PrepAway - Latest Free Exam Questions & Answers

Which two actions should you perform?

Your network contains an Active Directory domain named contoso.com. The domain does not contain a
certification authority (CA). All servers run Windows Server 2012. All client computers run Windows 8.You
need to add a data recovery agent for the Encrypting File System (EFS) to the domain. Which two actions
should you perform? (Each correct answer presents part of the solution. Choose two.)

PrepAway - Latest Free Exam Questions & Answers

A.
From Windows PowerShell, run Get-Certificate.

B.
From the Default Domain Controllers Policy, select Create Data Recovery Agent.

C.
From the Default Domain Policy, select Add Data Recovery Agent.

D.
From a command prompt, run cipher.exe.

E.
From the Default Domain Policy, select Create Data Recovery Agent.

F.
From the Default Domain Controllers Policy, select Add Data Recovery Agent.

10 Comments on “Which two actions should you perform?

  1. sne says:

    I tested it in my lab.
    When you open the domain policy and go to the Encrypting File System settings, it gives you two options.

    Create a recovery agent
    Add recovery agent.

    When I tried to “create a recovery agent” it said “Windows cannot create a recovery agent. The requested certificate teamplate is not supported by this CA”.
    I guess this is because I have no CA in my lab.

    On the other hand “Add recovery agent” lets you add an existing certificate.

    So I guess “Add recovery agent” is correct.




    0



    0

Leave a Reply