You are the administrator of an Active Directory domain. All

题目
多选题
You are the administrator of an Active Directory domain. All servers run Windows Server 2003.  You configure a server named Server3 as the DNS server for the domain.The company recently started using a new ISP. Since the change to the new ISP occurred, users report that they cannot access Internet Web sites by using their fully qualified domain names (FQDNs).You manually configure a test computer to use the DNS server address of the new ISP. The test computer can successfully access Internet Web sites by using their FQDNs.You need to ensure that network users can access Internet Web sites by using their FQDNs, while ensuring that user access to internal resources is not disrupted.   What are two possible ways to achieve this goal?()
A

Create a root zone on Server3.

B

Configure Server3 to use the default root hints.

C

Configure a forwarder on Server3 to the new ISP’s DNS server.

D

Configure all computers on your network to use the new ISP’s DNS server.

如果没有搜索结果或未解决您的问题,请直接 联系老师 获取答案。
相似问题和答案

第1题:

Your network contains an internal network and a perimeter network. The internal network contains an Active Directory forest. The forest contains a single domain.  You plan to deploy 10 Edge Transport servers on the perimeter network.  You need to recommend a solution for the Edge Transport server deployment. The solution must meet the following requirements: .Allow administrators to apply a single security policy to all Edge Transport servers .Reduce the administrative overhead that is required to manage servers .Minimize the attack surface of the internal network What should you recommend?()

  • A、Implement Network Policy and Access Services (NPAS).
  • B、Implement Active Directory Federation Services (AD FS).
  • C、Create a new Active Directory domain in the internal forest, and then join all Edge Transport servers to the new domain.
  • D、Create an Active Directory forest in the perimeter network, and then join all Edge Transport servers to the new domain.

正确答案:D

第2题:

You network consists of a single Active Directory domain. All domain controllers run Windows Server  2008 R2.   You need to reset the Directory Services Restore Mode (DSRM) password on a domain controller.   What tool should you use()

  • A、dsmod
  • B、ntdsutil
  • C、Local Users and Groups snap-in
  • D、Active Directory Users and Computers snap-in

正确答案:B

第3题:

Your network consists of a single Active Directory domain. All domain controllers run Windows Server 2003 Service Pack 2 (SP2). You have an organizational unit (OU) that contains 1,000 computer accounts. You need to move the computer accounts to a new OU. Which tool should you use? ()

  • A、Active Directory Domains and Trusts
  • B、Active Directory Users and Computers
  • C、Csvde.exe
  • D、Dsmod.exe

正确答案:B

第4题:

As an administrator at Certkiller.com, you have installed an Active Directory forest that has a single domain. You have installed an Active Directory Federation services (AD FS) on the domain member server.  What should you do to configure AD FS to make sure that AD FS token contains information from the active directory domain()

  • A、Add a new account store and configure it.
  • B、Add a new resource partner and configure it
  • C、Add a new resource store and configure it
  • D、Add a new administrator account on AD FS and configure it
  • E、None of the above

正确答案:A

第5题:

You network consists of a single Active Directory domain. All domain controllers run Windows Server 2008. You need to reset the Directory Services Recovery Mode (DSRM) password on a domain controller. What tool should you use()

  • A、dsmod
  • B、ntdsutil
  • C、Local Users and Groups snap-in
  • D、Active Directory Users and Computers snap-in

正确答案:B

第6题:

You are designing the DNS topology to meet the business and technical requirements.   Which DNS structure should you use?()

  • A、 one primary zone
  • B、 two primary zones
  • C、 one Active Directory-integrated zone that has the replication scope set to all DNS servers in the forest.
  • D、 two Active Directory-integrated zones that have the replication scopes set to all DNS servers in the forest.
  • E、 one Active Directory-integrated zone that has the replication scope set to all domain controllers in the domain.
  • F、 two Active Directory-integrated zones that have the replication scopes set to all domain controllers in the domain.

正确答案:D

第7题:

You have a single Active Directory directory service domain. All servers run Windows Server 2003. You need to specify the list of applications that users are permitted to run. You create a new Group Policy object (GPO) and link it to the domain.  What should you do next?()

  • A、 Configure Software Restriction Policies Group Policy settings.
  • B、 Configure the Enable user control over installs Group Policy setting.
  • C、 Assign all approved applications.
  • D、 Publish all approved applications.

正确答案:A

第8题:

Your network consists of a single Active Directory domain. The functional level of the domain is Windows Server 2008 R2. All servers run Windows Server 2008 R2.   A corporate security policy requires complex passwords for user accounts that have administrator  privileges. You need to design a strategy that meets the following requirements: èEnsures that administrators use complex passwords   èMinimizes the number of servers required to support the solution What should you include in your design?()

  • A、Implement Network Access Protection (NAP).
  • B、Implement Active Directory Rights Management Services (AD RMS).
  • C、Create a new Password Settings Object (PSO) for administrator accounts.
  • D、Create a new child domain in the forest. Move all non-administrator accounts to the new domain.Configure a complex password policy in the root domain.

正确答案:C

第9题:

Certkiller .com has a network that consists of a single Active Directory domain. A technician has accidently deleted an Organizational unit (OU) on the domain controller. As an administrator of Certkiller .com, you are in process of restoring the OU. You need to execute a non-authoritative restore before an authoritative restore of the OU. Which backup should you use to perform non-authoritative restore of Active Directory Domain Services (AD DS) without disturbing other data stored on domain controller()

  • A、Critical volume backup
  • B、Backup of all the volumes
  • C、Backup of the volume that hosts Operating system
  • D、Backup of AD DS folders
  • E、all of the above

正确答案:A

第10题:

Your network consists of a single Active Directory domain. All servers run Windows Server 2003Service Pack 2 (SP2). All client computers run Windows XP Professional Service Pack 3 (SP3).You need to ensure that locked out user accounts remain locked out until an administrator unlocks theaccounts.What should you do? ()

  • A、In the Default Domain Policy, set the Account lockout duration to 0.
  • B、In the Default Domain Policy, set the Account lockout duration to 99999.
  • C、From Active Directory Users and Computers, select the Account is trusted for delegation option for all user accounts.
  • D、From Active Directory Users and Computers, select the Account is sensitive and cannot be delegated option for all user accounts.

正确答案:A

更多相关问题