You are employed as a network administrator at ABC.com.
ABC.com has an Active Directory domain named ABC.com.
All servers, including domain controllers, on the ABC.com network have Windows Server 2012 installed.
You have been instructed to create a new Active Directory Domain Services (AD DS) forest.
You need to make sure that you have the necessary permissions.
Which of the following actions should you take?
A.
You should consider making sure that you are a member of the Local Administrators group on the
nominated server.
B.
You should consider making sure that you are a member of the Domain Users group.
C.
You should consider making sure that you are a member of the Global Administrators group.
D.
You should consider making sure that you are a member of the Remote Management Users group.
Correct.
Question says “New ADDS FOREST”
A new forest does not need new credentials for the domain’s Administrator account. The domain controller promotion process uses the credentials of the built-in Administrator account from the first domain controller used to create the forest root. There is no way (by default) to disable or lock out the built-in Administrator account and it may be the only entry point into a forest if the other administrative domain accounts are unusable. It is critical to know the password before deploying a new forest.
https://technet.microsoft.com/en-us/library/jj574166.aspx