Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Microsoft Exam AZ-801 Topic 14 Question 48 Discussion

Actual exam question for Microsoft's AZ-801 exam
Question #: 48
Topic #: 14
[All AZ-801 Questions]

Your network contains an Active Directory Domain Services (AD DS) forest. The forest functional level is Windows Server 2012 R2. The forest contains the domains shown in the following table.

You create a user named Admin1.

You need to ensure that Admin1 can add a new domain controller that runs Windows Server 2022 to the east.contoso.com domain. The solution must follow the principle of least privilege.

To which groups should you add Admin1?

Show Suggested Answer Hide Answer
Suggested Answer: C

Contribute your Thoughts:

Verona
11 days ago
Haha, I can just picture Admin1 trying to add a new domain controller and accidentally deleting the entire forest. Better stick to the least privilege approach, eh?
upvoted 0 times
...
Otis
12 days ago
You know, I was initially leaning towards D, but after thinking it through, I think C is the better option. The Enterprise Admins group might be a bit overkill for this specific task.
upvoted 0 times
...
Kerry
13 days ago
I agree, C seems like the most logical answer. Adding Admin1 to both the Schema Admins and the Domain Admins of the east.contoso.com domain would give them the necessary permissions to carry out the task, while still following the principle of least privilege.
upvoted 0 times
...
Rusty
14 days ago
Hmm, this question is interesting. It's testing our understanding of domain controller deployment and the principle of least privilege. I'm thinking the answer might be C, since the Schema Admins group would be required to add a new domain controller running a newer version of Windows Server, and the Domain Admins would be needed to add it to the east.contoso.com domain.
upvoted 0 times
...

Save Cancel