Home » VMware » VCP510-DT » Which three tasks must the desktop administrator perform to prepare Active Directory (AD)?
An organization requires a higher level of security for desktops that cannot be achieved with passwords alone. A certificate has been procured from a Certificate Authority, and smart cards have been purchased for the users.
Which three tasks must the desktop administrator perform to prepare Active Directory (AD)? (Choose three.)
A. add the user principal names to the Trusted Root Certification Authorities group
B. add the root certificate to the Enterprise NTAuth store in AD
C. add the root certificate to the Trusted Root Hierarchy in AD
D. add user principal names to the AD accounts of users
E. add the root certificate to the Trusted Root Certification Authorities group policy in AD
Correct Answer: BDE
Explanation/Reference:
Ref# View horizon Installation Guide:
B:
Add the Root Certificate to the Enterprise NTAuth Store on page 25:
If you use a CA to issue smart card login or domain controller certificates, you must add the root certificate to the Enterprise NTAuth store in Active Directory. You do not need to perform this procedure if the Windows domain controller acts as the root CA.
D:
Add UPNs for Smart Card Users on page 23:
Because smart card logins rely on user principal names (UPNs), the Active Directory accounts of users that use smart cards to authenticate in View must have a valid UPN.
E:
Add the Root Certificate to Trusted Root Certification Authorities on page 24:
If you use a certification authority (CA) to issue smart card login or domain controller certificates, you must add the root certificate to the Trusted Root Certification Authorities group policy in Active Directory. You do not need to perform this procedure if the Windows domain controller acts as the root CA.