Your company hires 10 new employees. You want the new employees to connect to the main office through a VPN connection. You create new user accounts and grant the new employees the Allow Read and Allow Execute permissions to shared resources in the main o

题目

Your company hires 10 new employees. You want the new employees to connect to the main office through a VPN connection. You create new user accounts and grant the new employees the Allow Read and Allow Execute permissions to shared resources in the main office. The new employees are unable to access shared resources in the main office. You need to ensure that users are able to establish a VPN connection to the main office What should you do()

  • A、Grant the new employees the Allow Full control permission.
  • B、Grant the new employees the Allow Access Dial-in permission.
  • C、Add the new employees to the Remote Desktop Users security group.
  • D、Add the new employees to the Windows Authorization Access security group.
如果没有搜索结果或未解决您的问题,请直接 联系老师 获取答案。
相似问题和答案

第1题:

Your company has a server that runs Windows Server 2008 R2.You have a new application that locates remote resources by name. The new application requires IPv6.You need to ensure that the application can locate remote resources by using IPv6.What should you do?()

  • A、Create a new Pointer (PTR) DNS record.
  • B、Create a new Quad-A (AAAA) DNS record.
  • C、Create a new Signature (SIG) DNS record.
  • D、Create a new Route Through (RT) DNS record.

正确答案:B

第2题:

You are the network administrator for your company. The network consists of a single Active Directory domain. All servers run Windows Server 2003. All company data is stored in shared folders on network file servers. The data for each department is stored in a departmental shared folder. Users in each department are members of the departmental global group. Each departmental global group is assigned the Allow - Full Control permission for the corresponding departmental shared folder. Company requirements state that all access to shared folders must be configured by using global groups. A user named Richard works in the sales department. Richard needs to be able to modify files in the Marketing shared folder. You need to ensure that Richard has the minimum permissions for the Marketing shared folder that he needs to do his job. You need to achieve this goal while meeting company requirements and without granting unnecessary permissions. What should you do? ()

  • A、Add Richard's user account to the Marketing global group.
  • B、Assign the Sales global group the Allow - Change permission for the Marketing shared folder.
  • C、Create a new global group. Add Richard's user account to the group. Assign the new global group the Allow - Change permission for the Marketing shared folder.
  • D、Assign Richard's user account the Allow - Change permission for the Marketing shared folder.

正确答案:C

第3题:

You are the administrator of a Windows 2000 Professional computer that is shared by several users in the Sales department. User accounts have been created for current users. Current users can log on to the computers. To accommodate new users, you add two new user accounts named User7 and User8 to computer5. When User7 attempts to log on o the computer, she receives the following error message: "Windows cannot copy file C:\Documents and Settings\Default User\ to location C:\Documents and Settings\User7. Contact your network administrator. Detail - Access is denied." When User8 attempts to log on to the computer, he receives the same type of error message.

You want to allow the two new users, as well as other users in the Sales department, to be able to log on to the computer.

Which two methods can you use to accomplish your goal? (Choose two.)

A.Add the User7 and User8 user accounts to the DACL for the Profiles shared folder on the network server.

B.Add the User7 and User8 user accounts to the DACL for the C:\Documents and Settings\Default User folder.

C.Add the Everyone group to the DACL for the C:\Documents and Settings\Default User folder.

D.Add a Group Policy object (GPO) for the Sales OU that redirects user profiles to a shared folder.

E.Log on by using the local Administrator account and create new folders for User7 and User8 in the C:\Documents and Settings folder.

F.Select the allow inheritable permissions from parent to propagate to this object option on the C:\Documents and Settings\Default User folder, and reset the permissions on all child objects.

G.Move and retain permissions and compressions.


