lab 11-1 Flashcards
After creating a self-signed certificate in Internet Information Services (IIS) Manager for the Windows Server Update Services (WSUS) server, what is the next step you need to perform?
A. Bind the certificate to the HTTPS port in IIS
B. Export the certificate as a file
C. Export the certificate to the domain controller
D. Open the ports for the WSUS server in the firewall
Bind the certificate to the HTTPS port in IIS
You have created a self-signed certificate and want it to be trusted by all devices in a domain. What should you do?
A. Bind the certificate to the HTTPS port in IIS
B. Export the certificate as a file
C. Open the ports for the WSUS server in the firewall
D. Export the certificate to the domain controller
Export the certificate to the domain controller
You are importing the self-signed certificate in the Default Domain Policy. You navigate to the following node:
Computer Configuration > Policies > Windows Settings > Security Settings > Public Key Policies > Trusted Root Certification Authorities > Public Key Policies
Which of the following Certificate store should you use to import the self-signed certificate?
A. Untrusted Certificates
B. Trusted Publishers
C. Trusted Root Certification Authorities
D. Intermediate Certification Authorities
Trusted Root Certification Authorities
You have created a Group Policy Object for WSUS clients. The GPO path Computer Configuration > Policies > Administrative Templates > Windows Components > Windows Update has a policy setting called “Specify intranet Microsoft update service location.” What is the purpose of this policy setting? [Choose two that apply]
A. The policy setting indicates the URL by which the WSUS administrator manages the WSUS server
B. The policy setting designates an intranet server to host updates from Microsoft Update
C. The policy setting enables you to specify a WSUS server on your network that will function as an internal update service
D. The policy setting enables the WSUS client to connect to Microsoft Updates on the Internet
The policy setting enables you to specify a WSUS server on your network that will function as an internal update service
The policy setting designates an intranet server to host updates from Microsoft Update
You created a number of virtual machines and joined them to the Active Directory domain. These VMs will act as test computers for new Windows updates. Which of the following WSUS feature will you use to test and target updates to specific computers?
A. WSUS update segmentation
B. GPO security filtering
C. WSUS delegation
D. Computer groups
Computer groups