A company has an Active Directory Domain Services (AD DS) domain. All client computers run Windows 8.
You need to minimize the amount of Trusted PlatformModule (TPM) authorization information that is stored in
the registry.
What should you do?
A.
Enable Platform Configuration Register indices (PCRs) 0, 2, 4, and 11 for the Configure TPM validation
profile for native UEFI firmware configuration policy setting.
B.
Create a Group Policy object (GPO) that disables the Configure the level of TPM owner authorization
information available to operating system policy setting.
C.
Create a Group Policy object (GPO) that sets the Configure the level of TPM owner authorization
information available to operating system policy setting to None.
D.
Create a Group Policy object (GPO) that enables the Turn on TPM Local Encryption policy setting.