单项选择题
Your company has a single Active Directory domain. You have 30 database servers that run Windows Server 2008 R2.
The computer accounts for the database servers are stored in an organizational unit (OU) named Data.
The user accounts for the database administrators are stored in an OU named Admin. The database administrators are members of a global group named D_Admins.
You must allow the database administrators to perform administrative tasks on the database servers.
You must prevent the database administrators from performing administrative tasks on other servers.
What should you do?()
A.Deploy a Group Policy to the Data OU.
B.Deploy a Group Policy to the Admin OU.
C.Add D_Admins to the Domain Admins global group.
D.Add D_Admins to the Server Operators built-in local group.
相关考题
-
单项选择题
Your network contains several branch offices. All servers run Windows Server 2008 R2. Each branch office contains a domain controller and a file server. The DHCP Server server role is installed on the branch office domain controllers. Each office has a branch office administrator. You need to delegate the administration of DHCP to meet the following requirements: èAllow branch office administrators to manage DHCP scopes for their own office èPrevent the branch office administrators from managing DHCP scopes in other offices èMinimize administrative effort. What should you do?()
A.In the Active Directory domain, add the branch office administrators to the Server Operators built-in local group.
B.In the Active Directory domain,add the branch office administrators to the NetworkConfiguration Operators built-in local group.
C.In each branch office, migrate the DHCP Server server role to the file server. On each fileserver, add the branch office administrator to the DHCP Administrators local group.
D. n each branch office, migrate the DHCP Server server role to the file server. In the Active Directory domain, add the branch office administrators to the DHCP Administrators domain local group. -
单项选择题
Your network consists of a single Active Directory forest. The forest functional level is Windows Server 2008 R2. The forest contains two domains named contoso.com and na.contoso.com. Contoso.com contains a user named User1. Na.contoso.com contains an organizational unit (OU) named Security. You need to give User1 administrative rights so that he can manage Group Policies for the Security OU. You want to achieve this goal while meeting the following requirements: èUser1 must be able to create and configure Group Policies in na.contoso.com. èUser1 must be able to link Group Policies to the Security OU. èUser1 must be granted the least administrative rights necessary to achieve the goal. What should you do?()
A.Add User1 to the Administrators group for na.contoso.com.
B.Add User1 to the Group Policy Creator Owners group in contoso.com. Modify the permissions on the scurity OU.
C.Run the Delegation of Control Wizard on the Security OU. In the Group Policy Management Console,modify the permissions of the Group Policy Objects container in the na.contoso.com domain.
D.Run the Delegation of Control Wizard on na.contoso.com. In the Group Policy Management Console, modify the permissions of the Group Policy Objects container in the contoso.com domain. -
单项选择题
Your network consists of a single Active Directory domain. The network includes a branch office named Branch1. Branch1 contains a Read-only Domain Controller (RODC) named Server1. A global group named Branch1?admins contains the user accounts for administrators. Administrators manage the client computers and servers in Branch1. You need to recommend a solution for delegating control of Server1. Your solution must meet the following requirements: èAllow the members of the Branch1-admins group to administer Server1; including, change device drivers and install operating system updates by using Windows Update. èProvide the Branch1-admins group rights on Server1 only. èPrevent Branch1-admins group from modifying Active Directory objects. What should you recommend?()
A.Add the Branch1-admins global group to the Server Operators built-in local group.
B.Add the members of the Branch1-admins global group to the Administrators built-in local group of Server1.
C.Grant Full Control permission on the Server1 computer object in the domain to the Branch1-admins group.
D.Move the Server1 computer object to a new organizational unit (OU) named Branch1-servers.Grant Full Control permission on the Branch1-servers OU to the Branch1-admins group.
