Your network contains an Active Directory forest that contains three domains.
A group named Group1 is configured as a domain local distribution group in the forest root domain.
You plan to grant Group1 read-only access to a shared folder named Share1. Share1 is located in a child
domain.
You need to ensure that the members of Group1 can access Share1.
What should you do first?
A.
Convert Group1 to a global distribution group.
B.
Convert Group1 to a universal security group.
C.
Convert Group1 to a universal distribution group.
D.
Convert Group1 to a domain local security group.
Explanation:
A: Distribution Groups only used for email
B, Universal can be used for any domain or forest
C: Distribution Groups only used for email
D: Permissions can be assigned only within the samedomain as the parent domain local group
Group scope Universal can be assigned permissions in any domain or forest.
http://technet.microsoft.com/en-us/library/cc781446(v=ws.10).aspx http://technet.microsoft.com/en-us/library/
cc755692(v=ws.10).aspx