Your network contains an Active Directory forest named contoso.com The forest contains a member server named Server1.
Server1 has several line-of-business applications. Each application runs as a service that uses the Network Service account.
You need to configure the line-of-business applications to run by using a virtual account.
What should you do?
A. From Windows PowerShell, run the Install-ADServiceAccount cmdlet.
B. From the Services console, modify the Log On properties of the services.
C. From the Microsoft Application Compatibility Toolkit (ACT), create a shim.
D. From Windows PowerShell, run the New-ADServiceAccount cmdlet.
i think it’s B
1- run “Add-KdsRootKey”
2- run “New-ADServiceAccount ”
… and so on, depends on your scenario
Add-ADComputerServiceAccount
Install-ADServiceAccount
ops sorry i think it’s letter D the right answer
No, that would be for gMSA not the virtual one.
a virtual account that uses the instance name as the service name is established in the format NT SERVICE\
https://docs.microsoft.com/en-us/windows/security/identity-protection/access-control/service-accounts
64given answer is correct.