You need to create a forest trust between adatum.com and litwareinc.com
Your network contains two forestsnamed adatum.comand litwareinc.com.
The functional levelof all the domainsis Windows Server 2003.
The functional levelof both forestsis Windows 2000.
You need to create a forest trust between adatum.com and litwareinc.com.
What should you do first?
You need to ensure that every user in the domain who logs on to a marketing department computer can use the ap
Your network contains an Active Directory forestnamed adatum.com.
All client computersused by the marketing departmentare in an organizational unit(OU) named
Marketing Computers.
All user accountsfor the marketing departmentare in an OUnamed Marketing Users.
You purchase a new application.
You need to ensure that every user in the domain who logs on to a marketing department computer can
use the application.
The application must only be available from the marketing department computers.
What should you do?
What should you install beforeyou create the AD RMS root cluster?
Your network contains an Active Directory forestnamed adatum.com.
You need to create an Active Directory Rights Management Services (AD RMS) licensing-only cluster.
What should you install beforeyou create the AD RMS root cluster?
Which command should you run?
Your network contains an Active Directory domainnamed contoso.com.
The contoso.comdomain contains a domain controllernamed DC1.
You create an Active Directory-integrated GlobalNames zone.
You add an alias(CNAME) resource recordnamed Server1 to the zone.
The target host of the recordis server2.contoso.com.
When you ping Server1, you discover that the name fails to resolve.
You are able to successfully ping server2.contoso.com.
You need to ensure that you can resolve names by using the GlobalNames zone.
Which command should you run?
You need to ensure that the user’s password is stored on RODC1 when he logs on to a branch office site c
Your network contains an Active Directory domainnamed contoso.com.
The network has a branch office sitethat contains a read-only domain controller (RODC)named RODC1.
RODC1runs Windows Server 2008 R2.
A user logs on to a computer in the branch office site.
You discover that the user’s password is not stored on RODC1.
You need to ensure that the user’s password is stored on RODC1 when he logs on to a branch office
site computer.
What should you do?
Which protocol should you allowon Server1?
You deploy an Active Directory Federation Services (AD FS) Federation Service Proxyon a server
named Server1.
You need to configure the Windows Firewall on Server1 to allow external users to authenticate by using
AD FS.
Which protocol should you allowon Server1?
You need to create an enterprise subordinate certification authority (CA) that can issue certificates based on
Your network contains an Active Directory domainnamed contoso.com.
Contoso.com contains a member serverthat runs Windows Server 2008 R2 Standard.
You need to create an enterprise subordinate certification authority (CA) that can issue certificates
based on version 3 certificate templates.
You must achieve this goal by using the minimum amount of administrative effort.
What should you do first?
Which console should you use?
Your network contains a servernamed Server1.
The Active Directory Rights Management Services (AD RMS) server roleis installed on Server1.
An administrator changes the password of the user account that is used by AD RMS.
You need to update AD RMS to use the new password.
Which console should you use?
You need to ensure that the DNS service can update records and resolve DNS queries in the event that a WAN lin
Your company, Contoso, Ltd., has a main officeand a branch office.
The officesare connected by a WAN link.
Contoso has an Active Directory forestthat containsa single domainnamed ad.contoso.com.
The ad.contoso.com domain contains one domain controllernamed DC1that is located in the main office.
DC1is configured as a DNS serverfor thead.contoso.com DNS zone.
This zoneis configuredas a standard primary zone.
You install a new domain controllernamed DC2in the branch office.
You install DNSon DC2.
You need to ensure that the DNS service can update records and resolve DNS queries in the event that
a WAN link fails.
What should you do?
Which snap-in should you use?
Your network contains an enterprise certification authority (CA) that runs Windows Server 2008 R2
Enterprise.
You enable key archival on the CA.
The CAis configuredto use custom certificate templatesfor Encrypted File System (EFS) certificates.
You need to archive the private key for all new EFS certificates.
Which snap-in should you use?