You are the domain administrator for . Active Directory domain. All client computers run Windows XP Professional.A user reports that she attempted to log on six times unsuccessfully. She reports that she logged on successfully yesterday. You discover that the user reset her password three days ago to comply with a new security policy that requires strong passwords.The account policies that are applied in the Domain Security Group Policy object (GPO) as shown in the following table.You need to ensure that the user can log on to the domain.What should you do?()
A. Reset the password for the computer account.
B. Unlock the user account.
C. In the user account properties, select the Password never expires check box for the user account.
D. In the user account properties, select the User must change password on next logon check box for the user account.
第1题:
You are the network administrator for your company. The network consists of a single Active Directory domain. All computers on the network are members of the domain. All servers run Windows Server 2003 and all client computers run Windows XP Professional. You are planning a security update infrastructure. You need to find out which computers are exposed to known vulnerabilities. You need to collect the information on existing vulnerabilities for each computer every night. You want this process to occur automatically. What should you do? ()
第2题:
You network consists of a single Active Directory domain. All domain controllers run Windows Server 2008. You need to reset the Directory Services Recovery Mode (DSRM) password on a domain controller. What tool should you use()
第3题:
Your network consists of a single Active Directory domain. The network contains a Terminal Server that runs Windows Server 2008, and client computers that run Windows Vista. All computers are members of the domain. You deploy an application by using the TS RemoteApp Manager. The Terminal Servers security layer is set to Negotiate. You need to ensure that domain users are not prompted for credentials when they access the application. What should you do?()
第4题:
You are the network administrator for The network consists of a single Active Directory domain named All servers run Windows Server 2003, and all client computers run Windows XP Professional. A user named Lilli receives a new computer named Client223. She successfully logs on to the domain. The next day, she tries to log on again. The domain name appears in the domain dropdown list in the dialog box. However, Lilli cannot log on. You try to log on by using Client223, but you are also unsuccessful. Then you use a local Administrator account to log on. You read the following error message in the system event log. "NETLOGON Event ID 3210: Failed to authenticate with //Server5, a Windows NT domain controller for domain TestKing". You search the computer account for Client223 in Active Directory Users and Computers, but the account does not appear. You need to ensure that Lilli can log on to the domain successfully. What should you do?()
第5题:
Recreate the user account for Lilli and add her to all appropriate security groups.
Run the netdom reset 'Client223' /domain:'testking' command and then restart Client223.
Add Client223 to a workgroup. Then join Client223 to the domain.
Reset the computer account for Server5 in Active Directory Users and Computers.
第6题:
Install and configure IIS on a member server.
Configure a shared folder on a member server.
Create a single workspace for all client computers.
Install and configure Microsoft SQL Se rver 2008 on a member server.
第7题:
netsh
tracert
ntdsutil
nslookup
第8题:
UrlScan Security Tool
Enterprise Scan Tool (EST)
Malicious Removal Tool (MRT)
Microsoft Baseline Security Analyzer (MBSA)
第9题:
On the client computers, open the System Properties dialog box. On the Automatic Updates tab, configure the client computers to update automatically every day.
Create a Group Policy object (GPO) that has the appropriate Automatic Updates settings configured. Apply the GPO to an organizational unit (OU) that includes the client computers.
In Active Directory Users and Computers, modify the settings for the client computer accounts. Configure the Managed By property to specify the WSUS server account.
Create a local group on the WSUS server. Assign the group the Allow - Read and the Allow - Write permissions for the WSUSContent folder on the WSUS server. Add all the users of the client computers to the local group.
第10题:
In the Default Domain Policy, set the Account lockout duration to 0.
In the Default Domain Policy, set the Account lockout duration to 99999.
From Active Directory Users and Computers, select the Account is trusted for delegation option for all user accounts.
From Active Directory Users and Computers, select the Account is sensitive and cannot be delegated option for all user accounts.
第11题:
You network consists of a single Active Directory domain. All domain controllers run Windows Server 2008 R2. You need to reset the Directory Services Restore Mode (DSRM) password on a domain controller. What tool should you use()
第12题:
Your company has a single Active Directory directory service domain. Servers in your environment run Windows Server 2003. Client computers run Windows XP or Windows Vista. You plan to create an internal centrally managed security update infrastructure for client computers. You need to choose a security update management tool that supports all the client computers. Which tool should you choose? ()
第13题:
Your company has an Active Directory Domain Services (AD DS) domain. All servers run Windows Server 2008 R2. All client computers run Windows 7. You use Microsoft Enterprise Desktop Virtualization (MED-V) to support client virtualization requirements. You need to ensure that all MED-V virtual machine (VM) images can be centrally stored and are available to all client computers. What should you do?()
第14题:
Your network consists of a single Active Directory domain. All servers run Windows Server 2003Service Pack 2 (SP2). All client computers run Windows XP Professional Service Pack 3 (SP3).You need to ensure that locked out user accounts remain locked out until an administrator unlocks theaccounts.What should you do? ()
第15题:
Require authentication by a domain controller to unlock the client computer.
Cache zero interactive logons.
Cache 50 interactive logons.
Grant the Log on locally user right to the Users group.
第16题:
In Active Directory, modify the Default Domain Policy. Disable the Do not check for user ownership of Roaming Profile Folders setting.
In Active Directory, modify the Default Domain Policy. Enable the Delete cached copies of roaming profiles setting.
Log on to all client computers and delete all user profiles from the local hard disks.
Log on to all client computers and configure the Number of previous logons to cache setting to 0.
第17题:
ldifde
csvde
ntdsutil with the authoritative restore option
dsadd user
第18题:
dsmod
ntdsutil
Local Users and Groups snap-in
Active Directory Users and Computers snap-in
第19题:
Microsoft Assessment and Planning (MAP) Toolkit
Microsoft Baseline Security Analyzer
Microsoft System Center Operations Manager
Windows Server Update Services (WSUS)
第20题:
Restart the IPsec Policy Agent service on Server1
Assign the Client (Respond Only) IPsec policy to Server1
Assign the Server (Request Security) IPsec Policy to Server1
Assign the Client (Respond Only) IPsec policy to all client computers