nerdexam
Microsoft

AZ-800 · Question #103

Your network contains an Active Directory Domain Services (AD DS) forest named contoso.com. The forest root domain contains a server named server1.contoso.com. A two-way forest trust exists between th

Sign in or unlock AZ-800 to reveal the answer and full explanation for question #103. The question stem and answer options stay visible for context.

Deploy and manage Active Directory Domain Services (AD DS) in on-premises and cloud environments

Question

Your network contains an Active Directory Domain Services (AD DS) forest named contoso.com. The forest root domain contains a server named server1.contoso.com. A two-way forest trust exists between the contoso.com forest and an AD DS forest named fabrikam.com. The fabrikam.com forest contains 10 child domains. You need to ensure that only the members of a group named fabrikam\Group1 can authenticate to server1.contoso.com. What should you do first?

Options

  • AChange the trust to a one-way external trust.
  • BAdd fabrikam\Group1 to the local Users group on server1.contoso.com.
  • CEnable SID filtering for the trust.
  • DEnable Selective authentication for the trust.

Unlock AZ-800 to see the answer

You've previewed enough free AZ-800 questions. Unlock AZ-800 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#Active Directory Trusts#Selective Authentication#Cross-Forest Authentication#Access Control
Full AZ-800 Practice