單項選擇題

Your network consists of a single Active Directory forest. The forest functional level is Windows Server 2008 R2. The forest contains two domains named contoso.com and na.contoso.com.  
Contoso.com contains a user named User1. Na.contoso.com contains an organizational unit (OU) named  Security.  
You need to give User1 administrative rights so that he can manage Group Policies for the Security OU.  
You want to achieve this goal while meeting the following requirements:  
èUser1 must be able to create and configure Group Policies in na.contoso.com.
èUser1 must be able to link Group Policies to the Security OU.  
èUser1 must be granted the least administrative rights necessary to achieve the goal.
What should you do?()

A.Add User1 to the Administrators group for na.contoso.com.
B.Add User1 to the Group Policy Creator Owners group in contoso.com. Modify the permissions on the scurity OU.
C.Run the Delegation of Control Wizard on the Security OU. In the Group Policy Management Console,modify the permissions of the Group Policy Objects container in the na.contoso.com domain.
D.Run the Delegation of Control Wizard on na.contoso.com. In the Group Policy Management Console, modify the permissions of the Group Policy Objects container in the contoso.com domain.

題目列表

你可能感興趣的試題

單項選擇題

Your network consists of a single Active Directory domain. The network includes a branch office named Branch1. Branch1 contains a Read-only Domain Controller (RODC) named Server1.
A global  group named Branch1?admins contains the user accounts for administrators. Administrators manage the client computers and servers in Branch1.  
You need to recommend a solution for delegating control of Server1. Your solution must meet the following requirements:  
èAllow the members of the Branch1-admins group to administer Server1; including, change device drivers and install operating system updates by using Windows Update.
èProvide the Branch1-admins group rights on Server1 only.  
èPrevent Branch1-admins group from modifying Active Directory objects.
What should you recommend?() 

A.Add the Branch1-admins global group to the Server Operators built-in local group.
B.Add the members of the Branch1-admins global group to the Administrators built-in local group of  Server1.
C.Grant Full Control permission on the Server1 computer object in the domain to the Branch1-admins group.
D.Move the Server1 computer object to a new organizational unit (OU) named Branch1-servers.Grant Full Control permission on the Branch1-servers OU to the Branch1-admins group.

微信掃碼免費搜題