You need to ensure that a user named Admin1 can install updates on RODC1
Your company has a main office and a branch office. The branch office contains a read-only domain
controller named RODC1. You need to ensure that a user named Admin1 can install updates on
RODC1. The solution must prevent Admin1 from logging on to other domain controllers. What
should you do?
Which utility should you use?
Your company has a main office and 40 branch offices. Each branch office is configured as a separate
Active Directory site that has a dedicated read-only domain controller (RODC). An RODC server is
stolen from one of the branch offices. You need to identify the user accounts that were cached on
the stolen RODC server. Which utility should you use?
You need to ensure that all users can access AD RMS protected content by using Windows Mobile 6 devices
Active Directory Rights Management Services (AD RMS) is deployed on your network. Users who
have Windows Mobile 6 devices report that they cannot access documents that are protected by AD
RMS. You need to ensure that all users can access AD RMS protected content by using Windows
Mobile 6 devices. What should you do?
You need to configure AD RMS so that users are able to protect their documents
Your company has an Active Directory Rights Management Services (AD RMS) server. Users have
Windows Vista computers. An Active Directory domain is configured at the Windows Server 2003
functional level. You need to configure AD RMS so that users are able to protect their documents.
What should you do?
You need to replicate the AD LDS instance on a test computer that is located on the network
Your company has a server that runs Windows Server 2008 R2. The server runs an instance of Active
Directory Lightweight Directory Services (AD LDS). You need to replicate the AD LDS instance on a
test computer that is located on the network. What should you do?
Which tool should you use?
Your network contains a server named Server1 that runs Windows Server 2008 R2. You create an
Active Directory Lightweight Directory Services (AD LDS) instance on Server1. You need to create an
additional AD LDS application directory partition in the existing instance. Which tool should you use?
which certificate store should you import the certificates?
You deploy a new Active Directory Federation Services (AD FS) federation server. You request new
certificates for the AD FS federation server. You need to ensure that the AD FS federation server can
use the new certificates. To which certificate store should you import the certificates?
Which format should you use to export the certificate?
Your network contains two servers named Server1 and Server2 that run Windows Server 2008 R2.
Server1 has the Active Directory Federation Services (AD FS) Federation Service role service installed.
You plan to deploy AD FS 2.0 on Server2. You need to export the token-signing certificate from
Server1, and then import the certificate to Server2. Which format should you use to export the
certificate?
Which two actions should you perform?
Your network contains a single Active Directory domain. The domain contains five read-only domain
controllers (RODCs) and five writable domain controllers. All servers run Windows Server 2008. You
plan to install a new RODC that runs Windows Server 2008 R2. You need to ensure that you can add
the new RODC to the domain. You want to achieve this goal by using the minimum amount of
administrative effort. Which two actions should you perform? (Each correct answer presents part of
the solution. Choose two.)
You need to configure AD FS to ensure that AD FS tokens contain information from the Active Directory domain
Your company has an Active Directory forest that contains a single domain. The domain member
server has an Active Directory Federation Services (AD FS) server role installed. You need to
configure AD FS to ensure that AD FS tokens contain information from the Active Directory domain.
What should you do?