单项选择题
Your network consists of a single Active Directory domain named contoso.com. The functional level of
the domain is Windows Server 2003. Contoso contains two global groups named Users-Global and
Managers-Global.
Contoso contains 10 servers that run Windows Server 2003 Service Pack 2 (SP2). Each server has two
local groups as shown in the following table.
Each Users-Resources local group has access to the local resources on the server.
You need to implement a security solution that meets the following requirements:
·Managers-Global members must have access to all the resources that are accessible to Users-Global
members.
·The solution must minimize administrative effort.
What should you do?()
A.Add the Managers-Global group to the Users-Global group.
B. Add the Managers-Global group to the Users-Resources local group on each server.
C. Create two universal groups named Users-Universal and Managers-Universal. Assign the two universal groups permissions to the resources.
D. Create two domain local groups named Users-Domain-Local and Managers-Domain-Local. Assign the two domain local groups permissions to the resources.
相关考题
-
单项选择题
Your network consists of a single Active Directory forest that contains the domains shown in the following table. You create a universal security group named Contoso-All in the Contoso domain. You plan to use Contoso-All to assign permissions only on servers in the contoso.com domain. You add a group named Region1-All in the Region1 domain to Contoso\Contoso-All and receive the error message shown in the exhibit. (Click the Exhibit button.) You need to ensure that members of Region1\Region1-All can access resources that have been assigned to Contoso\Contoso-All. What should you change? ()
A. Contoso\Contoso-All to a domain local security group
B. Contoso\Contoso-All to a global security group
C. Region1\Region1-All to a domain local security group
D. Region1\Region-All to a universal distribution group -
单项选择题
Your network consists of an Active Directory forest that contains two domains named contoso.com and Region1.contoso.com. All servers in the network run Windows Server 2003 Service Pack 2 (SP2). You attempt to create a universal security group and obtain the result shown in the exhibit. (Click theExhibit button.) You need to ensure that you can create universal security groups in the contoso.com domain. What should you do in the contoso.com domain? ()
A. Modify the Default Domain Policy.
B. Modify the Default Domain Controllers Policy.
C. Raise the domain functional level of the contoso.com domain.
D. Add your user account to the Enterprise Administrators group. -
单项选择题
Your network consists of one Active Directory forest that contains two domains named Domain1.contoso.com and Domain2.contoso.com. The functional level of the forest is Windows Server 2003. The domains contain the global security groups shown in the following table. Each domain has three servers. Each server has a group named Sales-Applications-Local. The Sales-Applications-Local groups are used to grant permissions to resources on the servers. You need to implement a solution to meet the following requirements: Allow Sales department employees from any domain to access the Sales department resources in any domain. Minimize administrative effort when membership of the Sales department changes, additional domains are added, or additional servers are added. What should you do? ()
A. ·On each of the servers, add Domain1-Sales-Global and Domain2-Sales-Global to Sales-Applications-Local.
B. ·In Domain1, create a universal security group named Sales-Department-Universal. ·Add Domain1-Sales-Global and Domain2-Sales-Global to Sales-Department-Universal. ·On each of the servers, add Sales-Department-Universal group to Sales-Applications-Local.
C. ·In each domain, create a domain local security group named Sales-Applications-Domain-Local. ·In each domain, add Domain1-Sales-Global and Domain2-Sales-Global to Sales-Applications-Domain-Local. ·On each of the servers, assign permissions to Sales-Applications-Domain-Local from the local domain.
D. ·Create two universal security groups named Domain1\Sales-Department-Universal and Domain2\Sales-Department-Universal. ·Add Domain1\Domain1-Sales-Global to Domain1\Sales-Department-Universal. ·Add Domain2\Domain2-Sales-Global to Domain2\Sales-Department-Universal. ·On each of the servers, add Domain1\Sales-Department-Universal and Domain2\Sales-Department-Universal to Sales-Applications-Local.
