Ezonexam.com’s network contains two domain controllers and approximately 500 client computers. The domain controllers run Window

admin2009-05-19  19

问题 Ezonexam.com’s network contains two domain controllers and approximately 500 client computers. The domain controllers run Windows 2000 Server. The client computers run Windows 2000 Professional. The majority of users have mobile computers. Users in Ezonexam often travel with their mobile computer for extended periods of time and do not have remote access to Ezonexam.com’s network.

You want to configure the domain controllers so that DNS only contains entries for computers that are active on the network. You also want to ensure that when users return you do not have to manually create or delete DNS entries.

How should you configure the DNS servers?

选项 A、Configure both domain controllers with Active Directory integrated primary zones for the domain and enable secure dynamic updates for the zone.
B、Configure both domain controllers with Active Directory integrated primary zones for the domain and the secure cache against pollution option for the zone.
C、Configure both domain controllers with Active Directory integrated primary zones for the domain and enable scavenging and dynamic updates for the zone.
D、Configure both domain controllers with standard primary zones for the domain and enable scavenging for the zone.
E、Configure one server with a standard primary zone for the domain, and configure at least one server with an Active Directory integrated primary zone.

答案C

解析 Explanation: Scavenging is a process whereby a DNS server periodically checks it’s dynamically created records to see how long it’s been since they were registered (or reregistered). Then, if the scavenger finds records that haven’t been registered or reregistered in a long time, it deletes them from the zone file.

The DNS Service includes a dynamic update capability called Dynamic DNS (DDNS). With DNS, when there are changes to the domain for which a name server has authority, you must manually update the zone database file on the primary name server. With DDNS, name servers and clients within a network automatically update the zone database files.

Once you make a zone an AD-integrated zone, then the General tab of the properties page for that zone will show that the Dynamic Updates drop-down no longer says Secure and Nonsecure but instead shows Secure Only, an option that only appears once you’re AD-integrated.

Incorrect answers:
A: This is not a replication issue. You should also enable scavenging.

B: There is no mention of scavenging or dynamic/automatic updating in this option.

D: The domain controllers should be configured with Active Directory integrated primary zones and not standard zones.

E: This will not comply with the requirements; you need both domain controllers configured as Active Directory Integrated primary zones.
转载请注明原文地址:https://jikaoti.com/ti/X2O7FFFM
0

最新回复(0)