Which cmdlet should you run?

Your network contains an Active Directory forest named contoso.com. The forest contains a single domain. The
domain contains two domain controllers named DC1 and DC2 that run Windows Server 2012.
The domain contains a user named User1 and a globalsecurity group named Group1.
You need to ensure that User1 can manage the group membership of Group1. The solution must minimize the
number of permissions assigned to User1.
Which cmdlet should you run?

Your network contains an Active Directory forest named contoso.com. The forest contains a single domain. The
domain contains two domain controllers named DC1 and DC2 that run Windows Server 2012.
The domain contains a user named User1 and a globalsecurity group named Group1.
You need to ensure that User1 can manage the group membership of Group1. The solution must minimize the
number of permissions assigned to User1.
Which cmdlet should you run?

A.
Add-AdPrincipalGroupMembership

B.
Install- AddsDomainController

C.
Install- WindowsFeature

D.
Install-AddsDomain

E.
Rename-AdObject

F.
Set-AdAccountControl

G.
Set-AdGroup

H.
Set-User



Leave a Reply 5

Your email address will not be published. Required fields are marked *


TestUser

TestUser

This one is A or G, I think is G because of “The solution must minimize the number of permissions assigned to User1.”

Topcoder

Topcoder

It’s G, you can’t set the managedby property with A

Grant

Grant

G can use the -ManagedBy

ManagedBy
Specifies the user or group that manages the object by providing one of the following property values. Note: The identifier in parentheses is the LDAP display name for the property.