.
Your network contains two Active Directory forests named contoso.com and adatum.com. The functional level of both forests is Windows Server 2008 R2. Each
forest contains one domain. Active Directory Certificate Services (AD CS) is configured in the contoso.com forest to allow users from both forests to automatically
enroll user certificates.
You need to ensure that all users in the adatum.com forest have a user certificate from the contoso.com certification authority (CA).
What should you configure in the adatum.com domain?
.
You have a server named Server1 that has the following Active Directory Certificate Services (AD CS) role services installed:
-Enterprise root certification authority (CA)
-Certificate Enrollment Web Service
-Certificate Enrollment Policy Web Service
You create a new certificate template.
External users report that the new template is unavailable when they request a new certificate.
You verify that all other templates are available to the external users.
You need to ensure that the external users can request certificates by using the new template.
What should you do on Server1?
.
Your network contains an enterprise root certification authority (CA). You need to ensure that a certificate issued by the CA is valid.
What should you do?
.
You have an enterprise subordinate certification authority (CA). The CA issues smart card logon certificates.
Users are required to log on to the domain by using a smart card. Your company's corporate security policy states that when an employee resigns, his ability to log
on to the network must be immediately revoked.
An employee resigns. You need to immediately prevent the employee from logging on to the domain.
What should you do?
.
You add an Online Responder to an Online Responder Array. You need to ensure that the new Online Responder resolves synchronization conflicts for all members
of the Array.
What should you do?
.
Your network contains a server that runs Windows Server 2008 R2. The server is configured as an enterprise root certification authority (CA).
You have a Web site that uses x.509 certificates for authentication. The Web site is configured to use a many-to-one mapping.
You revoke a certificate issued to an external partner. You need to prevent the external partner from accessing the Web site.
What should you do?
Your network contains a server named Server1 that has the Hyper-V server role installed.
Server1 hosts a virtual machine (VM) named VM1 that runs Windows Server 2003 Service Pack 2 (SP2). VM1 is configured to use a 127-GB dynamically-
expanding virtual hard disk (VHD).
You need to add 500 GB of disk space to VM1. The solution must minimize the amount of downtime for VM1.
What should you do?
You are evaluating whether to purchase Windows Server 2008 R2 Service Pack 1 (SP1).
Several weeks ago, you installed Windows Server 2008 R2 SP1 on a server. During the installation, you did not enter a product key.
You need to identify how many days remain until the license status of the server will change to Unlicensed.
Which tool should you use?
Your network contains two servers named Server1 and Server2 that run Windows Server 2008 R2. Server1 and Server2 have the Hyper server role and the
Failover Clustering feature installed.
You deploy a new virtual machine (VM) named VM1 on Server1.
You need to ensure that VM1 is available if one of the Hyper-V servers fails.
What should you do?
Your network contains a server that runs Windows Server 2008 R2 and has the Hyper-V server role installed.
Virtual machines (VMs) are frequently added to the Hyper-V server.
You need to ensure that a VM named VM1 has priority regarding the allocation of the physical CPU resources on the Hyper-V host.
What should you modify?