70-647 · Question #49
Your company has one main office and eight branch offices. Each branch office has 200 client computers and a local administrator. The network consists of one Active Directory domain. All domain…
The correct answer is A. Deploy a Windows Server 2008 R2 read-only domain controller (RODC) in each branch. To install domain controllers in each branch office and to make sure that branch office administrators are allowed to log in only to the domain controllers of their branch and should be allowed to update drivers on the domain controllers of their branch, you need to deploy a…
Question
Your company has one main office and eight branch offices. Each branch office has 200 client computers and a local administrator. The network consists of one Active Directory domain. All domain controllers run Windows Server 2008 R2. You plan to deploy domain controllers to the branch office locations. You need to plan an administration solution for the branch offices that meets the following requirements:
- Branch office administrators must be able to update drivers on their
respective branch office domain controllers.
- Branch office administrators must be able to log on only to domain
controllers in their respective branches. What should you include in your plan?
Options
- ADeploy a Windows Server 2008 R2 read-only domain controller (RODC) in each branch
- BDeploy a Windows Server 2008 R2 read-only domain controller (RODC) in each branch
- CDeploy a domain controller that runs a Server Core Installation of Windows Server 2008 R2
- DDeploy a domain controller that runs a Server Core Installation of Windows Server 2008 R2
How the community answered
(42 responses)- A74% (31)
- B14% (6)
- C5% (2)
- D7% (3)
Explanation
To install domain controllers in each branch office and to make sure that branch office administrators are allowed to log in only to the domain controllers of their branch and should be allowed to update drivers on the domain controllers of their branch, you need to deploy a Windows Server 2008 read-only domain controller (RODC) in each branch office and assign the Administrators role for the RODC to the branch office administrators. RODCs perform same as domain controllers except for the fact that they are more secure and read only. They allow users to log on to the domain and work best when the WAN link between branch offices and head office is unreliable and domain controllers cannot be contacted. RODCs provide Administrator Role Separation, which allows a local/regular domain user to be delegated local administrator privileges on a RODC, for the execution of regular maintenance work such as the install of software, updating drivers, troubleshooting connectivity issues, etc. domain-controller-rodc.aspx
Topics
Community Discussion
No community discussion yet for this question.