You create a user account for an IT employee and delegate permissions to create, delete, and manage groups to his account in Active Directory Users and Computers snap-in. The IT employee needs to manage groups in three departments. He is to use a domain controller named DOM1 for this task. However, he complains that he cannot log on to DOM1. Which of the following should you do to ensure that he can manage groups from DOM1?
  1. Modify the default security policy for the domain and refresh the policy using Secedit.exe.
  2. Modify the default security policy for the domain and refresh the policy by using Gpupdate.exe.
  3. Modify the default security policy for the DOM1 OU and refresh the policy by using Gpupdate.exe.
  4. Modify the default security policy for the DOM1 OU and refresh the policy by using Secedit.exe.
Explanation
Answer - C - To fix this problem, you should modify the default security policy for the DOM1 OU and refresh the policy by using Gpupdate.exe.

Key Takeaway: The secedit command allows you to apply a security template to a computer at the command line. You can use it in a script or batch file to apply settings each time the computer is booted.
Was this helpful? Upvote!
Login to contribute your own answer or details

Top questions

Related questions

Most popular on PracticeQuiz