正确答案:CF
C,F 解析:Explanation: The problem in this scenario is related to permissions to the C:\Documents and Settings\Default User folder. To solve this problem you should grant the Everyone group permission on the C:\Documents and Settings\Default User folder by adding the group to the DACL (Discretionary Access Control List) of this folder. You should also specify that the permissions to the C:\Documents and Settings\Default User folder must

Incorrect answers:
A: The error message indicates that there is a permission problem on the C:\Documents and Settings\Default User folder, not with permission on Profiles shared folder.

B: Granting the Everyone group permission to the C:\Documents and Settings\Default User folder rather than just User7 and User8 will reduce administrative effort and would not have to be repeated for each new user that is added to the domain.

D: The error message indicates that there is a permission problem on the C:\Documents and Settings\Default User folder. It does not indicate a Group Policy object problem.

E: Granting the Everyone group permission to the C:\Documents and Settings\Default User folder rather than just User7 and User8 will reduce administrative effort and would not have to be repeated for each new user that is added to the domain.

G: This is a very vague suggestion, as it does not indicate what permissions should be moved and what permissions must be retained. Furthermore, file compression is an invisible process in Windows 2000. The operating system takes care of uncompressing the compressed files when they need to be read. Therefore file compression is not the cause of the problem in this scenario.

第4题:

You are the network administrator for Testking.com. The network consists of a single Active Directory domain named testking.com. The sales department is hiring employees. An OU named TestKingSales is created to hold objects for the new sales department users. Each sales department user has a portable computer. Each portable computer runs Windows XP Professional. The sales department users are responsible for joining their portable computers to the domain. You need to ensure that the computer accounts for the Sales department user's portable computers are created in the TestKingSales OU. You need to achieve this goal without granting any unnecessary permissions. What should you do?()

  • A、Assign the sales department users the Allow - Read permissions for the Computer container.
  • B、Configure the sales department users' user accounts to be trusted for delegation
  • C、Prestage the computer accounts in the TestKingSales OU for the sales department users' portable computers.
  • D、Assign the sales depertment users the Allow - Create all Child Objects permission for the TestKingSales OU.

正确答案:C

第5题:

Your network contains an Active Directory forest.   You set the Windows PowerShell execution policy to allow unsigned scripts on a domain   controller in the network. You create a Windows PowerShell script named new-users.ps1 that  contains the following lines:     new-aduser user1  new-aduser user2  new-aduser user3  new-aduser user4  new-aduser user5     On the domain controller, you double-click the script and the script runs. You discover that the  script fails to create the user accounts.     You need to ensure that the script creates the user accounts.     Which cmdlet should you add to the script()

  • A、Import-Module
  • B、Register-ObjectEvent
  • C、Set-ADDomain
  • D、Set-ADUser

正确答案:A

第6题:

You work as the enterprise exchange administrator at Company.com.The Company.com network consists of a single Active Directory domain named Company.com.Company.com has an Exchange Server 2010 organization.Due to company growth Company.com, has acquired an accepted domain named courseware.com.The employees of both domains are configured with internal and external Out Of Office messages.You have received instructions to make sure that the internal Out Of Office messages are sent to senders from the courseware.com. What should you do?()

  • A、You should create and configure a new accepted domain.
  • B、You should create and configure a new remote domain.
  • C、You should create and configure a new Receive connector.
  • D、You should create and configure a new Send connector.

正确答案:B

第7题:

You are a Windows Server 2008 systems administrator responsible for configuring the Streaming MediaServices server role. Your organization would like to make numerous human resources training videosavailable for access by its employees. Employees should be able to pause and fast-forward content asneeded. You also want to ensure that users can access the content only while they are connected to your company's LAN. Which actions should you take?()

  • A、Create a new broadcast publishing point.
  • B、Create a new on-demand publishing point.
  • C、Enable WMS IP Address Authorization for the publishing point.
  • D、Enable WMS Negotiate Authentication for the publishing point.

