You need to install a new writable domain controller named DC3 in a remote site
Your network contains an Active Directory domainnamed contoso.com.
Contoso.com contains a writable domain controllernamed DC1and a read-only domain controller
(RODC)named DC2.
All domain controllersrun Windows Server 2008 R2.
You need to install a new writable domain controller named DC3 in a remote site.
The solution must minimize the amount of replication traffic that occurs during the installation of
Active Directory Domain Services (AD DS) on DC3.
What should you do first?
You need to reclaim the hard disk space used by the global catalog on DC5
Your network contains an Active Directory forest.
The forest contains 10 domains.
All domain controllersare configured as global catalog servers.
You remove the global catalog role froma domain controller named DC5.
You need to reclaim the hard disk space used by the global catalog on DC5.
What should you do?
Which tool should you use?
A corporate network includes an Active Directory-integrated zone.
All DNS serversthat host the zoneare domain controllers.
You add multiple DNS records to the zone.
You need to ensure that the new records are available on all DNS servers as soon as possible.
Which tool should you use?
Which tool should you use?
You have a DNS zonethat is storedin a custom application partition.
You need to add a domain controller to the replication scope of the custom application partition.
Which tool should you use?
You need to ensure that all of the client computers automatically receive certificates based on Template1
Your network contains a servernamed Server1that runs Windows Server 2008 R2 Standard.
Server1has the Active Directory Certificate Services (AD CS) role installed.
You configure a certificate templatenamed Template1for autoenrollment.
You discover that certificates are not being issued to any client computers.
The event logs onthe client computers do not contain any autoenrollment errors.
You need to ensure that all of the client computers automatically receive certificates based on
Template1.
What should you do?
Which tool should you use?
Your network contains a serverthat has the Active Directory Lightweight Directory Services (ADLDS) role
installed.
You need to perform an automated installation of an AD LDS instance.
Which tool should you use?
You need to ensure that users in contoso.com can accessresources in nwtraders.com and resources on the Interne
Your networkcontains an Active Directory domainnamed contoso.com.
A partner companyhas an Active Directory domainnamed nwtraders.com.
The networks for contoso.com and nwtraders.com connect to each other by using a WAN link.
You need to ensure that users in contoso.com can accessresources in nwtraders.com and resources
on the Internet.
What should you do first?
You need to ensure that users in the human resources department can search for employees by using the employee
Your network contains an Active Directory forest.
The forest contains multiple domains.
You need to ensure that users in the human resources department can search for employees by using
the employeeNumber attribute.
What should you do?
You need to ensure that the encryption keys for e-mail certificates can be recovered from the CA database
Your network contains a single Active Directory domain.
The domain contains an enterprise certification authority (CA).
You need to ensure that the encryption keys for e-mail certificates can be recovered from the CA
database.
You modify the e-mail certificate template to support key archival.
What should you do next?
You need to ensure that the DNS records are deleted automatically from the zone
Your network contains an Active Directory-integrated DNS zonenamed contoso.com.
You discover that the zone includes DNS records for computers that were removed from the network.
You need to ensure that the DNS records are deleted automatically from the zone.
What should you do?