nerdexam
Microsoft

70-648 · Question #51

Your network contains an Active Directory domain named contoso.com. Contoso.com contains a member server that runs Windows Server 2008 Standard. You need to install an enterprise subordinate…

The correct answer is B. Upgrade the menber server to Windows Server 2008 R2 Standard. Private key archival is a new feature to CA's in Server 2008 R2, so this is why the server needs The Certificate Enrollment Policy Web Service is an Active Directory Certificate Services (AD CS) role service that enables users and computers to obtain certificate enrollment…

enhanced security implementations

Question

Your network contains an Active Directory domain named contoso.com. Contoso.com contains a member server that runs Windows Server 2008 Standard. You need to install an enterprise subordinate certification authority (CA) that support private key archival. You must achieve this goal by using the minimum amount of administrative effort. What do you do first?

Options

  • AInitialize the Trusted Platform Module (TPM)
  • BUpgrade the menber server to Windows Server 2008 R2 Standard.
  • CInstall the Certificate Enrollment Policy Web Service role service on the member server.
  • DRun the Security Configuration Wizard (SCW) and select the Active Directory Certificate Services -

How the community answered

(49 responses)
  • A
    2% (1)
  • B
    80% (39)
  • C
    6% (3)
  • D
    12% (6)

Explanation

Private key archival is a new feature to CA's in Server 2008 R2, so this is why the server needs The Certificate Enrollment Policy Web Service is an Active Directory Certificate Services (AD CS) role service that enables users and computers to obtain certificate enrollment policy information. Together with the Certificate Enrollment Web Service, this enables policy-based certificate enrollment when the client computer is not a member of a domain or when a domain member is not connected to the domain. Microsoft 70-648 Exam The Security Configuration Wizard is used to improve security on a computer by applying stricter us/library/cc754997.aspx The Trusted Platform Module is used to manage microchips that handle basic security, such as us/library/cc749022%28v=ws.10%29.aspx

Topics

#enterprise CA#private key archival#AD CS prerequisites#Windows Server edition

Community Discussion

No community discussion yet for this question.

Full 70-648 Practice