单项选择题
You are the network administrator for your company. The network consists of a single Active Directory domain.
All servers run Windows Server 2003.
All company data is stored in shared folders on network file servers. The data for each department is stored in a departmental shared folder. Users in each department are members of the departmental global group. Each
departmental global group is assigned the Allow - Full Control permission for the corresponding departmental
shared folder.
Company requirements state that all access to shared folders must be configured by using global groups.
A user named Richard works in the sales department. Richard needs to be able to modify files in the Marketing shared folder.
You need to ensure that Richard has the minimum permissions for the Marketing shared folder that he needs to do his job.
You need to achieve this goal while meeting company requirements and without granting unnecessary permissions.
What should you do? ()
A. Add Richard's user account to the Marketing global group.
B. Assign the Sales global group the Allow - Change permission for the Marketing shared folder.
C. Create a new global group. Add Richard's user account to the group. Assign the new global group the Allow - Change permission for the Marketing shared folder.
D. Assign Richard's user account the Allow - Change permission for the Marketing shared folder.
相关考题
-
单项选择题
You are the network administrator for your company. The network consists of a single Active Directory domain. All servers run Windows Server 2003. An administrator named Misty Shock attempts to perform troubleshooting tasks on a file server. However, when she attempts to open the security event log, she receives the error message shown in the exhibit. (Click the Exhibitbutton.) You need to ensure that Misty can complete her troubleshooting tasks. What should you do?()
A. Add Misty's user account to the Server Operators domain group.
B. Add Misty's user account to the local Administrators group on the file server.
C. Configure Misty's client computer to enable the IPSec Server (Request Security) policy.
D. Assign Misty's user account the Allow logon through Terminal Services user right for the file server. -
多项选择题
You are the domain administrator for your companys Active Directory domain. All domain controllers run Windows Server 2003. The network consists of 10 offices located across South America. The organizational unit (OU) structure consists of one top-level OU for each branch office. Each top-level OU contains eight or more child OUs, one for each department. User accounts are located in the appropriate departmental OU within the appropriate office OU. For security purposes, you routinely disable user accounts for terminated employees. As part of an internal audit, you need to create a list of all disabled user accounts. You need to generate the list of disabled user accounts as quickly as possible. What are two possible ways to achieve this goal? ()(Each correct answer presents a complete solution. Choose two.)
A. In Active Directory Users and Computers, create a new saved query.
B. Run the dsget user command.
C. Run the dsquery user command.
D. Run the netsh command. -
单项选择题
You are the network administrator for your company. The network consists of a single Active Directory domain.All servers run Windows Server 2003.You place computer accounts for servers in organizational units (OUs) that are organized by server roles. You apply Group Policy objects (GPOs) to these servers at the OU level.You need to add a new server to the domain. You need to ensure that the appropriate GPOs are applied to this server.What should you do? ()
A. Prestage a domain computer account for the new server in the appropriate OU. Join the server to the domain by using the prestaged computer account.
B. On the new server, add the domain name for the Active Directory domain to the DNS suffix setting. Join the server to the domain.
C. Assign a user account the Allow - Create permission for the appropriate OU. Join the new server to the domain by using the user account.
D. Join the new server to the Active Directory domain. On the new server, run the gpupdate /force command.
