70-647: Pro: Windows Server 2008 Enterprise Administrator 考试大纲及题量分布
Planning Network and Application Services (23%)
- Plan for name resolution and IP addressing.
- May include but is not limited to: Internal and external naming strategy, Naming resolution support for legacy clients, Naming resolution for directory services, IP addressing scheme, TCP/IP version coexistence
- Design for network access.
- May include but is not limited to: Network access policies, Remote access strategy, Perimeter networks, Server and domain isolation
- Plan for application delivery.
- May include but is not limited to: Application virtualization, Presentation virtualization, Locally installed software, Web-based applications
- Plan for Terminal Services.
- May include but is not limited to: Terminal Services licensing, Terminal Services infrastructure
Designing Core Identity and Access Management Components (25%)
- Design Active Directory forests and domains.
- May include but is not limited to: Forest structure, Forest and domain functional levels, Intra-organizational authorization and authentication, Schema modifications
- Design the Active Directory physical topology.
- May include but is not limited to: Placement of servers, Site and replication topology, Printer location policies
- Design the Active Directory administrative model.
- May include but is not limited to: Delegation, Group strategy, Compliance auditing, Group administration,
- Organizational structure
- Design the enterprise-level group policy strategy.
- May include but is not limited to: Group policy hierarchy and scope filtering, Control device installation, Authentication and authorization
Designing Support Identity and Access Management Components (29%)
- Plan for domain;or;forest migration, upgrade, and restructuring.
- May include but is not limited to: Cross-forest authentication, Backward compatibility, Object migration, Migration planning, Implementation planning, Environment preparation
- Design the branch office deployment.
- May include but is not limited to: certificate request and installation; self-enrollments; delegation; Active Directory Metadirectory Services (AD MDS); Windows Server virtualization
- Configure the read-only domain controller (RODC).
- May include but is not limited to: Authentication strategy, Server security
- Design and implement public key infrastructure.
- May include but is not limited to: Certificate services, PKI operations and maintenance, Certificate life cycle management
- Plan for interoperability.
- May include but is not limited to: Inter-organizational authorization and authentication, Application authentication interoperability, Cross-platform interoperability
Designing for Business Continuity and Data Availability (23%)
- Plan for business continuity.
- May include but is not limited to: Service availability, Directory service recovery
- Design for software updates and compliance management.
- May include but is not limited to: Patch management and patch management compliance, Microsoft;update;and Windows Update, Security baselines, System health models
- Design the operating system virtualization strategy.
- May include but is not limited to: Server consolidation, Application compatibility, Virtualization management, Placement of servers
- Design for data management and data access.
- May include but is not limited to: Data security, Data accessibility and redundancy, Data collaboration