Pytanie 154
Your network contains an Active Directory domain named contoso.com.
All servers run Windows Server 2012 R2.
The network contains several group Managed Service Accounts that are used by four member servers.
You need to ensure that if a group Managed Service Account resets a password of a domain user account, an audit entry is created.
You create a Group Policy object (GPO) named GP01.
What should you do next?
In GP01, configure the Advanced Audit Policy Configuration settings for Audit Sensitive PriviIege Use. Link GP01 to the Domain Controllers organizational unit (OU)
In GP01, configure the Advanced Audit Policy Configuration settings for Audit User Account Management. Link GP01 to the Domain Controllers organizational unit (OU)
In GP01, configure the Advanced Audit Policy Configuration settings for Audit User Account Management. Move the member servers to a new organizational unit (OU). Link GP01 to the new OU
In GP01, configure the Advanced Audit Policy Configuration settings for Audit Sensitive Privilege Use. Move the member servers to a new organizational unit (OU). Link GP01 to the new OU