nerdexam
Microsoft

70-647 · Question #60

Your network consists of one Active Directory domain. All domain controllers run Windows Server 2008 R2. You need to deploy Certificate Services on the network to support the following requirements…

The correct answer is A. Deploy two servers that run Windows Server 2008 R2 Enterprise Edition. To deploy Certificate Services on the network and ensure that the server services are available if a single server fails, you need to deploy two servers that run Windows Server 2008 Enterprise Edition because Enterprise Edition of Windows Server 2008 should be used to configure…

Planning and Implementing Security

Question

Your network consists of one Active Directory domain. All domain controllers run Windows Server 2008 R2. You need to deploy Certificate Services on the network to support the following requirements:

  • Maintain availability if a single server fails.
  • Delegate the enrollment of certificates for separate groups of users.
  • Restrict the types of certificates that can be issued by a

certificate manager. What should you do?

Options

  • ADeploy two servers that run Windows Server 2008 R2 Enterprise Edition.
  • BDeploy two servers that run Windows Server 2008 Enterprise Edition.
  • CDeploy two servers that run Windows Server 2008 Enterprise Edition.
  • DDeploy two servers that run Windows Server 2008 Standard Edition.

How the community answered

(49 responses)
  • A
    71% (35)
  • B
    4% (2)
  • C
    8% (4)
  • D
    16% (8)

Explanation

To deploy Certificate Services on the network and ensure that the server services are available if a single server fails, you need to deploy two servers that run Windows Server 2008 Enterprise Edition because Enterprise Edition of Windows Server 2008 should be used to configure failover You need to deploy two servers to configure a failover cluster. You need to then configure a failover cluster, so that the server services are available if a single server fails. Finally you need to configure an enterprise certification authority (CA). You should use Enterprise CA because you need to use certificates in the internal network and not in the external world.

Topics

#Active Directory Certificate Services#enterprise CA#CA Manager#certificate delegation

Community Discussion

No community discussion yet for this question.

Full 70-647 Practice