How can you ensure that managers can decrypt the files?

Your role of Network Administrator at ABC.com includes the management of the Active Directory
Domain Services (AD DS) domain named ABC.com. The network includes servers that run
Windows Server 2012.
Client computers run Windows XP Professional, Windows 7 or Windows 8.
A server named TK-CA1 runs the Certificate Services role and is configured as an Enterprise
Certification Authority (CA) for the domain.
A new company security policy states that all users should encrypt the files on their computers.
Company managers must be able to decrypt the files on any user’s computer.
You deploy Encrypting File System (EFS) to enable users to encrypt their files.
How can you ensure that managers can decrypt the files?

Your role of Network Administrator at ABC.com includes the management of the Active Directory
Domain Services (AD DS) domain named ABC.com. The network includes servers that run
Windows Server 2012.
Client computers run Windows XP Professional, Windows 7 or Windows 8.
A server named TK-CA1 runs the Certificate Services role and is configured as an Enterprise
Certification Authority (CA) for the domain.
A new company security policy states that all users should encrypt the files on their computers.
Company managers must be able to decrypt the files on any user’s computer.
You deploy Encrypting File System (EFS) to enable users to encrypt their files.
How can you ensure that managers can decrypt the files?

A.
By adding the managers to the domain admins group.

B.
By adding the managers to the Auditor role on TK-CA1.

C.
By providing a data recovery agent certificate to the managers.

D.
By providing the managers with a copy of each users EFS certificate.



Leave a Reply 0

Your email address will not be published. Required fields are marked *