Your network contains an Active Directory forest named contoso.com. The forest contains three domains.All domain controllers run Windows Server 2016.
You deploy a second Active Directory forest named admin.contoso.com.
The forest contains a domain member server named Server1. Server1 has Microsoft Identity Manager (MIM)
2016 deployed.
You need to implement Privileged Access Management (PAM) and to use admin.contoso.com as an
administrative forest.
Which two actions should you perform? Each correct answers presents part of the solution.
A.
From a domain controller in contoso.com. run the New-PAMTrust cmdlet.
B.
From Server1, run the New-PAMDomainConfiguration cmdlet
C.
From a domain controller in admin.contoso.com, run the New-PAMTrust cmdlet.
D.
From a domain controller in contoso.com, run the New-PAMDomainConfiguration cmdlet.
E.
From a domain controller in admin.contoso.com, run the New-PAMDomainConfiguration cmdlet
F.
From Server1, run the New-PAMTrust cmdlet
Explanation:
https://docs.microsoft.com/en-us/microsoft-identity-manager/pam/configuring-mim-environment-for-pam
https://docs.microsoft.com/en-us/microsoft-identity-manager/pam/step-5-establish-trust-between-priv-corpforests