PrepAway - Latest Free Exam Questions & Answers

Does this meet the goal?

An organization uses an Active Directory Rights Management Services (AD RMS) cluster named RMS1 to protect content for a project. You uninstall AD RMS when
the project is complete.
You need to ensure that the protected content is still available after AD RMS is uninstalled.
Solution: You enable the decommissioning service by using the AD RMS management console. You grant all users the Read & Execute permission to
the decommission pipeline.
Does this meet the goal?

PrepAway - Latest Free Exam Questions & Answers

A.
Yes

B.
No

Explanation:
The proper procedure is:
Inform your users that you are decommissioning the AD RMS installation and advise them to connect to the cluster to save their content without AD RMS protection.
Alternatively, you could delegate a trusted person to decrypt all rights- protected content by temporarily adding that person to the AD RMS super users group.
After you believe that all of the content is unprotected and saved, you should export the server licensor certificate, and then uninstall AD RMS from the server.

6 Comments on “Does this meet the goal?

  1. no says:

    This should be, B: NO
    To have AD RMS content available after uninstall, you must first tell your users to save their AD RMS content without protection, then DECOMMISSION the AD RMS Cluster, not simply uninstall.




    0



    1
  2. Zola says:

    To decommission AD RMS
    Log on to the server on which you want to decommission AD RMS.
    Modify the access control list (ACL) on the decommissioning.asmx file by granting the Everyone group Read & Execute permissions. The default location for this file is %systemdrive%\inetpub\wwwroot\_wmcs\decommission.
    Open the Active Directory Rights Management Services console and add the AD RMS cluster.
    Expand the AD RMS cluster, expand Security Policies , and then select Decommissioning .
    Select the Enable Decommissioning option in the Actions pane.
    Click Decommission .
    When prompted, click Yes to confirm that you want to permanently decommission the AD RMS installation.
    Repeat steps 1–7 for all AD RMS servers in the cluster.
    Inform your users that you are decommissioning the AD RMS installation and advise them to connect to the cluster to save their content without AD RMS protection. Alternatively, you could delegate a trusted person to decrypt all rights-protected content by temporarily adding that person to the AD RMS super users group.
    After you believe that all of the content is unprotected and saved, you should export the server licensor certificate, and then uninstall AD RMS from the server.




    0



    0
  3. Zola says:

    The other way of decommissioning AD RMS is
    At the Windows PowerShell command prompt, type:
    Set-ItemProperty -Path :\ -Name IsDecommissioned -Value $true -EnableDecommission
    where is the name of the Windows PowerShell drive.
    This is done without the interface. and then after everyone has unprotecting their shit you can uninstall the AD RMS




    0



    0

Leave a Reply