You need to design an EFS strategy to address the Denver IT administrator’s concerns. What should you do?
A.
Configure key archival on each certification authority (CA).
B.
Configure a certificate trust list (CTL) that includes the root certification authority (CA) certificate.
C.
Create a security group named Managers. Assign the appropriate NTFS permissions to the Managers group for the managers’ data in Denver. Add the Managers security group to the Restricted Groups in the Default Domain Policy Group Policy object (GPO).
D.
Configure IPSec certificate autoenrollment on the Default Domain Policy Group Policy object (GPO). Configure an IPSec policy on the Managers OU. Configure the IPSec policy to use certificate authentication.