Configuring Advanced Windows Server 2012 Services — Question 18
Your network contains an Active Directory forest. The forest contains two domains named contoso.com and fabrikam.com. The functional level of the forest is
Windows Server 2003.
You have a domain outside the forest named adatum.com.
You need to configure an access solution to meet the following requirements:
- Users in adatum.com must be able to access resources in contoso.com.
- Users in adatum.com must be prevented from accessing resources in fabrikam.com.
- Users in both contoso.com and fabrikam.com must be prevented from accessing resources in adatum.com.
What should you create?
Answer options
- A. a one-way external trust from adatum.com to fabrikam.com
- B. a one-way realm trust from fabrikam.com to adatum.com
- C. a one-way realm trust from adatum.com to fabrikam.com
- D. a one-way external trust from fabrikam.com to adatum.com
Correct answer: A
Explanation
The correct answer is A, as a one-way external trust from adatum.com to fabrikam.com allows users in adatum.com to access resources in contoso.com while preventing access to fabrikam.com. Options B and C do not meet the access requirements properly, as they either allow access to fabrikam.com or do not create the necessary trust direction. Option D incorrectly allows access from fabrikam.com to adatum.com, which is not desired.