Which four actions should you perform in sequence?

DRAG DROP
You network contains an Active Directory domain named contoso.com.
The domain contains an enterprise certification authority (CA).
A user named Admin1 is a member of the Domain Admins group.
You need to ensure that you can archive keys on the CA. The solution must use Admin1 as a key recovery agent.
Which four actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.
Select and Place:

microsoft-exams

7 thoughts on “Which four actions should you perform in sequence?

  1. The answer to the question is completely CORRECT!

    The user is already part of the Domain Admins group, so it is not necessary to change the security settings in the certificate template.

  2. Please read carefully:

    “A user named Admin1 is a member of the Domain Admins group. The solution must use Admin1 as a key recovery agent.”
    If you look at Key Recovery Agent template you`ll see that Domain Admins have already rights to enroll, read and write so you don`t need to change security in this point: Certificate Templates console, modify the security of a certificate template.

    So this should go:
    1. From the certificate authority console, add a certificate template to issue
    2. From the Certificate Console, request a certificate
    3. From the certificate authority console, issue a pending request
    4. From the Certification Authority console, add a Key Recovery Agent certificate.

  3. Correct Order of Actions:
    1) – From the Certificate Templates console, modify the security of a certificate template.
    2) – From the Certification Authority console, add a certificate template to issue.
    3) – From the Certificates console, request a certificate.
    4) – From the Certification Authority console, add a Key Recovery Agent certificate.

Leave a Reply

Your email address will not be published. Required fields are marked *


The reCAPTCHA verification period has expired. Please reload the page.