You need to ensure that when the Montreal Site domain controller is offline…
A corporate network includes a single Active Directory Domain Services (AD DS) domain. The AD DS infrastructure is shown in the following graphic.
When the Montreal site domain controller is offline, authentication requests for Montreal branch office users are sent to the Toronto site domain controller.
You need to ensure that when the Montreal Site domain controller is offline, authentication requests for Montreal branch of?ce users are sent to the Quebec City site domain controller.
What should you do?
You need to ensure that users in the contoso
You need to ensure that a search of the entire directory for users in the marketing department returns all of
Your network contains an Active Directory forest.
All users have a value set for the Department attribute.
From Active Directory Users and computers, you search a domain for all users who have a Department attribute value of Marketing.
The search returns 50 users.
From Active Directory Users and Computers, you search the entire directory for all users who have a Department attribute value of Marketing.
The search does not return any users.
You need to ensure that a search of the entire directory for users in the marketing department returns all of the users who have the Marketing Department attribute.
What should you do?
You need to ensure that users from the nwtraders
Your network contains two Active Directory forests named contoso.com and nwtraders.com. Active Directory Rights Management Services (AD RMS) is deployed in each forest.
You need to ensure that users from the nwtraders.com forest can access AD RMS protected content in the contoso.com forest.
What should you do?
You need to deploy a read-only domain controller (RODC) that runs Windows Server 2008 R2
Your network contains an Active Directory forest named adatum.com. All domain controllers currently run Windows Server 2003 Service Pack 2 (SP2). The functional level of the forest and the domain is Windows Server 2003.
You need to deploy a read-only domain controller (RODC) that runs Windows Server 2008 R2.
What should you do first?
You have a custom certi?cate template named Sales_Temp
Your network contains an Active Directory domain named adatum.com. All servers run Windows Server 2008 R2 Enterprise. All client computers run Windows 7 Professional.
The network contains an enterprise certification authority (CA).
You have a custom certi?cate template named Sales_Temp. Sales_Temp is published to the CA.
You need to ensure that all of the members of a group named Sales can enroll for certi?cates that use Sales_Temp.
Which snap-in should you use?
The network contains an enterprise certi?cation authority (CA)
Your network contains an Active Directory domain named adatum.com. All servers run Windows Server 2008 R2 Enterprise. All client computers run Windows 7 Professional.
The network contains an enterprise certi?cation authority (CA).
You enable key archival on the CA. The CA is con?gured to use custom certi?cate templates for Encrypted File System (EFS) certi?cates.
All users plan to encrypt files by using EFS.
You need to ensure that the private keys for all new EFS certi?cates are archived.
Which snap-in should you use?
You discover the following event in the Event log of domain controllers: The request for a new account-identi?
Your network contains an Active Directory forest. The forest contains one domain named contoso.com.
You discover the following event in the Event log of domain controllers: The request for a new account-identi?er pool failed. The operation will be retried until the request succeeds. The error is ” %1 “”
You need to ensure that the domain controllers can acquire new account-identi?er pools successfully.
What should you do?
DC1 and DC2 are con?gured as DNS servers and host the Active Directory-integrated zone for contoso
Your network contains an Active Directory domain named contoso.com. Contoso.com contains two domain controllers named DC1 and DC2. DC1 and DC2 are con?gured as DNS servers and host the Active Directory-integrated zone for contoso.com.
From DNS Manager on DC1, you enable scavenging for the contoso.com zone.
You discover stale DNS records in the zone.
You need to ensure that the stale DNS records are deleted from contoso.com.
What should you do?
Which tool should you use?
A corporate network includes an Active Directory-integrated zone. AIl DNS servers that host the zone are domain controllers.
You add multiple DNS records to the zone.
You need to ensure that the new records are available on all DNS servers as soon as possible.
Which tool should you use?