单项选择题
Your network contains an Active Directory domain named contoso.com. The domain contains two sites named Site1 and Site2. The servers for the sites are configured as shown in the following table.Server name Server role Site name Server1 Domain controller, DNS Site1 Server2 DNS Site2 Server1 hosts a standard primary zone for contoso.com. Server2 hosts a secondary zone for contoso.com.You need to ensure that all DNS replication traffic between Server1 and Server2 is encrypted.What should you do?()
A. On Server1, configure DNSSEC for the contoso.com zone.
B. On Server1, convert the contoso.com zone to an Active Directory-integrated zone.
C. On each server, create connection security rules.
D. On each server, enable Encrypting File System (EFS) encryption for the contoso.com.dns file.
相关考题
-
单项选择题
You work as the IT professional in an international company which is named wiikigo. You are experienced in implementing and administering a network operating system. You are specialized in configuring IP addressing and services, configuring name resolution and network access and so on. You are in charge of a domain controller that runs windows server 2008 and the DNS server role. The dns server hosts an active directory-integrated zone for your domain. You need to provide a user with the ability to manage records in the zone. But the user must not so what action should you perform?()
A.The user permissions on the zone should be granted.
B.The user permissions on the DNS zone should be granted.
C.The user should be added to the DNSUpdateProxy Global security group.
D.The user should be added to the DNSAdmins domain local security group. -
单项选择题
Your company has an active directory domain. A server named server1 runs the network access policy server role. You need to disable IPv6 for all connections except for the tunnel interface and the IPv6 loopback interface. What should you do?()
A.Run the netsh ras ipv6 set command.
B.Run the netsh interface ipv6 delete command.
C.Run ipv6.exe and remove the ipv6 protocol.
D.From the local area connection properties, uncheck internet protocol versions 6 (TCP/IPv6). -
单项选择题
Your company has a main office and a branch office.The network contains two DNS servers named DNS1 and DNS2.DNS1 is located in the main office. DNS1 hosts a primary standard zone named contoso.com. The contoso.com zone is configured to use DNSSEC.DNS2 is located in the branch office. DNS2 is a caching-only DNS server. You need to ensure that client computers in the branch office can receive authoritative responses to queries for contoso.com if a WAN link fails. DNSSEC security must be maintained.What should you configure on DNS2 for contoso.com?()
A. a conditional forwarder
B. a secondary zone
C. a zone delegation
D. an Active Directory-integrated stub zone
