单项选择题
Your network contains an Active Directory forest. All domain controllers run Windows Server 2008 Standard. The functional level of the domain is Windows Server 2003. You have a certification authority (CA).
The relevant servers in the domain are configured as shown in the following table:
Server name Operating system Server role
Server1 Windows Server 2003 Enterprise root CA Server2 Windows Server 2008 Enterprise subordinate CA Server3 Windows Server 2008 R2 Web Server
You need to ensure that you can install the Active Directory Certificate Services (AD CS) Certificate Enrollment Web Service on the network.
What should you do()
A.Upgrade Server1 to Windows Server 2008 R2.
B.Upgrade Server2 to Windows Server 2008 R2.
C.Raise the functional level of the domain to Windows Server 2008.
D.Install the Windows Server 2008 R2 Active Directory Schema updates.
相关考题
-
单项选择题
You have an enterprise subordinate certification authority (CA). You have a custom certificate template that has a key length of 1,024 bits. The template is enabled for autoenrollment. You increase the template key length to 2,048 bits. You need to ensure that all current certificate holders automatically enroll for a certificate that uses the new template. Which console should you use()
A.Active Directory Administrative Center
B.Certification Authority
C.Certificate Templates
D.Group Policy Management -
单项选择题
You have an enterprise subordinate certification authority (CA). You have a custom Version 3 certificate template. Users can enroll for certificates based on the custom certificate template by using the Certificates console. The certificate template is unavailable for Web enrollment. You need to ensure that the certificate template is available on the Web enrollment pages. What should you do()
A.Run certutil.exe -pulse.
B.Run certutil.exe -installcert.
C.Change the certificate template to a Version 2 certificate template.
D.On the certificate template, assign the Autoenroll permission to the users. -
多项选择题
You have Active Directory Certificate Services (AD CS) deployed. You create a custom certificate template. You need to ensure that all of the users in the domain automatically enroll for a certificate based on the custom certificate template. Which two actions should you perform()
A.In a Group Policy object (GPO), configure the autoenrollment settings.
B.In a Group Policy object (GPO), configure the Automatic Certificate Request Settings.
C.On the certificate template, assign the Read and Autoenroll permission to the Authenticated Users group.
D.On the certificate template, assign the Read, Enroll, and Autoenroll permission to the Domain Users group.
