PrepAway - Latest Free Exam Questions & Answers

You need to ensure that you can use the new certificatefor AD FS

Your network contains a servernamed Server1that runs Windows Server 2008 R2.
Server1is configured as an Active Directory Federation Services (AD FS) 2.0 standalone server.
You plan to add a new token-signing certificate to Server1.
You import the certificate to the serveras shown in the exhibit:

When you run the Add Token-Signing Certificate wizard, you discover that the new certificate is
unavailable.
You need to ensure that you can use the new certificatefor AD FS.
What should you do?

PrepAway - Latest Free Exam Questions & Answers

A.
From the properties of the certificate, modify the Certificate Policy OIDs setting.

B.
Import the certificate to the AD FS 2.0 Windows Service personal certificate store.

C.
From the properties of the certificate, modify the Certificate purposes setting.

D.
Import the certificate to the local computer personal certificate store.

Explanation:
Reference:
http://technet.microsoft.com/en-us/library/hh341466.aspx
When you deploy the first federation server in a new AD FS 2.0 installation, you must obtain a token-signing
certificate and install it in thelocal computer personal certificate storeon that federation server.


Leave a Reply