正确答案:B,C

第8题:

You are the administrator of Company.com's Windows 2000 Network. The routed TCP/IP network that you administer consists of 10 Windows 2000 Server computers and 75 Windows 2000 Professional computers. All computers are members of a single Windows 2000 domain named Company.com. TCP/IP is the only network protocol used at Company's office. You have recently installed 10 new Windows 2000 Professional computers and you want to enable the new computers to use host names to connect to shared resources on the network. You configure a TCP/IP address and a gateway address on each new computer. You want to complete the configuration to allow the computers to communicate on the network.  What should you do?()

  • A、Configure a DNS suffix.
  • B、Configure a subnet mask.
  • C、Configure an LMHOSTS file.
  • D、Configure an Interface metric.
  • E、Configure at least one DNS address.

正确答案:B,E

第9题:

Your network consists of a single Active Directory domain. The network is located on the 172.16.0.0/23  subnet.   The company hires temporary employees. You provide user accounts and computers to the temporaryem ployees. The temporary employees receive computers that are outside the Active Directory domain.   The temporary employees use their computers to connect to the network by using wired connections andwireless connections. The company’s security policy specifies that the computers connected to the network must have the latest updates for the operating system.   You need to plan the network’s security so that it complies with the company 's security policy. What should you include in your plan?()

  • A、Implement a Network Access Protection (NAP) strategy for the 172.16.0.0/23 subnet.
  • B、Create an extranet domain within the same forest. Migrate the temporary employees user accounts to the extranet domain. Install the necessary domain resources on the 172.16.0.0/23 subnet.
  • C、Move the temporary employees user accounts to a new organizational unit (OU). Create a new Group Policy object (GPO) that uses an intranet Microsoft Update server. Link the new GPO tothe new OU.
  • D、Create a new subnet in a perimeter network. Relocate the wireless access point to the perimeter network. Require authentication through a VPN server before allowing access to the internal resources.

正确答案:A

第10题:

You are the network administrator for your company. Your network consists of a single Active   Directory domain. Three security groups named Accountants, Processors, and Management are located in an organizational unit (OU) named Accounting. All of the user accounts that belong to these three  groups are also in the Accounting OU. You create a Group Policy object (GPO) and link it to the  Accounting OU. You configure the GPO to disable the display options under the User Configuration  section of the GPO. You need to achieve the following goals: You need to ensure that the GPO applies to  all user accounts that are members of the Processors group. You need to prevent the GPO fromapplying  to any user account that is a member of the Accountants group. You need to prevent the GPO from  applying to any user account that is a member of the Management group, unless the user account is also  a member of the Processors group. What should you do?()

  • A、 Modify the discretionary access control list (DACL) settings of the GPO to assign the Accountants and Management security groups the Deny - Read and the Deny - Apply Group Policy permissions. Modify the DACL of the GPO to assign the users who are in both the Accountants and Management security groups the Allow - Read and the Allow - Apply Group Policy permissions.
  • B、 Modify the discretionary access control list (DACL) settings of the GPO to assign the Accountants and Management security groups the Deny - Read and the Deny - Apply Group Policy permissions. Create a new security group named Mixed that contains all the user accounts from the Processors group and the specific user accounts from the Management group to which you want the GPO to apply. Modify the DACL of the GPO to assign the Mixed security group the Allow - Read and the Allow - Apply Group Policy permissions.
  • C、 Modify the discretionary access control list (DACL) settings of the GPO to assign the Accountants security group the Deny - Read and the Deny - Apply Group Policy permissions. Modify the DACL settings of the GPO to remove the Authenticated Users special group. Modify the DACL settings of the GPO to add the Processors group and assign the Allow - Read and the Allow - Apply Group Policy permissions.
  • D、 Modify the discretionary access control list (DACL) settings of the GPO to assign the Accountants security group the Deny - Read and the Allow - Apply Group Policy permissions. Modify the DACL settings of the GPO to assign the Management security group the Deny - Read and the Deny - Apply Group Policy permissions.

正确答案:C

更多相关问题