active Directory domain in the company contains at least one editorial department employee user account. You need to create a single group named Company Editors that contains all editorial department employee user accounts and that has access to the resources on file server computers. What should you do?()
第3题:
Your network contains an Active Directory forest. You add an additional user principal name (UPN) suffix to the forest. You need to modify the UPN suffix of all users. You want to achieve this goal by using the minimum amount of administrative effort. What should you use()
第4题:
Your network contains an Active Directory forest. The forest schema contains a custom attribute for user objects. You need to give the human resources department a file that contains the last logon time and the custom attribute values for each user in the forest. What should you use()
第5题:
Your network contains two Active Directory forests named contoso.com and nwtraders.com. A two-way forest trust exists between contoso.com and nwtraders.com. The forest trust is configured to use selective authentication. Contoso.com contains a server named Server1. Server1 contains a shared folder named Marketing. Nwtraders.com contains a global group named G_Marketing. The Change share permission and the Modify NTFS permissions for the Marketing folder are assignes to the G_Marketing group. Members of G_Marketing report that they cannot accesss the Marketing folder. You need to ensure that the G_Marketing members can accesss the folder from the network. What should you do()
第6题:
From the DNS Manager console, modify the permissions of the contoso.com zone.
From the DNS Manager console, modify the permissions of the nwtraders.com zone.
From the Active Directory Users and Computers console, run the Delegation of Control Wizard.
From the Active Directory Users and Computers console, modify the permissions of the Domain Controllers organiz
第7题:
the DNS suffix search order on DNS1
the DNS suffix search order on the client computers
the root hints servers on DNS1
the security settings of the nwtraders.com zone
第8题:
Modify the NTDS Site Settings object for the site.
Modify the replication settings of the default site link.
Create an Active Directory connection object.
Create an Active Directory application directory partition.
第9题:
the Active Directory Domains and Trusts console
the Active Directory Users and Computers console
the Csvde tool
the Ldifde tool
第10题:
Csvde
Dsmod
Dsrm
Ldifde
第11题:
From Windows Explorer, modify the NTFS permissions of the folder
From Windows Explorer, modify the share permissions of the folder
From Active Directory Users and Computers, modify the computer object for Server1
From Active Directory Users and Computers, modify the group object for G_Marketing
第12题:
Create a global distribution group in the forest root domain and name it Company Editors.
Create a global security group in the forest root domain and name it Company Editors.
Create a universal distribution group in the forest root domain and name it Company Editors.
Create a universal security group in the forest root domain and name it Company Editors.
第13题:
Your network contains an Active Directory forest. The forest contains two domains named contoso.com and eu.contoso.com.You install a Network Policy Server (NPS) named Server1 in the contoso.com domain.You need to ensure that Server1 can read the dial-in properties of the user accounts in the eu.contoso.com domain.What should you do?()
第14题:
Your network contains an Active Directory forest. The forest contains two domains named contoso.com and nwtraders.com.You have a DNS server named DNS1. DNS1 hosts Active Directory-integrated zones for contoso.com and nwtraders.com.You discover that client computers in contoso.com cannot use single-label names to access servers in nwtraders.com.You need to ensure that contoso.com computers can access nwtraders.com servers by using single-label names.What should you modify?()
第15题:
Your network contains an Active Directory domain. The domain contains 1000 user accounts. You have a list that contains the mobile phone number of each user You need to add the mobile number of each user to Active Directory. What should you do()
第16题:
Your network contains two Active Directory forests named contoso.com and adatum.com. Active Directory Rights Management Services (AD RMS) is deployed in contoso.com. An AD RMS trusted user domain (TUD) exists between contoso.com and adatum.com. From the AD RMS logs, you discover that some clients that have IP addresses in the adatum.com forest are authenticating as users from contoso.com. You need to prevent users from impersonating contoso.com users. What should you do()
第17题:
Enable selective authentication over the forest trust.
Create an external one-way trust from na.contoso.com to nwtraders.com.
Instruct User1 to log on to the computer by using his user principal name (UPN).
Instruct User1 to log on to the computer by using the user name nwtraders/User1.
第18题:
Create a file that contains the mobile phone numbers, and then run ldifde.exe
Create a fila that contains the mobile phone numbers, and then run csvde.exe
From Adsiedit, select the CN=Users container, and then mofify the properties of the container.
From Active Directory Users and Computers, select all of the users, and then modify the properties of the users.
第19题:
Configure user certificate autoenrollment for all domain user accounts in the contoso.com domain.
Configure user certificate autoenrollment for all domain user accounts in the child2.contoso.com domain.
Add Server1 to the Cert Publishers group in the contoso.com domain.
Add Server1 to the Cert Publishers group in the child2.contoso.com domain.
第20题:
the Dsquery tool
the Export-CSV cmdlet
the Get-ADUser cmdlet
the Net.exe user command
第21题:
Configure trusted e-mail domains.
Enable lockbox exclusion in AD RMS.
Create a forest trust between adatum.com and contoso.com.
Add a certificate from a third-party trusted certification authority (CA).
第22题:
In the contoso.com domain, add Server1 to the RAS and IAS Servers group.
In the contoso.com domain, add Server1 to the Windows Authorization Access group.
In the eu.contoso.com domain, add Server1 to the RAS and IAS Servers group.
In the eu.contoso.com domain, add Server1 to the Windows Authorization Access group.
第23题:
an incoming external trust
an incoming realm trust
an outgoing external trust
an outgoing realm trust